Penetration Testers
Context coveredThis framework covers offensive security and penetration testing practice across network, application, cloud, and enterprise environments, from supervised entry-level assessments through executive leadership of organizational red team programs.
- Basic penetration testing tools and scanning utilities — execute under direct supervision to enumerate open ports and services on a controlled lab network.
- Common vulnerability databases and CVE repositories — reference and interpret to identify known weaknesses in target systems during guided assessments.
- Operating system software environments including Linux and Windows — navigate and configure under direction to support initial reconnaissance activities.
- Structured test plans and assessment checklists — follow precisely to conduct entry-level security scans within a defined scope and rules of engagement.
- Program and system malfunctions identified during testing — document observations and escalate to senior testers for diagnosis and remediation guidance.
- Network security and VPN equipment software — operate under supervision to establish secure testing connections and monitor basic network traffic.
- Technical findings from automated vulnerability scanners — compile into preliminary reports using standardized templates under reviewer oversight.
- Database user interface and query software — apply foundational SQL knowledge to test for basic injection vulnerabilities in supervised web application assessments.
- Reading comprehension skills and vendor security advisories — apply to understand patch notes, exploit disclosures, and testing prerequisites before each engagement.
- Organizational security policies and rules of engagement — adhere to with strict attention to detail to ensure authorized-only testing on client systems.
- Multi-phase penetration testing methodologies — execute with reduced oversight across network, web application, and social engineering test vectors in client environments.
- Exploitation frameworks such as Metasploit and custom scripts — deploy independently to validate discovered vulnerabilities and demonstrate proof-of-concept exploits.
- Operating system and application server software — analyze configurations and misconfigurations to identify privilege escalation paths on enterprise infrastructure.
- Complex problem-solving techniques — apply when encountering non-standard defenses or unexpected system behaviors during live penetration engagements.
- Intermediate-level assessment reports — author with clear technical narratives, risk ratings, and remediation recommendations for both IT staff and business stakeholders.
- Database management system software — test for authentication bypass, privilege abuse, and data exposure vulnerabilities in routine client database assessments.
- Cloud-based management software and infrastructure — assess for misconfigured permissions, exposed storage buckets, and insecure API endpoints in cloud tenancy reviews.
- Staff and end users reporting security incidents — assist in troubleshooting and correlating symptoms to identify whether issues stem from active compromise or system malfunction.
- Object-oriented and scripting development environments — write and adapt exploit proof-of-concept code to validate specific vulnerability classes in target applications.
- Inductive reasoning and pattern recognition — apply across multiple client engagements to identify recurring vulnerability trends and refine testing efficiency.
- Full-scope penetration testing engagements — plan and execute autonomously across network, application, cloud, and physical attack surfaces for complex enterprise clients.
- Advanced persistent threat simulation and red team operations — design and conduct to replicate realistic adversary tactics, techniques, and procedures against hardened environments.
- Non-routine system malfunctions and anomalous behaviors encountered during testing — diagnose independently and differentiate between pre-existing issues and artifacts of the assessment.
- Custom exploit development and tool creation — produce using expert system software and development environments to address gaps where commercial tooling is insufficient.
- Business problem analysis and integrated security risk modeling — perform to translate technical findings into quantified business impact for executive decision-making.
- Computer-aided design and network architecture diagrams — interpret and leverage to identify architectural weaknesses and high-value lateral movement paths before active testing begins.
- Comprehensive penetration test reports and executive briefings — deliver independently with precise written and oral communication tailored to both technical and non-technical audiences.
- Adversarial threat intelligence and emerging exploit research — synthesize continuously to keep testing methodologies current with real-world attacker capabilities.
- Judgment and decision-making in high-stakes testing scenarios — exercise with disciplined cautiousness to halt or modify test activities when unplanned system impact is detected.
- Integrated production system assessments and regression testing programs — coordinate alongside development and operations teams to embed security validation into software delivery pipelines.
- Organizational penetration testing strategy and program maturity roadmap — define and champion at the executive level to align offensive security capabilities with enterprise risk posture.
- Enterprise-wide red team and adversary simulation programs — architect and oversee, setting scope, methodology standards, and success criteria across multiple concurrent engagements.
- Junior and mid-level penetration testers — mentor and develop through structured coaching, technical review, and career progression frameworks within the security organization.
