Passing the HTB CJCA Exam
A personal reflection on taking HTB CJCA after OSCP, the experience I brought with me, and how keeping records helped with report writing.
I passed HTB CJCA after OSCP. My reason for taking it was straightforward: a CJCA voucher came with my CPTS purchase, and I decided to use it. The experience turned out to be more valuable than I had expected, particularly the defensive perspective and report writing.
The background I brought with me
I had experience in infrastructure operations and vulnerability assessments, and used Splunk at work. Reading logs was already familiar to me. I had also passed OSCP before taking CJCA.
That is the background behind this account. It is a personal retrospective, not a preparation plan or a description of exam tasks.
HTB’s public certification overview describes CJCA as covering offensive and defensive foundations. For current certification information, consult that overview directly.
Keeping a record helped with writing
Keeping notes as I worked made report writing easier. I could consult the record instead of trying to reconstruct everything from memory.
I used SysReptor to write my report. I paid attention to consistent references and the order of the explanation so the reader could follow my work without having to guess what I meant. This describes my own writing approach, not a required format or a grading rubric.
Having time to work on the report made a difference to its quality. In my original reflection, that was one of the things I felt had gone well, alongside keeping a record throughout the work.
More than a bundled voucher
I had the voucher, so I used it. The defensive perspective and reporting work made it a worthwhile experience for me.