C)PTE logo
Focused certification exam prep
Start practice

C)PTE Requirements 2026: Eligibility, Prerequisites & How to Qualify

TL;DR
  • Mile2 requires no prerequisite course to sit the Certified Penetration Testing Engineer exam.
  • Recommended preparation: C)PEH or equivalent knowledge, 12 months of networking experience, TCP/IP, basic Linux, and Microsoft security familiarity.
  • The Standard exam has 100 multiple-choice questions, about two hours, and a 70% minimum passing grade.
  • The Standard Exam Combo is described as online, on-demand and unproctored; C)PTE-A is a separate accredited exam.

What "Requirements" Really Means for Mile2's C)PTE

Search for "C)PTE requirements" and you will find confusion, because several unrelated credentials and even a Canadian physiotherapy examination share similar-looking letters. This article concerns one thing only: the Certified Penetration Testing Engineer credential issued by Mile2, in its traditional Standard form, aligned to the 2026 preparation curriculum. If you are weighing it against other credentials, our overview What Is C)PTE Certification? covers the identity question in more depth.

When people ask about requirements, they usually mean three different things, and it helps to separate them:

  • Formal eligibility: what Mile2 demands before you may take the exam. For the Standard exam, there is no mandatory prerequisite course.
  • Recommended experience: what Mile2 suggests you bring so the material is not overwhelming. This is guidance, not a gate.
  • Practical readiness: whether you can actually reason through attack scenarios across the ten curriculum domains well enough to clear a 70% minimum grade.

Treating these as one thing is the most common mistake. A candidate can be formally eligible on day one and still be months away from practical readiness.

No Mandatory Prerequisite Course

Mile2 does not require you to complete a specific training course before purchasing and sitting the C)PTE exam. That is an important distinction from programs where an official class is a hard entry condition. You may self-study, use the optional training bundle, or rely on prior professional experience.

Recommended is not required: The suggested background (C)PEH or equivalent knowledge, networking experience, and so on) describes what makes the material manageable. It is not verified at registration, and no one checks your résumé before you buy the exam. The responsibility for honest self-assessment sits with you.

Because there is no gatekeeper, the real question becomes: am I prepared enough to make this attempt count? The Standard Exam Combo includes two attempts, which provides a safety margin, but you should not plan to spend an attempt as a diagnostic. Our guide on how hard the C)PTE exam is can help you calibrate.

Mile2's suggested preparation has five components. Each maps to specific skills the curriculum later assumes you already have.

C)PEH or Equivalent Knowledge

C)PEH is Mile2's ethical hacking credential. "Equivalent" means you already understand the standard attack lifecycle and common tooling without needing it explained.

  • Reconnaissance, scanning and enumeration vocabulary
  • Basic exploitation concepts and why they work
  • The legal and ethical framing of authorized testing

12 Months of Networking Experience

Penetration testing is largely applied networking. Without hands-on time, pivoting, tunneling and segmentation questions feel abstract.

  • Routing, switching, VLANs and firewall behavior
  • Common service ports and how traffic traverses a network
  • Reading packet captures with confidence

Sound TCP/IP Knowledge

You should be able to explain handshakes, fragmentation, and what a scan actually sends and receives, not just which flag to type.

  • TCP state behavior and how scan types differ
  • DNS resolution and its abuse in reconnaissance
  • Why certain evasion techniques alter packet characteristics

Basic Linux Knowledge

Most offensive tooling lives on Linux, and many exploitation and post-exploitation scenarios assume comfort at a shell.

  • File permissions, processes, services and scheduled tasks
  • Basic scripting and text processing
  • Understanding local privilege escalation surfaces

Microsoft Security Experience

Modern environments are heavily Microsoft-centric. Domain 5 in particular expects you to reason about identity infrastructure, not just individual hosts.

  • Active Directory structure and authentication flow
  • Entra ID, Microsoft 365 and hybrid identity concepts
  • Where misconfiguration creates attack paths

If one of these is weak, close that gap first. A candidate strong in Linux but light on Microsoft identity will struggle disproportionately with Domain 5 and the lateral movement material in Domain 4.

Standard Exam vs. the Accredited C)PTE-A

This is the single most expensive point of confusion in the whole topic. Mile2 offers the Standard Certified Penetration Testing Engineer exam and, separately, an accredited version known as C)PTE-A. They are not interchangeable, and rules from one must not be applied to the other.