- Cross-functional security improvement initiatives — lead by translating red team findings into prioritized remediation programs coordinated across engineering, operations, and compliance teams.
- Novel attack research and proprietary tooling innovation — sponsor and direct to advance the organization's offensive security capabilities beyond commercially available solutions.
- Organizational security policies, testing governance frameworks, and rules of engagement standards — author and maintain to ensure legally compliant and ethically sound testing practices at scale.
- Executive and board-level security briefings — deliver with authoritative oral and written communication, contextualizing technical risk findings within strategic business objectives.
- Industry partnerships, threat intelligence consortia, and external research communities — represent the organization within, fostering knowledge exchange that elevates internal team expertise.
- Staffing, budget allocation, and technology investments for the penetration testing practice — manage with accountability for demonstrating return on security investment to organizational leadership.
- Education and training curricula for offensive security disciplines — design and institutionalize to build a continuous pipeline of competent practitioners aligned to evolving threat landscapes.
AI-at-Work Competency Framework
Sources:Anthropic Economic IndexAnthropic Economic Index — release_2026_03_24. Opens in new tab.Jadhav & Danve, 2026Skill Automation Feasibility Index — Jadhav & Danve, 2026 (arXiv:2604.06906). Opens in new tab.WEF Skills TaxonomyWEF Skills Taxonomy 2021 — Building a Common Language for Skills at Work. Opens in new tab.Subscriber featureAuthoritative source data identified for 998 occupations
AI-at-Work Competency Framework
How a worker at each mastery level uses, directs, and evaluates AI tools in this occupation. Each statement cites its evidence inline; click a citation chip to verify the source.
- AI-assisted recon queries — submits target domain names and IP ranges to an LLM to surface publicly known vulnerabilities and CVE summaries, then manually verifies each finding before including it in scope documentation Jadhav & Danve, 2026Skill Automation Feasibility Index — Jadhav & Danve, 2026 (arXiv:2604.06906). Opens in new tab..
- Payload suggestion intake — accepts AI-generated lists of common exploit payloads and wordlists for initial credential-stuffing or fuzzing runs, reviewing each entry against the rules of engagement before execution.
- Automated report drafting — delegates the first-pass narrative of a penetration test report to an AI tool by feeding it raw tool output (Nmap, Burp Suite logs), then rewrites technical findings to meet client-specific language and risk-rating standards Jadhav & Danve, 2026Skill Automation Feasibility Index — Jadhav & Danve, 2026 (arXiv:2604.06906). Opens in new tab..
- Vulnerability triage co-analysis — runs discovered CVEs and CVSS scores through an LLM to generate prioritized attack-path hypotheses, applying independent critical thinking to confirm or discard each path before escalation Jadhav & Danve, 2026Skill Automation Feasibility Index — Jadhav & Danve, 2026 (arXiv:2604.06906). Opens in new tab. WEF Skills TaxonomyWEF Skills Taxonomy 2021 — Building a Common Language for Skills at Work. Opens in new tab..
- Script scaffolding — directs an AI assistant to generate boilerplate Python or Bash exploit proof-of-concept scripts from a described attack scenario, then audits and modifies the code to match the actual target environment.
- Multi-stage attack chain planning — constructs a full kill-chain outline by iterating with an LLM over recon data, enumerated services, and identified misconfigurations, while retaining sole authorship of lateral-movement and privilege-escalation decisions Jadhav & Danve, 2026Skill Automation Feasibility Index — Jadhav & Danve, 2026 (arXiv:2604.06906). Opens in new tab. WEF Skills TaxonomyWEF Skills Taxonomy 2021 — Building a Common Language for Skills at Work. Opens in new tab..
- Adversarial prompt stress-testing — applies LLM-based tooling to probe AI-integrated client applications for prompt injection and model manipulation vulnerabilities, documenting findings in standardized threat-modeling formats.
- Threat-intelligence synthesis — feeds OSINT feeds, dark-web excerpts, and vendor advisories into an AI pipeline to distill actor TTPs relevant to the client's sector, then cross-references output against MITRE ATT&CK before briefing stakeholders WEF Skills TaxonomyWEF Skills Taxonomy 2021 — Building a Common Language for Skills at Work. Opens in new tab..
