CompTIA PenTest+

CompTIAMidDoD 8570

Exam fee

$404

≈ 319 GBP · 545 CAD · 372 EUR · rolling-avg FX; verify with your bank before any payment

Exam code

PT0-003

Renewal

3yr

The CompTIA PenTest+ is a cybersecurity certification from CompTIA with an exam fee of $404 and a 3-year renewal cycle. Approved under DoD 8570. Built from the Bureau of Labor Statistics and CompTIA's official exam requirements.

ByDecipherU Editorial
Version 1.0 · Published April 2026 · Last verified April 2026
How is it pronounced?
COMP-tee-uh pen-test plus

About the CompTIA PenTest+

PenTest+ is the offensive counterpart to CySA+. It covers the full engagement lifecycle: scoping, reconnaissance, exploitation, post-exploitation, and reporting. Unlike OSCP, which is a 24-hour practical exam, PenTest+ is a mix of multiple choice and performance-based questions, which makes it more accessible as a first offensive cert. DoD 8140 approves it for Vulnerability Assessment Analyst work roles. Hiring managers for junior pentest roles often ask for PenTest+ as a baseline and OSCP as a proof of real exploitation skill; carrying both reads as serious commitment to the craft.

Who should earn it

SOC Analysts pivoting to offensive work, IT practitioners learning ethical hacking, and junior pentesters building up their credential stack toward OSCP.

Exam details

Provider
CompTIA
Exam code
PT0-003
Questions
85
Duration
165 minutes
Passing score
750/900
Exam fee
$404 (verify with CompTIA)
Renewal
Every 3 years via CPE
Experience level
Mid
DoD 8570/8140
Approved

Prerequisites

CompTIA recommends Network+, Security+, and three to four years of hands-on IT or security experience. Not enforced.

Key domains

  • Planning and Scoping
  • Information Gathering and Vulnerability Scanning
  • Attacks and Exploits
  • Reporting and Communication
  • Tools and Code Analysis

Federal and DoD relevance

The CompTIA PenTest+ is approved under DoD Directive 8570.01-M (now 8140), so cybersecurity roles supporting US Department of Defense information systems can use it to satisfy the baseline certification requirement for their IAT, IAM, or CSSP workforce category. That matters for federal contractors, cleared facilities, and agencies where 8140 compliance is a hiring gate.

Salary impact

PenTest+ typically adds $10,000-$20,000 for entry-level offensive roles and is commonly listed for junior pentester postings in the $95,000-$120,000 range. It is considered the credential that makes your resume readable to non-technical recruiters.

Most relevant roles

Last verified: April 2026?Report an inaccuracy

This role lives inside a packaged path

Want the curriculum, comp delta, and recommended courses for this role?

DecipherU bundles cybersecurity roles into a small set of packaged paths. Each path has the curriculum sequence, the compensation delta it unlocks, and the recommended courses, all pre-set. Two ways in:

Exam code PT0-003. CompTIA publishes 5 domains: Planning and Scoping, Information Gathering and Vulnerability Scanning, Attacks and Exploits, Reporting and Communication, Tools and Code Analysis. Practice questions on DecipherU are grouped by those domains.

Up to 85 questions in 165 minutes, with a passing score of 750/900, according to CompTIA. Formats and counts change between exam versions, so confirm on the CompTIA site before you book.

CompTIA lists the exam fee at $404 USD. Vouchers, bundles and regional pricing differ; the fee on the CompTIA site at checkout is the one that applies.

3 years, per CompTIA. Renewal is through continuing education credits or by passing a current exam; CompTIA sets the credit count and the deadline.

CompTIA recommends Network+, Security+, and three to four years of hands-on IT or security experience. Not enforced.

Sources

  1. CompTIA official website · Certification pricing, exam format, and renewal requirements
  2. Bureau of Labor Statistics, Occupational Employment and Wage Statistics, May 2024

Related Cybersecurity Resources

Wondering if CompTIA PenTest+ is right for you?

Take a free behavioral assessment to discover which certifications align with your natural strengths and cybersecurity career goals.

Was this page helpful?

DecipherU's career insights are developed by Julian Calvo, Ed.D., M.S., with AI-assisted research and drafting, then reviewed and edited by DecipherU Editorial. Career and compensation data come from the U.S. Bureau of Labor Statistics, O*NET, and industry compensation databases. Assessment frameworks are grounded in peer-reviewed psychometric research, learning sciences (University of Miami), organizational learning (Barry University), and applied AI (Northeastern University). AI is used as a research and drafting tool; all methodology, framework design, scoring, and editorial standards are owned by the DecipherU team.