AspectStandard C)PTEAccredited C)PTE-A
Exam productStandard Exam ComboSeparate accredited exam
Delivery describedOnline, on-demand via your Mile2 account, without a proctorDistinct accredited process; do not assume Standard rules
Format and passing grade100 multiple-choice, about two hours, 70% minimumDifferent requirements apply; not interchangeable
What to verifyCombo contents on the Mile2 product pageScope on Mile2's accredited-exam page

One wrinkle deserves honesty. Mile2's general Policies and Procedures document (dated May 26, 2026) discusses open-book testing and uses broader proctoring language than the Standard product page, which explicitly describes unproctored delivery. These sources do not perfectly align. The practical advice: follow the instructions displayed on your own exam account for the Standard exam, and read the current Policies and Procedures before test day rather than relying on a forum post or an older summary. For a side-by-side discussion, see the related coverage in our C)PTE passing score guide.

Exam Format and Registration Mechanics

Qualifying in practice means buying the right product and understanding what you are signing up for.

  • Product: the C)PTE Exam Combo, with the Standard option selected.
  • Contents: an exam-preparation guide, a practice quiz and two exam attempts.
  • Delivery: online and on demand through your Mile2 account, described as unproctored for the Standard exam.
  • Format: 100 multiple-choice questions over roughly two hours.
  • Passing grade: a minimum of 70%.
Labs are preparation, not the exam: Course labs help you build skill, but they are not a separately verified practical certification examination. The five-day live course and its 40 course CEUs describe training, not exam timing. Do not expect a hands-on exploitation assessment on exam day; expect knowledge questions.

On cost: the Standard exam price and optional training-bundle prices could not be independently confirmed from the retrievable issuer product listings, so this article does not quote a figure. Check the current Mile2 product page directly, and use our C)PTE certification cost breakdown for how to think about the pieces. Do not assume a price you saw for C)PTE-A, a bundled combo or a renewal applies to the Standard exam. Scheduling flexibility is covered in C)PTE exam dates and scheduling.

Content Readiness: What the Ten Domains Expect You to Do

Because there is no prerequisite course, the curriculum itself defines "qualified." The ten headings below come from Mile2's current detailed outline; they are unweighted preparation headings, not an official weighted blueprint, so do not read their order as exam proportion. Our complete domains guide goes deeper on each.

Methodology and Reconnaissance (Domains 1 and 2)

Expect to reason about authorized scope and rules of engagement. A representative scenario: a client's statement of work lists one subnet, but your DNS enumeration reveals a related host on a third-party hosting provider. The right instinct is to stop and seek written clarification, not to test it. Beyond ethics, Domain 2 expects you to map an attack surface through DNS, OSINT and service reconnaissance, and to interpret what discovered services imply about next steps.

Exploitation and Post-Exploitation (Domains 3 and 4)

You should distinguish local from remote exploitation, understand why a foothold on one workstation might enable lateral movement, and know how post-exploitation cleanup fits a professional engagement. Consider a scenario where you obtain a low-privilege shell: the question is rarely "which exploit," and more often "what does this account's position let me reach, and what evidence must I document and remove afterward."

Identity, Cloud and Hybrid (Domain 5)

Domain 5 pairs cloud and Active Directory exploitation. Be ready to reason about Entra ID, Microsoft 365 and hybrid identity: how an on-premises compromise can extend to cloud resources, and how misconfigured trust or synchronization creates paths. Think in terms of identities and trust relationships rather than individual machines.

Evasion and Payloads (Domain 6)

Study controlled-lab payload concepts: why signature-based detection can be sidestepped, what staged versus stageless delivery means conceptually, and how defenders observe such behavior. The emphasis is conceptual understanding suitable for authorized testing.

Web, API and Mobile (Domain 7)

Authorization flaws dominate here. A typical scenario: an API returns another customer's record when you change an identifier in the request. Recognizing broken object-level authorization, improper access control and weak session handling is more valuable than memorizing tool flags.

Threat Simulation, Purple Team and Reporting (Domains 8, 9 and 10)

Here the curriculum widens from technique to outcome. Use MITRE ATT&CK to describe an attack chain end to end, then reason about purple-team detection validation: if you executed a technique and the SOC saw nothing, what telemetry gap does that reveal? Finally, Domain 10 tests whether you can translate findings into technical detail for engineers and business risk for executives. Many technically strong candidates underprepare this area.

Key Takeaway

Do not use the ten domains as a checklist of tools. Use them as a list of decisions: what is in scope, what does this foothold reach, what would a defender see, and how do I explain the risk to someone who will never run a scanner.