- False-positive triage automation — configures an AI-assisted workflow to filter scanner noise from Nessus or OpenVAS output, reserving human judgment for ambiguous findings that require contextual understanding of the client architecture Jadhav & Danve, 2026Skill Automation Feasibility Index — Jadhav & Danve, 2026 (arXiv:2604.06906). Opens in new tab..
- AI autonomy boundary governance — defines which penetration-testing sub-tasks (passive recon, log parsing, report grammar) are delegated fully to AI agents versus which (exploit validation, risk rating, client communication) require human sign-off, and enforces that boundary across the engagement lifecycle Jadhav & Danve, 2026Skill Automation Feasibility Index — Jadhav & Danve, 2026 (arXiv:2604.06906). Opens in new tab. WEF Skills TaxonomyWEF Skills Taxonomy 2021 — Building a Common Language for Skills at Work. Opens in new tab..
- Adversarial model evaluation — assesses the security posture of client-deployed LLMs and AI pipelines by designing custom red-team scenarios that test data exfiltration, jailbreak resilience, and supply-chain integrity, synthesizing results into executive-level remediation roadmaps WEF Skills TaxonomyWEF Skills Taxonomy 2021 — Building a Common Language for Skills at Work. Opens in new tab..
- AI-augmented zero-day research — orchestrates LLM-assisted code-review pipelines over large proprietary codebases to surface novel attack surfaces, combining automated pattern recognition with deep manual exploitation research where automation feasibility is inherently bounded Jadhav & Danve, 2026Skill Automation Feasibility Index — Jadhav & Danve, 2026 (arXiv:2604.06906). Opens in new tab..
Evidence pack
- SAFI positioning
- Top skill: Critical ThinkingScore: 57.9 / 100precision: category_estimate
- WEF cluster
- Artificial Intelligenceartificial_intelligence
Pathsmith Durable Skills Framework
Pathsmith Durable Skills Framework
Ten durable-skill domains mapped to four proficiency/role levels for each occupation. Each statement is aligned to the Pathsmith taxonomy, derived from trusted grounding data and mapped to occupation-specific O*NET tasks and skills.
1Communication14 statements
- Reconnaissance findings summary — documents discovered attack surfaces and open ports in written reports using standardized templates Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Client intake communication — listens to scope and rules-of-engagement requirements during pre-engagement meetings to clarify testing boundaries Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Technical vocabulary use — applies basic cybersecurity terminology when describing vulnerability classes to team members during debriefs Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Vulnerability report drafting — writes structured penetration test reports that separate technical findings from executive summaries for mixed audiences Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Remediation explanation — translates exploit steps and CVSS scores into plain-language recommendations during client walkthrough sessions Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Peer briefing — presents discovered attack chains to internal red-team members using clear, sequenced narrative during after-action reviews Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Executive briefing delivery — communicates critical risk findings to C-suite stakeholders by framing technical vulnerabilities in business-impact language during formal readouts Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Scope negotiation communication — articulates testing constraints, legal boundaries, and methodology choices to clients during rules-of-engagement negotiations Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Evidence-based reporting — constructs reproducible proof-of-concept documentation with screenshots, tool output, and remediation steps in final deliverable reports O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Cross-functional coordination — conveys active exploit timelines and system disruption risks to IT operations teams during live penetration test windows Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Threat narrative authoring — crafts comprehensive attack scenario narratives that connect individual vulnerabilities into systemic risk stories for board-level consumption Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Methodology communication leadership — standardizes report templates and client communication protocols across an entire penetration testing practice Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Public disclosure communication — presents original vulnerability research findings at industry conferences using precise, credible technical storytelling Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Client education facilitation — leads post-engagement workshops that build client security teams' capacity to interpret and act on penetration test findings Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
2Leadership11 statements
- Self-directed task initiation — identifies and begins reconnaissance phases of assigned engagements without waiting for step-by-step guidance Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Tool selection ownership — takes responsibility for selecting appropriate scanning tools for defined target environments during supervised engagements Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Junior tester guidance — walks less-experienced colleagues through exploitation methodology and safe lab practices during team engagements Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Engagement scoping leadership — takes ownership of pre-engagement planning documents including scope definition and timeline coordination with clients Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Responsible disclosure ownership — leads the coordinated disclosure process when zero-day vulnerabilities are discovered during client engagements Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Red team lead execution — directs multi-person adversarial simulation campaigns by assigning targets, synchronizing attack phases, and consolidating findings Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Client relationship stewardship — maintains accountability for engagement quality, timeline adherence, and client satisfaction across multiple concurrent penetration test projects Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Incident escalation decision-making — assumes authority to halt or escalate a live test when unexpected critical system impact is detected Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Practice development leadership — builds and scales a penetration testing service line by defining hiring criteria, methodology standards, and quality benchmarks Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Mentorship program design — architects structured apprenticeship pathways that progress junior testers from script-based scanning to custom exploit development Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Strategic security roadmap influence — advises organizational leadership on multi-year offensive security program investment and maturity progression Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
