Course 4: Running Pentests & Reading Results
This course takes you from clicking "Start Pentest" to confidently acting on every finding in your report. You will learn the full pentest lifecycle, how to watch Paladin's agents work in real-time, and how to read findings using CVSS, CWE, and OWASP frameworks. You will also learn how to verify fixes with proof-of-concept retest commands, manage false positives through suppression, and track your security posture over time with finding continuity.
Modules
- Launching Pentests - The pentest lifecycle from queued to complete, tier selection, and what happens behind the scenes
- Live Agent Activity - Watching agents work in real-time through the live agent panel and streaming updates
- Interpreting Findings - Severity levels, CVSS scoring, CWE categories, and OWASP mapping
- Proof of Concept - PoC demonstrations, retest commands, and Docker one-liners to verify fixes
- Suppression Management - Suppressing false positives and managing accepted risk
- Finding Continuity - Tracking findings across repeat pentests with new, persistent, and fixed states
Certification Exam
After completing all 6 modules, unlock the Course 4 Certification Exam (30 questions, 80% to pass).
Certification Exam
Complete all modules in this course to unlock the certification exam and earn credit toward your CAPO certification.
Go to Certification ExamPentest Tiers
Learn how to choose the right pentest tier - Recon, Standard, Deep, or Blitz - based on agent hours, depth requirements, and credit costs.
Launching Pentests
Understand how to start a pentest, choose the right tier, and follow the pentest lifecycle from queued through scanning to complete.