NACSA licence in progress
HRDC Claimable · Practitioner-Taught · Cyber Range Labs

Offensive Security Training Malaysia

CEH, CPTE, OSCP prep, CRTP, Burp Suite and bug bounty — all taught by nCrypt consultants who run live client engagements, not career trainers who last touched Kali in 2019.

Why the practitioner difference matters

Malaysia's cybersecurity training market is dominated by authorised training centres whose instructors are full-time trainers. They know the exam domains. They do not know that the Malaysian bank you are about to test runs a specific version of PeopleSoft ERP with known unpatched CVEs, or that the Malaysian government portal you are scoping uses a particular WAF bypass pattern that your Metasploit module will not fire on.

nCrypt offensive security trainers are working pentesters. Between intakes, they are running Bank Negara RMiT penetration tests, red team exercises for Malaysian GLCs, and web application assessments for fintech licencees. The labs and case studies in our courses reflect the environments, configurations, and mis-configurations we actually encounter in Malaysian enterprise networks — not the vendor's idealised lab topology.

The result is that nCrypt offensive training alumni leave with exam credentials and genuine attack technique fluency — and a mental model of what a Malaysian network actually looks like when you hit it from the outside.

Offensive security courses

CEH v13 — Certified Ethical Hacker

HRDC Claimable

The world's most widely-recognised ethical hacking certification. v13 adds AI-augmented attack techniques, GenAI-powered malware patterns, and updated cloud attack modules alongside the classic 20 modules. Includes EC-Council exam voucher.

Duration5 days
PriceRM 6,500
ModeClassroom / Virtual
Next IntakeJul 2026
Key modules
  • Footprinting & Reconnaissance
  • Scanning Networks
  • Enumeration
  • System Hacking
  • Malware Threats

CPTE — Certified Penetration Testing Engineer

HRDC Claimable

Structured pentest methodology from reconnaissance through post-exploitation and professional reporting. Full cyber-range labs on a Windows AD + Linux + web target environment. Mile2 exam on Day 5. Ideal OSCP stepping-stone.

Duration5 days
PriceRM 6,500
ModeClassroom / Virtual
Next IntakeAug 2026
Key modules
  • Pentest Lifecycle & Rules of Engagement
  • OSINT & Passive Recon
  • Scanning & Enumeration
  • Exploitation with Metasploit
  • Post-Exploitation & Lateral Movement

OSCP PEN-200 Preparation

HRDC Claimable

Instructor-led acceleration programme covering the hardest parts of the OSCP curriculum: Active Directory attacks, pivoting, tunnelling, custom exploit development, and the Try Harder mindset for a 24-hour exam. Students must purchase PEN-200 labs independently from OffSec.

Duration4 days
PriceRM 7,500
ModeClassroom (intensive)
Next IntakeSep 2026
Key modules
  • AD Attack Chains (Kerberoasting, AS-REP Roasting, DCSync)
  • Pivoting, Port Forwarding & Tunnelling
  • Buffer Overflow Primer (x86 DEP/ASLR)
  • Custom Script Development
  • Web App Attacks for OSCP

CRTP — Certified Red Team Professional

HRDC Claimable

Hands-on Active Directory attack course covering the full internal red-team kill chain: domain enumeration, ACL abuse, trust attacks, Kerberos delegation, and cross-forest exploitation. Entirely lab-based with a fully patched Windows Server 2022 environment. Exam lab included.

Duration4 days
PriceRM 5,500
ModeVirtual (lab access required)
Next IntakeOct 2026
Key modules
  • Domain Enumeration with BloodHound & PowerView
  • Local Privilege Escalation Techniques
  • Lateral Movement (Pass-the-Hash, Over-Pass-the-Hash)
  • Domain Privilege Escalation (Kerberoasting, DCSync, AD CS)
  • Kerberos Delegation Attacks

Burp Suite Practitioner Workshop

HRDC Claimable

Two-day deep-dive into Burp Suite Professional for web application testers. Covers the full BSCP exam syllabus: SQL injection, XSS, CSRF, SSRF, XXE, IDOR, business logic, OAuth/JWT, and GraphQL attacks using a dedicated lab environment. Suitable both as a standalone skill-builder and BSCP exam preparation.

