OSCP Overview & Exam Strategy
What is OSCP?
The Offensive Security Certified Professional (OSCP) is the gold standard certification for penetration testers. This lesson explains what makes OSCP unique and why it's highly valued in the industry.
The OSCP Certification
OSCP is offered by OffSec (formerly Offensive Security) and is earned by passing the PEN-200 exam. Unlike multiple-choice certifications, OSCP is a hands-on practical exam where you must compromise machines in a live network.
Key Facts (2025/2026)
| Aspect | Details |
|---|---|
| Exam Duration | 23 hours 45 minutes + 24 hours for report |
| Format | Hands-on penetration test |
| Passing Score | 70 out of 100 points |
| Certification Types | OSCP (lifetime) + OSCP+ (3-year validity) |
| Prerequisites | None official, but experience recommended |
| Proctored | Yes, via webcam |
OSCP vs OSCP+ (November 2024 Update)
When you pass the exam, you receive TWO credentials:
- OSCP: Never expires, valid indefinitely
- OSCP+: Expires after 3 years, requires 120 CPE credits + $145/year to maintain
The "+" designation proves current, up-to-date knowledge. Many employers now prefer OSCP+ as it ensures the holder's skills are recent.
Why OSCP Matters
Industry Recognition
- Required/Preferred for penetration testing roles at most companies
- DoD 8140 approved for DCWF work roles
- 15-20% salary premium compared to non-OSCP pentesters
- Gateway to advanced OffSec certifications (OSEP, OSWE, OSED)
What Makes It Different
Unlike CEH or Security+, OSCP requires you to prove your skills:
Traditional Certs: OSCP:
┌─────────────────┐ ┌─────────────────┐
│ Multiple Choice │ vs │ Live Hacking │
│ Memorization │ │ Practical Skills│
│ No Lab Required │ │ 24-Hour Exam │
└─────────────────┘ └─────────────────┘
The famous motto: "Try Harder" - OSCP expects you to research, troubleshoot, and persist through challenges.
Pricing Options (2025)
| Package | Price | What's Included |
|---|---|---|
| Course + Exam | $1,749 | 90-day lab access, 1 exam attempt |
| Learn One | $2,749/year | 365-day access, 2 exam attempts |
| Learn Unlimited | $6,099/year | All courses, unlimited attempts |
| Exam Retake | $249 | Additional attempt |
| OSCP+ Renewal | $799 | Standalone recertification exam |
Tip: If you're unsure about passing on the first attempt, Learn One provides better value with 2 exam attempts included.
Who Should Take OSCP?
OSCP is appropriate for:
- Security analysts transitioning to offensive security
- IT professionals wanting to enter penetration testing
- Bug bounty hunters wanting formal recognition
- Network/system admins interested in security assessment
Recommended Prerequisites
While not mandatory, OffSec recommends:
- Solid understanding of TCP/IP networking
- Linux command-line proficiency
- Basic scripting (Python/Bash)
- Familiarity with Windows and Linux systems
Next, we'll examine the exam structure and scoring in detail. :::