3Metacognition10 statements
- Skill gap recognition — identifies personal knowledge gaps in specific vulnerability classes such as web application or Active Directory attacks and seeks targeted learning Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Test approach reflection — reviews own reconnaissance methodology after each engagement to note steps that were skipped or performed inefficiently Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Attack hypothesis monitoring — tracks the validity of assumed attack paths during an engagement and consciously revises them when evidence contradicts initial assumptions Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Learning strategy adaptation — adjusts study approaches when preparing for certifications such as OSCP or CEH based on self-assessed performance on practice labs Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Tool bias awareness — recognizes when over-reliance on automated scanners is limiting manual discovery and deliberately shifts to manual techniques Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Engagement debrief self-assessment — systematically evaluates own performance after each penetration test by comparing planned methodology against actual execution Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Cognitive load management — monitors own decision-making quality during high-complexity engagements and applies structured checklists when fatigue degrades judgment Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Knowledge transfer planning — identifies which personal expertise areas are undocumented and proactively creates internal knowledge base articles to externalize tacit skills Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Methodology evolution — continuously evaluates the effectiveness of personal and team attack frameworks against emerging defensive technologies and refines them accordingly Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Teaching as metacognitive calibration — uses the act of mentoring junior testers to surface and correct gaps in own conceptual understanding of exploitation techniques Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
4Critical Thinking12 statements
- Vulnerability classification — distinguishes between false positive and confirmed vulnerability findings by cross-referencing scanner output against manual validation steps Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Attack surface reasoning — identifies which discovered open services represent plausible entry points based on known exploit availability and patch status Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Evidence evaluation — assesses credibility of OSINT data sources before incorporating findings into an attack plan during initial reconnaissance phases Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Exploit chain construction — links individual misconfigurations and vulnerabilities into multi-stage attack paths by reasoning through trust relationships and privilege boundaries Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Defense assumption challenge — questions whether client-reported security controls are actually effective by designing tests that probe assumed defensive boundaries Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Risk prioritization reasoning — ranks discovered vulnerabilities by exploitability and business impact rather than CVSS score alone when building report findings Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Adversarial hypothesis testing — formulates and systematically tests competing hypotheses about how a target environment may be compromised during a black-box engagement Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Ambiguity resolution — identifies and resolves logical inconsistencies in scope documentation by consulting client and referencing contractual rules of engagement Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Tool output interpretation — critically evaluates automated scanner reports to separate noise from signal before committing exploitation resources Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Threat model construction — builds comprehensive attack trees for complex enterprise environments by systematically analyzing all trust boundaries, data flows, and privilege escalation paths Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Defensive control evaluation — assesses the logical soundness of client security architectures and identifies systemic design flaws beyond individual vulnerability instances Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Novel attack vector reasoning — constructs original exploit logic for unique or custom application environments where no public exploit exists Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
5Collaboration11 statements
- Team reconnaissance coordination — shares discovered hosts and open service information with fellow testers using shared tracking tools during team-based engagements Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Findings consolidation participation — contributes individual test results to team reporting documents without duplicating or overwriting colleagues' work Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Cross-functional engagement coordination — collaborates with client IT staff to schedule testing windows that minimize disruption to production systems Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Red-blue team interaction — shares attack findings with client defensive teams during purple team exercises to jointly improve detection capabilities Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Peer review participation — reviews colleagues' exploit code and report drafts to catch errors and strengthen overall deliverable quality Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Multi-disciplinary engagement execution — coordinates with network, application, and social engineering specialists during complex red team operations to synchronize attack phases Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Client team integration — embeds within client security operations centers during assumed-breach exercises to collaborate on realistic adversary simulation Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Conflict navigation — mediates disagreements between testing team members and client stakeholders over scope boundaries during active engagements Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Community knowledge contribution — publishes original research, tools, or techniques to open-source security communities to advance collective practitioner knowledge Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Cross-organizational collaboration leadership — leads joint penetration testing exercises across multiple client organizations or vendor teams during coordinated red team engagements Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Practice interoperability design — establishes information-sharing protocols between penetration testing and threat intelligence teams to create feedback loops that improve both functions Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
