ISMS LA Batch 23rd, 24th, 29th, 30th, 31st May 2026.
Gather information about systems and networks.
Use tools like Nmap and Wireshark for reconnaissance.
Identify open ports, services, and vulnerabilities.
Perform network scans and analyze results.
Exploit vulnerabilities to test system defenses.
Conduct penetration testing using ethical hacking tools.
Identify and mitigate web application vulnerabilities.
Perform SQL injection and cross-site scripting (XSS) testing.
Test wireless networks for vulnerabilities.
Implement secure configurations for wireless access points.
Document findings and create detailed penetration test reports.
Develop recommendations to improve system security.
Exam version: V5
Exam series code: CAS-005
Launch date: December 17, 2024
Number of questions: maximum of 90, a mix of multiple-choice and performance-based questions
Retirement: usually three years after launch (estimated 2027)
Duration: maximum of 165 minutes
Passing score: pass/fail only; no scaled score
Languages: English, with other languages to be determined
Recommended experience: minimum of 10 years of general hands-on IT experience, including 5 years of hands-on security, with Network+, Security+, CySA+, Cloud+, and PenTest+ or equivalent knowledge
NICE and DoD 8140 work roles: security architect, systems requirements planner, security control assessor, research and development specialist, and more