Course Access vs. Credential Validity

Mile2 sells several packages, and the time windows attached to them are easy to misread. Keep three clocks separate:

  • Course and lab access: the optional Ultimate Combo includes one-year course access, videos, a digital workbook, a lab guide and two weeks of Cyber Range access, plus two exam attempts. These periods end whether or not you have certified.
  • Exam attempts and voucher access: the attempts included with a combo have their own access terms; confirm them in your account and the Terms and Conditions.
  • Certification validity: once earned, the credential runs on a three-year cycle, independent of any course or lab window.

In other words, losing access to your course videos does not invalidate your certification, and conversely, a valid certification does not give you ongoing lab access. Candidates sometimes assume "one year" in a product description is the credential's lifespan; it is not.

Sequencing Your Preparation by Domain

Rather than a generic schedule, order your study around dependency. Reconnaissance and methodology underpin everything, while reporting and purple-team material is easiest once you understand the attacks being described. For a fuller plan, see our C)PTE study guide; the sketch below shows one reasonable sequence.

Weeks 1-2

Foundations and Recon

  • Close gaps in TCP/IP, Linux and Active Directory basics
  • Cover methodology, scope and rules of engagement (Domains 1-2)
Weeks 3-5

Attack Techniques

  • Exploitation, post-exploitation and lateral movement (Domains 3-4)
  • Cloud and identity paths (Domain 5), the heaviest Microsoft-dependent area
Weeks 6-7

Applied Surfaces

  • Evasion concepts and web/API/mobile authorization (Domains 6-7)
Week 8

Chains, Detection and Reporting

  • ATT&CK chains, purple-team validation, reporting (Domains 8-10)
  • Take the included practice quiz and add timed practice from our practice test site

This is an illustration, not a requirement; candidates with strong networking backgrounds may compress the early weeks. If your experience is thin, extend them rather than skipping ahead.

Staying Certified: The Three-Year Cycle

Qualifying once is not the end of the requirements story. The certification carries a three-year validity cycle, and Mile2 offers two renewal routes:

  1. CEU route: 60 documented CEUs, the applicable renewal purchase, and compliance with Mile2's ethics and policy requirements. Mile2's FAQ quotes USD 200 for the U.S. regional CEU-route renewal fee and states that annual membership is not required.
  2. Re-examination: pass the current full certification examination again.

Keep records of professional activities as you go, since "documented" means you may need to substantiate them. Details on both paths appear on Mile2's Renewal Paths page; our C)PTE certification overview summarizes the lifecycle.

Who Should Pursue It, and Who Should Wait

Because the barrier to registering is low, fit matters more than eligibility. The credential suits practitioners moving into or deepening penetration-testing work, such as security analysts, network engineers and system administrators who have started doing offensive work. If you are asking about career outcomes, read C)PTE jobs and be cautious with earnings claims: general penetration-tester salary data does not measure a premium specific to C)PTE holders, so treat any such figure skeptically. Our ROI analysis frames that question honestly.

Consider waiting if you cannot yet read a packet capture, have never touched Active Directory, or have no Linux comfort. Spending a few months on those fundamentals will raise your odds more than any amount of memorization. When you feel ready, test yourself under timed conditions with the practice exams before committing an attempt.

Frequently Asked Questions

Do I need to take a Mile2 course before the C)PTE exam?

No. Mile2 does not require a prerequisite course to sit the certification exam. The training is optional, and the suggested background is guidance rather than an enforced entry condition.

What experience does Mile2 recommend?

C)PEH or equivalent knowledge, 12 months of networking experience, sound TCP/IP knowledge, basic Linux knowledge and Microsoft security experience. These are recommendations to make the material manageable, not verified requirements.

What is the format and passing grade of the Standard exam?

The current course outline specifies 100 multiple-choice questions, approximately two hours, and a minimum passing grade of 70%. The Standard Exam Combo includes an exam-preparation guide, a practice quiz and two attempts.

Is the Standard C)PTE the same as C)PTE-A?

No. C)PTE-A is a separate accredited exam with its own rules. Do not apply its proctoring or passing requirements to the Standard exam, which Mile2 describes as online, on-demand and unproctored.

How long does the certification last?

Three years. You can renew with 60 documented CEUs plus the applicable renewal purchase and ethics/policy compliance, or by passing the current full exam. Course and lab access periods are separate and do not affect validity.

Ready to pass your C)PTE exam?

Put this into practice with free C)PTE questions across every exam domain.