CARTP
Altered Security

Certified Azure Red Team Professional

Advanced Practical Azure/Azure AD attack-path exam + report Pass: Provider-defined objective threshold; verify late… $249

CARTP emphasizes practical Azure/Azure AD offensive security with identity-centric attack chains. For 2026, prioritize Entra ID attack primitives, token abuse, and tenant-level impact articulation.

Official Page
IssuerAltered Security
FormatPractical Azure/Azure AD attack-path exam + report
Duration~24h practical window (indicative)
Pass ScoreProvider-defined objective threshold; verify late…
Cheat Sheets
Exam-Day Workflow (2026)
- Build a strict recon -> validate -> exploit -> prove impact -> report loop. - Record every command/output pair with timestamps. - Keep fallback paths for each objective. - Use indicative timelines: first pass discovery, second pass depth, final pass report polish. - Validate findings twice before documenting business impact.
Reporting Checklist
- Executive risk summary per objective/domain - Technical evidence (request/response, command output, screenshots) - Reproduction steps with minimal ambiguity - Clear remediation with priority and owner suggestions - Retest guidance and residual risk notes