Cloud Security Bootcamps
Hands-on training in real-world cloud attack and defense.
From professional-level bootcamps to advanced expert-led cohorts for senior practitioners and enterprise teams.
Pwned Labs Microsoft Cloud Attack & Defense Bootcamp
- Professional Edition
- Professional Edition

Attack and defend realistic Azure and Microsoft 365 environments
Pwned Labs Amazon
Cloud Attack & Defense Bootcamp
- Professional Edition
Cloud Attack & Defense Bootcamp
- Professional Edition

Attack and detect AWS threats across identity and infrastructure
Pwned Labs Google
Cloud Attack & Defense Bootcamp
- Professional Edition
Cloud Attack & Defense Bootcamp
- Professional Edition
.png?width=241&height=260&name=Google-Cloud-Attack-and-Defense-Bootcamp%201-min(1).png)
Attack and defend GCP workloads in real threat scenarios
Get certified
Complete a Pwned Labs bootcamp and validate your skills through a fully hands-on practical exam.
Successful candidates earn a Pwned Labs professional certification, demonstrating real-world cloud security expertise that holds up in real environments.
Professional tier
Pwned Labs Microsoft Cloud Attack & Defense Bootcamp - Professional Edition
The Pwned Labs Microsoft Cloud Attack & Defense Bootcamp – Professional Edition teaches modern Azure and Microsoft 365 attack and defense tradecraft used by real threat actors, including Storm-0558 and APT-29.
Practitioners work through hands-on assume-breach scenarios to compromise, detect, and respond across Entra ID, Microsoft 365, and Azure infrastructure in realistic enterprise environments.
Next course starting: February 2026
Pwned Labs Amazon Cloud Attack & Defense Bootcamp - Professional Edition
The Pwned Labs Amazon Cloud Attack & Defense Bootcamp – Professional Edition focuses on modern AWS attack and defense tradecraft used by real threat groups such as AMBERSQUID and SCARLETEEL.
Practitioners execute hands-on assume-breach scenarios to audit AWS configurations, exploit identity and compute paths, and respond to active threats across realistic AWS environments.
Next course starting: March 2026
Pwned Labs Google Cloud Attack & Defense Bootcamp - Professional Edition
The Pwned Labs Google Cloud Attack & Defense Bootcamp – Professional Edition covers modern GCP and Google Workspace attack and defense tradecraft used by real threat actors, including TRIPLESTRENGTH.
Practitioners gain hands-on experience attacking and defending identity, workloads, and cloud services through assume-breach scenarios modeled on real-world GCP environments.
Build multi-cloud security capability with the M-CRTP3 certification
Develop consistent, practical red and blue team capability across AWS, Azure, and GCP. Completing ACRTP, MCRTP, and GCRTP earns the M-CRTP3 credential.
Expert tier
Pwned Labs Microsoft Cloud Attack & Defense Bootcamp - Expert Edition
The Pwned Labs Microsoft Cloud Attack & Defense Bootcamp - Expert Edition delivers advanced Microsoft Cloud attack chains and defender-focused outcomes, aligned to the Microsoft Cloud Red Team Expert (MCRTE) certification.
Practitioners execute end-to-end exploitation paths across Entra ID, Azure, Microsoft 365, Intune, and hybrid identity, then build and validate detections and response playbooks using Microsoft Defender XDR and Microsoft Sentinel.
Preferential pricing available for MCRTP alumni and existing Pwned Labs Enterprise customers.
Next cohort: May 2026

Meet the team
Ian Austin is a security researcher and educator with a career spanning over 20 years in technical, security and leadership roles for global enterprises.
Ian was Head of Content at Hack The Box, a leading online platform for cybersecurity training and assessment. He also participated in the Green Team of Locked Shields, a NATO cyber defense exercise, contributing to the design and execution of realistic scenarios.
He is the founder of Pwned Labs, providing gamified and immersive cloud security labs for red and blue teams.
Filip Jodoin has over half a decade of experience across both red and blue cybersecurity roles, with a strong focus on cloud adversary emulation and modern Microsoft Cloud attack techniques.
Prior to focusing on offensive security, Filip worked in Azure architecture roles at Ubisoft, where he addressed complex Microsoft Cloud security challenges at enterprise scale.
Filip focuses on designing and executing realistic attack simulations across Azure, Entra ID, and Microsoft 365 to evaluate detection coverage and defensive readiness.
Tyler Petty brings over a decade of cybersecurity experience across technical and leadership roles and works as a cloud security engineer.
Driven by a passion for helping others, he has created hands-on labs in cloud security and DevSecOps, along with a course on using Infrastructure as Code to build secure infrastructure on AWS.
He is actively involved in the cloud security community, contributing hands-on educational content and open-source resources focused on AWS security, DevSecOps, and real-world defensive and offensive techniques.
Matt Watkins has over a decade of experience in offensive and defensive security, spanning big tech, startups, and leading vendors, with a specialization in cloud security-particularly GCP.
He brings deep expertise in building and securing operations at scale, combining hands-on technical skills with a talent for breaking down complex topics to help teams understand both the "what" and the "why" behind modern security practices.
He brings an attacker-informed mindset to cloud defense, focusing on practical detection engineering, threat emulation, and real-world security operations in GCP environments.
What previous participants say
Caleb Havens
Red Team Operator & Social Engineer, NetSPI
"I’ve attended two training sessions delivered by Pwned Labs: one focused on Microsoft cloud environments and the other on AWS. Both sessions delivered highly relevant content in a clear, approachable manner and were paired with an excellent hands-on lab environment that reinforced key concepts and skills for attacking and defending cloud infrastructures. The training was immediately applicable to real-world work, including Red Team Operations, Social Engineering engagements, Purple Team exercises, and Cloud Penetration Tests. The techniques and insights gained continue to be referenced regularly and have proven invaluable in live operations, helping our customers identify vulnerabilities and strengthen their cloud defenses."
Sebas Guerrero
Senior Security Consultant, Bishop Fox
"The AWS, Azure, and GCP bootcamps helped me get up to speed quickly on how real cloud environments are built and where they tend to break from a security standpoint. They were perfectly structured, with real-world examples that gave me rapid insight into how things can go wrong and how to prevent those issues from happening in practice. I’m now able to run cloud pentests more confidently and quickly spot meaningful vulnerabilities in customers’ cloud infrastructure.”
Matt Pardo
Senior Application Security Engineer, Fortune 500 company
"I’ve worked in security for more than 15 years, and every step up came from taking courses and putting the lessons into practice. I’ve attended many trainings over the years, and Pwned Labs’ bootcamps and labs are among the best I’ve experienced. When you factor in how affordable they are, they easily sit at the top of my list. As a highly technical person, I get the most value from structured, hands-on education where theory is immediately reinforced through labs. Having lifetime access to recordings, materials, and training environments means you can repeat the practice as often as needed, which is invaluable. If you’re interested in getting into cloud security, sign up for Pwned Labs.”
Steven Mai
Senior Penetration Tester, Centene
“Although my background was mainly web and network penetration testing, the ACRTP and MCRTP bootcamps gave me a solid foundation in AWS and Azure offensive security. I’m now able to take part in cloud penetration testing engagements and have more informed security discussions with my team.”