CREST - Certified Web Application Tester (CCTT APP)

Duration

Duration:

Just 4 Days

Method

Method:

Classroom / Online / Hybrid

Next date

Next date:

10/2/2025 (Monday)

Overview

The accelerated CREST Certified Web Application Tester (CCTT APP) certification is an assessment of the candidate’s ability to find vulnerabilities in bespoke web applications.  The examination uses specially designed applications running on a variety of web application platforms and now covers a wider scope than purely traditional web applications to include more recent advances in the field of web application technology and security. The candidate will be expected to demonstrate that they are able to find a range of security flaws and vulnerabilities, including proving the ability to exploit and leverage the flaws to ascertain the impact of the issues found.

In addition to traditional web application security, it is advised that candidates familiarise themselves with the following topics which are included in the practical examination and also may be included in the written components:

  • Flash Application Testing
  • .Net Thick Clients
  • Java Applets
  • Identification of functionality within client-side code that is accessible only to privileged users
  • Vulnerabilities in increasingly prevalent application frameworks – e.g. Rails
  • Identification of more recent SSL vulnerabilities – e.g. BEAST
  • HTTP Header Fields relating to security features – e.g. HSTS
  • Decompilation of client-side code – e.g. Flash, Java, .Net
  • Web Server security misconfigurations – e.g. WebDAV

At the end of this course, you’ll achieve your CREST Certified Web Application Tester (CCTT APP) certification. Through Firebrand’s Lecture | Lab | Review methodology, you’ll get certified at twice the speed of the traditional training and get access to courseware, learn from certified instructors, and train in a distraction-free environment.

 

Audience

  • The CREST Practitioner level examinations are the entry level professional exams and are aimed at individuals with around 2,500 hours (two years) of relevant and frequent experience.
  • The CREST Registered level examinations are the next step and by passing this you are demonstrating your commitment as an information security tester.  Typically, candidates wishing to sit a Registered examination should have at least 6,000 hours (three years or more) of relevant and frequent experience.
  • The CREST Certified level examinations are designed to set the benchmark for senior professionals. These are the certifications to which most aspire and the examinations are aimed at individuals with approximately 10,000 hours (five to six years) of relevant and frequent experience.The above timescales are recommended, not mandatory.

Four reasons why you should sit your course with Firebrand Training

  1. You'll be trained and certified faster. Learn more on this 4-day accelerated course. You'll get at least 12 hours a day of quality learning time in a distraction-free environment
  2. Your course is all-inclusive. One simple price covers all course materials, exams, accommodation and meals – so you can focus on learning
  3. Pass first time or train again for free. Your expert instructor will deliver our unique accelerated learning methods, allowing you to learn faster and be in the best possible position to pass first time. In the unlikely event that you don't, it's covered by your Certification Guarantee
  4. Study with an award-winning training provider. We've won the Learning and Performance Institute's "Training Company of the Year" three times. Firebrand is your fastest way to learn, with 134.561 students saving more than one million hours since 2001

Curriculum

  • Module 1: Flash Application Testing
  • Module 2: .Net Thick Clients
  • Module 3: Java Applets
  • Module 4: Identification of functionality within client-side code that is accessible only to privileged users
  • Module 5: Vulnerabilities in increasingly prevalent application frameworks – e.g. Rails
  • Module 6: Identification of more recent SSL vulnerabilities – e.g. BEAST
  • Module 7: HTTP Header Fields relating to security features – e.g. HSTS
  • Module 8: Decompilation of client-side code – e.g. Flash, Java, .Net
  • Module 9: Web Server security misconfigurations – e.g. WebDAV

 

Exam Track

  • At the end of this accelerated course, you’ll sit the following exam at the Firebrand Training centre, covered Certification Guarantee:

    CREST Certified Web Application Tester (CCTT APP) Exam

    • Duration: 3 hours
    • Format: 150 multiple choice questions
    • Number of questions: 150
    • Passing score: 60%

What's Included

Your accelerated course includes:

  • Accommodation *
  • Meals, unlimited snacks, beverages, tea and coffee *
  • On-site exams **
  • Exam vouchers **
  • Practice tests **
  • Certification Guarantee ***
  • Courseware
  • Up-to 12 hours of instructor-led training each day
  • 24-hour lab access
  • Digital courseware **
  • * For residential training only. Accommodation is included from the night before the course starts. This doesn't apply for online courses.
  • ** Some exceptions apply. Please refer to the Exam Track or speak with our experts
  • *** Pass first time or train again free as many times as it takes, unlimited for 1 year. Just pay for accommodation, exams, and incidental costs.

Prerequisites

    • The CREST Practitioner level examinations are the entry level professional exams and are aimed at individuals with around 2,500 hours (two years) of relevant and frequent experience.
    • The CREST Registered level examinations are the next step and by passing this you are demonstrating your commitment as an information security tester.  Typically, candidates wishing to sit a Registered examination should have at least 6,000 hours (three years or more) of relevant and frequent experience.
    • The CREST Certified level examinations are designed to set the benchmark for senior professionals. These are the certifications to which most aspire and the examinations are aimed at individuals with approximately 10,000 hours (five to six years) of relevant and frequent experience.The above timescales are recommended, not mandatory.

Are you ready to get certified in record time?

We interview all applicants for the course on their technical background, degrees and certifications held, and general suitability. If you get through this screening process, it means you stand a great chance of passing.

Firebrand Training is an immersive training environment. You must be committed to the course. The above prerequisites are guidelines, but many students with less experience have other background or traits that have enabled their success in accelerated training through Firebrand Training.

If you have any doubts as to whether you meet the pre-requisites please call 21 96 61 82 and speak to one of our enrolment consultants, who can help you with a training plan.

Reviews

We've currently trained 134.561 students in 12 years. We asked them all to review our Accelerated Learning. Currently,
94,80% have said Firebrand exceeded their expectations:

"Great to learn with a motivated and fun instructor who genuinely wants you to succeed. The training environment and those you are learning with was motivating and promoted positive engagement and interaction. In summary, an excellent course and teach method."
JC. (18/9/2023 (Monday) to 21/9/2023 (Thursday))

"Firebrand had good communication before the course began, the instructor was knowledgeable and credible, and covered many aspects of both CTI and management, in good detail."
Anonymous. (18/9/2023 (Monday) to 21/9/2023 (Thursday))

"Thanks to our instructor, I really enjoyed the course, materials was explained and taught well. He has a deep knowledge of Cyber Security and I’m looking forward to sitting my exam!"
Toju Nanna, Proact IT. (8/8/2023 (Tuesday) to 11/8/2023 (Friday))

"Instructor was patient, explained well, interactive"
RW. (1/8/2023 (Tuesday) to 4/8/2023 (Friday))

"The instructor was very knowledgeable and able to answer questions proficiently. In regards to practical application of threat intelligence, the instructor provided useful recommendations"
Anonymous (1/8/2023 (Tuesday) to 4/8/2023 (Friday))

Course Dates

Start

Finish

Status

Location

Book now

26/8/2024 (Monday)

29/8/2024 (Thursday)

Finished - Leave feedback

-

 

 

10/2/2025 (Monday)

13/2/2025 (Thursday)

Limited availability

Nationwide

 

24/3/2025 (Monday)

27/3/2025 (Thursday)

Open

Nationwide

 

5/5/2025 (Monday)

8/5/2025 (Thursday)

Open

Nationwide

 

16/6/2025 (Monday)

19/6/2025 (Thursday)

Open

Nationwide

 

Latest Reviews from our students