Training: Penetration Testing - Beyond the Basics with Tim Medin (BTB)

Penetration Testing: Beyond the Basics with Tim Medin (BTB)

Step into Beyond the Basics: Penetration Testing an immersive, hands-on course designed for security professionals ready to leave the beginner tier behind and operate like true offensive specialists.

Your instructor? One of the most trusted names in enterprise penetration testing in the world and the creator of Kerberoasting Tim Medin CEO of Red Siege Information Security. Tim is joined by Red Siege Principal Security Consultant Mike Saunders, bringing two of the industry’s top offensive operators directly to your screen. This isn’t theory taught by observers — it’s a course built and delivered by active, in-the-field penetration testers who perform these techniques every day on real engagements.

Course Details

You will learn a variety of techniques used by real world attackers and professional penetration testers to execute a high-value penetration test.

Now Available On-Demand

Next in person:
Wild West Hackin’ Fest Deadwood – October 6-7, 2026

Register Now

Get Offensive Now

Lab Environment

You’ll be working from a Kali Linux and a Windows system to access other Windows systems on the same Active Directory Domain, but with the easiest set up ever.

In fact, there is no setup. It is all accessible and handled in your browser! No giant downloads. No messing with VMware. No annoying VPN setup. No configuration or compatibility issues.

Unlike the big guys, your lab network is specific to you. No one (but you) can break your network. And you can revert your lab network anytime you want to. You can access the lab network immediately after you sign up. Like we said, no giant downloads, funky setup, or VPN issues.

Key Takeaways

  • Target Identification – You can’t exploit systems and services you don’t know exist. In this course you’ll learn tips and tricks to quickly and safely identify high value targets for deeper testing.
  • Initial Access – Initial Access (IA) comes in many forms. According to the latest Verizon Data Breach Investigation Report (VDBIR), Initial Access is gained through compromised passwords, phishing, and to a lesser degree, exploitation. We’ll cover all these techniques as part of a practical penetration test.
  • Situation Awareness – Once a system is compromised, a penetration tester needs to gain information from the system to learn about the target environment for further attacks. A lot of valuable information can be gained from the network once a single host has been exploited/compromised.
  • Pivoting and Lateral Movement – When a real-world bad guy gains access to a system, they do not stop. They are going to work to extend their reach. In this course, we’ll cover common ways for lateral movement to model real world attackers, and to find issues beyond the surface.
  • Windows Domain and Kerberos – Nearly every organization uses Active Directory (AD). No penetration testing course would be complete without a deep dive into identifying issues in AD, and abusing those issues for privilege escalation, lateral movement, and persistence.

What we provide our students

Zero Setup. Total Control.

No virtual machines. No VPNs. No downloads.

Just launch your browser and you’re in.

  • Work directly from Kali Linux + Windows systems in a dedicated lab
  • Your lab is yours alone – no shared networks, no interference
  • Break it, revert it, reset it – on your terms
  • Instant access after signup – no waiting, no fuss

Access to Red Siege Instructors.

All students will have the ability to ask questions during, and after completion to the Red Siege instructors via our Discord

Certification of Completion.

All students will be presented a certification of completion at the end of the course to the email provided.

Get Started Now

There is so much to learn packed into a 2 day course and yet I feel like I understood it all. Efficient and well laid out. Highly Recommend.
Gregory, Senior Offensive Ops

This course gets you up to speed quickly on the most common initial access attacks being used by attackers today. Just when you think you have a firm grasp on malware and phishing, Chris digs even deeper.
Brandon, Red Team Lead

**Interested in the training options, including custom training? Contact us for details or questions.