6Character12 statements
- Authorization boundary adherence — operates only within explicitly approved IP ranges and systems as defined in signed rules-of-engagement documentation Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Confidentiality maintenance — handles client network diagrams, credentials, and findings with strict need-to-know discipline throughout engagement lifecycle Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Honest findings reporting — documents actual discovered vulnerabilities without inflating or minimizing severity to meet client expectations Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Ethical dilemma navigation — escalates to engagement manager when discovered data suggests criminal activity or unintended third-party exposure rather than self-managing the situation Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Professional accountability — acknowledges and documents own mistakes during engagements such as unintended service disruptions and immediately notifies client point of contact Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Scope discipline — resists pressure from clients to test systems outside the agreed scope and documents all such requests formally Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Legal compliance stewardship — ensures all engagement activities comply with computer fraud statutes, data protection laws, and contractual obligations before and during testing Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Conflict-of-interest management — discloses prior relationships with target organizations to engagement leadership before accepting assignments Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Responsible disclosure practice — follows structured coordinated disclosure timelines when reporting discovered zero-day vulnerabilities to vendors rather than pursuing personal gain Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Ethics framework development — authors organizational codes of conduct and ethical guidelines for penetration testing practice that exceed minimum legal requirements Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Whistleblower courage — reports observed unethical practices by colleagues or clients to appropriate authorities despite professional or financial risk Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Industry standard stewardship — contributes to professional body guidelines such as PTES or OWASP standards to elevate ethical practice across the penetration testing profession Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
7Creativity11 statements
- Non-standard tool combination — combines multiple open-source reconnaissance tools in non-default configurations to map attack surface features that single tools miss Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Social engineering scenario ideation — proposes original phishing pretexts tailored to target organization's industry and employee roles during pre-engagement planning Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Custom payload crafting — writes original shellcode or script-based payloads that evade signature-based detection when standard tools are blocked by client defenses Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Novel lateral movement path discovery — identifies unconventional trust relationships between systems such as shared service accounts or legacy protocols that create unexpected pivot opportunities Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Attack scenario innovation — designs creative assumed-breach scenarios that simulate realistic advanced persistent threat behaviors rather than generic vulnerability exploitation Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Bespoke exploit development — creates purpose-built exploits for proprietary or custom application vulnerabilities where no public proof-of-concept exists Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Evasion technique invention — engineers novel defense evasion techniques that bypass next-generation endpoint detection by combining living-off-the-land binaries with custom obfuscation Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Testing methodology innovation — develops original engagement frameworks for emerging environments such as OT/ICS, IoT, or AI model interfaces that lack established testing standards Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Original vulnerability research — discovers and documents previously unknown vulnerability classes in widely used software platforms through independent creative investigation Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Adversary emulation design — invents novel threat actor simulation playbooks based on creative extrapolation of emerging threat intelligence that does not yet have codified TTPs Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Tool creation and publication — engineers and releases original penetration testing tools that introduce new capabilities to the professional community Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
8Growth Mindset11 statements
- Certification pursuit — enrolls in hands-on security training programs such as HackTheBox or TryHackMe to build foundational exploitation skills beyond job requirements Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Failure analysis — reviews unsuccessful exploit attempts to extract technical lessons rather than abandoning difficult targets Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Feedback integration — incorporates peer review comments on penetration test reports into revised drafts and future report structures Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Skill domain expansion — actively practices techniques outside current specialty such as a network tester learning mobile application assessment to broaden engagement capability Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Defensive knowledge pursuit — studies blue team tools and techniques to improve understanding of how attacks are detected and use that knowledge to refine offensive approaches Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Continuous threat intelligence integration — regularly updates personal attack playbooks based on newly published CVEs, threat actor TTPs, and defensive research Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Credential renewal commitment — maintains and advances professional certifications such as OSCP, GPEN, or CRTO through ongoing study and periodic recertification Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Post-engagement learning protocol — conducts structured personal debriefs after each engagement to extract lessons that improve methodology for subsequent tests Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Learning culture cultivation — establishes internal knowledge-sharing rituals such as weekly technique demonstrations and capture-the-flag competitions that elevate team-wide skill growth Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Emerging technology proactive mastery — independently researches and develops offensive techniques for new technology paradigms such as cloud-native, AI systems, or quantum-resistant cryptography before client demand emerges Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Public learning contribution — authors blog posts, conference talks, or training courses that share hard-won penetration testing lessons with the broader security community Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
9Mindfulness10 statements
- Scope awareness maintenance — pauses before executing each exploit step to confirm the target is within approved engagement boundaries Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Attention management — uses structured checklists to maintain focus on engagement objectives during long reconnaissance phases that produce large volumes of distracting data Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Stress response regulation — applies deliberate slowdown techniques when under client deadline pressure to prevent rushed decisions that could cause unintended system damage Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Ethical moment awareness — maintains conscious awareness of the potential real-world impact of each exploit action on production systems and data during live engagements Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Cognitive fatigue recognition — identifies personal signs of decision fatigue during extended engagements and schedules deliberate recovery breaks before continuing high-risk testing activities Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Intentional tool execution — reviews every command and script parameter before execution in production-adjacent environments to prevent unintended destructive actions Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Emotional regulation during conflict — maintains composed, professional demeanor when clients dispute findings or challenge methodology during tense readout sessions Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Present-moment situational awareness — monitors live engagement indicators continuously during active exploitation phases to detect unexpected defensive responses or system instability Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Team mindfulness modeling — demonstrates and coaches intentional, high-consequence decision-making practices that become standard operating procedure across the penetration testing team Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- High-stakes composure leadership — maintains and projects calm, methodical judgment during zero-day disclosure events or active incident-adjacent testing scenarios that carry significant organizational risk Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
10Fortitude11 statements
- Persistence through failed exploits — continues attempting alternative exploitation techniques when initial approaches are blocked by defenses rather than escalating prematurely Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Ambiguity tolerance — proceeds with reconnaissance in black-box engagements where no documentation or insider knowledge is provided Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Sustained effort under complexity — maintains systematic progress through multi-week red team engagements that involve repeated dead ends and resets of attack approach Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Client pushback resilience — upholds accurate risk severity ratings in reports when clients pressure testers to downgrade findings to avoid remediation costs Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Technical dead-end navigation — pivots to alternative attack vectors after exhausting one approach without losing momentum or abandoning engagement objectives Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Extended campaign endurance — sustains high-quality adversarial simulation performance across multi-month engagements that require continuous adaptation to evolving defensive countermeasures Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Unpopular finding delivery — presents critical findings that implicate senior client stakeholders or flagship products with professional courage and factual grounding Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Uncertainty navigation — operates effectively in fully black-box environments with no prior intelligence by building structured uncertainty tolerance into personal engagement methodology Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab. O*NET v30.2O*NET Resource Center — Occupational Information Network, v30.2 (Sept 2025). Opens in new tab.
- Organizational risk courage — escalates findings of critical systemic vulnerability to executive leadership even when the engagement sponsor resists disclosure Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Profession-level persistence — continues advancing offensive security research through periods of industry skepticism or legal ambiguity about emerging testing domains such as AI system exploitation Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
- Team resilience building — coaches penetration testing teams to maintain engagement quality and morale during high-pressure client relationships or back-to-back demanding engagements Pathsmith Durable SkillsPathsmith Durable Skills Framework — America Succeeds + CompTIA. Opens in new tab.
Show O*NET source anchors42 anchors · skillscrosswalk.com
O*NET enrichment · skillscrosswalk.com
Suggest an O*NET correctionSource anchors that ground each statement
- Troubleshoot program and system malfunctions to restore normal functioning.
- Provide staff and users with assistance solving computer-related problems, such as malfunctions and program pr
- Test, maintain, and monitor computer programs and systems, including coordinating the installation of computer
- Use the computer in the analysis and solution of business problems, such as development of integrated producti
Sources: O*NET v30.2 (CC BY 4.0), SkillsCrosswalk.com, LER.me, Anthropic Economic Index, SAFI (Jadhav & Danve, 2026), WEF Skills Taxonomy 2021, Pathsmith Durable Skills Framework. © 2026 EBSCOed.