Duration2 days
PriceRM 2,800
ModeClassroom / Virtual
Next IntakeAug 2026
Key modules
  • Burp Suite Interface Mastery (Proxy, Repeater, Intruder, Collaborator)
  • SQL Injection (error-based, blind, time-based, OOB)
  • Cross-Site Scripting (reflected, stored, DOM)
  • CSRF, Clickjacking & CORS Misconfigurations
  • SSRF, XXE & File Upload Vulnerabilities

Bug Bounty Methodology

HRDC Claimable

Practical bug bounty methodology from programme selection through to triage-ready report writing. Covers reconnaissance automation, subdomain enumeration, API attack surfaces, recon pipelines, and writing reports that get paid — not marked as 'informational'. Includes a live recon session on a public bug bounty target.

Duration2 days
PriceRM 2,500
ModeVirtual
Next IntakeSep 2026
Key modules
  • Selecting & Scoping Bug Bounty Programmes
  • Automated Reconnaissance Pipelines (Amass, Subfinder, HTTPX)
  • API Discovery & Endpoint Fuzzing
  • High-Value Attack Patterns (IDOR, Privilege Escalation, SSRF)
  • Rate Limiting & Account Takeover Chains

Upcoming dates — 2026

CourseDateModeFee
CEH v137–11 Jul 2026Kuala LumpurRM 6,500
Burp Suite Practitioner11–12 Aug 2026Virtual (VILT)RM 2,800
CPTE11–15 Aug 2026Kuala LumpurRM 6,500
Bug Bounty Methodology17–18 Sep 2026Virtual (VILT)RM 2,500
OSCP PEN-200 Prep22–25 Sep 2026Kuala LumpurRM 7,500
CRTP5–8 Oct 2026Virtual (VILT)RM 5,500

All fees are per participant and HRDC SBL-Khas claimable. Group discounts available for 5+ participants.

Frequently asked questions

Which offensive security course is best for a Malaysian IT professional starting a security career?

Start with CEH v13 if you want a widely-recognised, employer-understood credential. If you already have network or sysadmin experience and want to move faster toward a practitioner credential, CPTE is the better investment — it is more hands-on and maps directly to how Malaysian pentest engagements are actually scoped and delivered. OSCP is the gold standard but demands significant prior hands-on experience; treat it as year-two, not year-one.

Are these courses HRDC claimable?

Yes. All nCrypt offensive security courses are registered with HRD Corp under SBL-Khas. We provide the HRDC course code, T3 trainer credentials, official course outline, and the full post-training claim pack. Most HRDF-registered employers can recover 100% of the course fee from their levy balance.

Do the courses include exam fees?

CEH v13 and CPTE include the official exam voucher in the published price. OSCP PEN-200 preparation does not include the OffSec PEN-200 lab subscription (purchased directly from OffSec). CRTP and Burp Suite Practitioner include lab access but not the external exam voucher unless specified at enrolment.

What cyber range do you use for labs?

nCrypt maintains a private, on-demand cyber range hosted on our own infrastructure. It includes Windows AD environments (Server 2022, multiple DCs, workstations), Linux servers, intentionally vulnerable web applications, and cloud-connected targets. Lab environments are spun up fresh for each cohort so participants always work against a clean, unmodified target estate.

Can my company request a customised in-house cohort for CEH or CPTE?

Yes — in-house cohorts for CEH, CPTE, or a bespoke offensive security curriculum are available for groups of 5 or more. We tailor the lab scenarios to your industry (Malaysian bank internal network, manufacturing OT-adjacent DMZ, e-commerce platform) so the training reflects your actual threat exposure. See our in-house corporate training page.

How long after CEH should I attempt OSCP?

CEH gives you a map of the territory. OSCP requires you to navigate it under pressure. Most practitioners find that 6–12 months of regular TryHackMe / HackTheBox practice after CEH, plus completing our OSCP Prep course, is sufficient to attempt PEN-200 with reasonable pass confidence. The CRTP course is also a strong parallel investment if your target environment is Windows AD.

Reserve a seat or request in-house delivery

All courses are available as closed corporate cohorts. Minimum 5 participants. We tailor labs to your sector and tech stack.

Not sure what you need?

Tell us what needs testing and we come back with a fixed fee within 48 hours — no hourly estimates.