CREST Certified Simulated Attack Specialist

The CREST Certified Simulated Attack Specialist (CC SAS) examination tests candidates’ knowledge and expertise delivering technical components of a Simulated Attack, specifically exploitation of client vulnerabilities through Trojanised files, phishing campaigns, implant development, evasion skills and lateral movement within a compromised network. This exam is considered a specialism to the existing CREST CCT Infrastructure certification, which is a mandatory prerequisite for all candidates wishing to complete this examination. While it is acknowledged that there is significant overlap with the existing INF exam syllabus this examination is set at a significantly higher level of detail in a number of areas.

Examination Format
The examination consists of three components:

Candidates are required to meet or exceed a two-thirds pass mark in both sections independently in order to pass the exam overall.

You can download the following documents from the links below:

Syllabus for the CC SAS examination
Notes for Candidates to aid examination preparation

Cost
The Certified Simulated Attack Specialist examination costs £1,600 + VAT

Recommended Preparation Material
The following material and media has been cited as helpful preparation for this examination by previous candidates:

Reading Material:
Red Team Field Manual (RTFM) (by Ben Clarke)
Hacking Exposed 7:  Network Security Secrets and Solutions (by Stuart McClure/Joel Scambray/George Kurtz)
Metasploit Unleashed Guide
Hackers Playbook (by Peter Kim)
Network Security Assessment (by O’Reilly, 2nd edition)
Targeted Cyber Attacks (by Cygress)
Metasploit – The Penetration Tester’s Guide (by David Kennedy)

Websites:
http://vulnhub.com – free vulnerable images

Courses:
Offensive Security Virtual Labs
Certified Information Systems Security Professional (CISSP)

Useful Information for Candidates

Details of the Logistics and Timings of CREST examinations can be found in the Examination Preparation pages for your country of choice
CREST’s Policy for Candidates requiring special arrangements including additional time to accommodate a medical condition (including examinations delivered via Pearson Vue)
Terms and Conditions for CREST Examinations (includes hard disk drive wiping policy)