Post

Passing the HTB CJCA Exam

A personal reflection on taking HTB CJCA after OSCP, the experience I brought with me, and how keeping records helped with report writing.

Passing the HTB CJCA Exam

I passed HTB CJCA after OSCP. My reason for taking it was straightforward: a CJCA voucher came with my CPTS purchase, and I decided to use it. The experience turned out to be more valuable than I had expected, particularly the defensive perspective and report writing.

The background I brought with me

I had experience in infrastructure operations and vulnerability assessments, and used Splunk at work. Reading logs was already familiar to me. I had also passed OSCP before taking CJCA.

That is the background behind this account. It is a personal retrospective, not a preparation plan or a description of exam tasks.

HTB’s public certification overview describes CJCA as covering offensive and defensive foundations. For current certification information, consult that overview directly.

Keeping a record helped with writing

Keeping notes as I worked made report writing easier. I could consult the record instead of trying to reconstruct everything from memory.

I used SysReptor to write my report. I paid attention to consistent references and the order of the explanation so the reader could follow my work without having to guess what I meant. This describes my own writing approach, not a required format or a grading rubric.

Having time to work on the report made a difference to its quality. In my original reflection, that was one of the things I felt had gone well, alongside keeping a record throughout the work.

More than a bundled voucher

I had the voucher, so I used it. The defensive perspective and reporting work made it a worthwhile experience for me.

This post is licensed under CC BY 4.0 by the author.