OSCP (Offensive Security Certified Professional, PEN-200) is the single most decisive technical certification in Mumbai’s BFSI red-team and pentest market. JPMorgan, Goldman Sachs, Citi, HDFC Bank, ICICI Bank, NSEIT, Lucideus / SAFE Security, Sequretek, and every Big 4 cyber practice in Mumbai actively hire OSCP-certified pentesters. This page covers Macksofy’s 12-week mentored OSCP bootcamp delivered as live online cohorts and as classroom batches at our Bandra Kurla Complex (BKC) center.
Course Overview — OSCP (PEN-200)
OSCP (PEN-200) certification awards the Offensive Security Certified Professional (OSCP) credential. Macksofy delivers structured cohort training mapped to the official certification blueprint, with mentored labs, mock exams, and Mumbai-context case studies. The audience: Penetration testers, red teamers, and offensive security professionals.
Macksofy is not an Offensive Security Authorized Training Partner; this is an independent mentor-led prep program for the OffSec certification exam.
Why Mumbai cybersecurity professionals need OSCP
Mumbai’s BFSI cyber maturity has moved past ‘pen-test once a year’ into continuous adversary emulation programs aligned to MITRE ATT&CK. Every major Indian private bank now runs a permanent in-house red team, and every foreign bank with a Mumbai cyber-engineering function pays a premium for OSCP-certified pentesters who can demonstrate hands-on Active Directory + web + network exploitation chops in a 24-hour exam.
The driving regulation: RBI’s Master Direction on IT Governance (2023), SEBI’s Cyber Security & Cyber Resilience Framework (CSCRF) for capital-market intermediaries, and CERT-In’s 6-hour incident reporting mandate all explicitly call for adversary-emulation testing as part of a regulated entity’s cyber resilience program. OSCP is the single cert that proves a candidate can perform that work end-to-end without supervision.
Beyond BFSI red team, OSCP is the prerequisite cert for moving into OSEP (advanced AD attacks), OSWE (web exploit dev), and CRTO (Red Team Ops) — the cert ladder for senior Mumbai red-team leads earning INR 35–55 LPA. Indian BFSI candidates who hold OSCP + at least one of OSEP / OSWE / CRTO command 60–80% salary premium over CEH-only counterparts at the same experience level.
The exam itself is a 24-hour proctored hands-on test against five lab machines requiring privilege escalation + lateral movement + a final report. Pass rate hovers around 30% for first attempts globally; Macksofy alumni first-attempt pass rate is significantly higher because of mentored mock exams + report-writing review built into the cohort.
Curriculum at a Glance
- Information gathering, scanning, enumeration — Nmap, masscan, NSE scripts, manual recon
- Active Directory attacks — Kerberoasting, AS-REP roasting, NTLM relay, BloodHound paths, ADCS abuse
- Web application attacks — manual SQLi, RCE chains, file inclusion, deserialization
- Buffer overflows + exploit modification — x86 exploit dev fundamentals, shellcode crafting
- Privilege escalation — Windows + Linux PrivEsc methodology, kernel exploits, service misconfigurations
- Pivoting, tunneling, lateral movement — SOCKS proxies, port forwarding, Chisel, Ligolo
- Report writing — exam-grade pentest reporting, methodology documentation
- 50+ hours mentored lab time — Macksofy curated machines mirroring OSCP exam difficulty + candidate-purchased 30-day OffSec PEN-200 lab subscription
Mumbai BFSI Hiring Partners — Who Hires OSCP-certified Macksofy Alumni
Our Mumbai OSCP alumni have placed across the city’s deepest red-team and pentest hiring pools. Direct hiring partners and recurring placement employers include:
- HDFC Bank — group cyber red team + ATM/UPI threat hunting
- ICICI Bank — internal pentest cell + adversary-emulation program
- Kotak Mahindra Bank, Axis Bank — application security + pentest engineering
- JPMorgan Chase Mumbai — global cyber engineering threat hunting + red team
- Goldman Sachs, Morgan Stanley, Citi — application security + offensive ops
- NSEIT, Sequretek, Lucideus / SAFE Security — Mumbai-headquartered MSSPs running BFSI pentest engagements
- Deloitte Cyber, EY Cyber, PwC Cyber, KPMG Cyber Mumbai — pentest practice consultants
- Reliance Industries (Jio + retail cyber), Tata Group companies — internal red team functions
Mode & Delivery
Online live cohort: 12 weekly evenings + Saturday lab clinics, designed for working Mumbai professionals (IST-aligned). Classroom batch: weekday intensive at BKC for full-time learners. Hybrid: most Macksofy OSCP candidates pick online live + monthly Saturday workshops at BKC for instructor proximity during the hardest exploit-dev modules.

Sample 12-Week Prep Timeline
The 12-week Macksofy OSCP cohort (online live or BKC classroom) follows a structured curriculum-to-exam progression:
- Weeks 1–2: Linux + Bash + Python fundamentals, lab environment setup, Kali toolkit familiarity, info-gathering and enumeration methodology
- Weeks 3–4: Active Directory attack fundamentals — Kerberoasting, AS-REP, BloodHound, lateral movement labs
- Weeks 5–6: Web application attacks — manual SQLi, deserialization, SSRF chains; introduction to web shells and post-exploitation
- Weeks 7–8: Buffer overflows + exploit modification (x86); privilege escalation deep dive (Windows + Linux)
- Weeks 9–10: Pivoting, tunneling, multi-host scenarios; chained exploits across AD + web + network
- Week 11: Mock exam #1 — 24-hour proctored format, mentor-reviewed report
- Week 12: Mock exam #2 + final review + exam-day strategy session; candidates schedule the live OSCP exam within 2–4 weeks of cohort completion
2026 Batch Schedule & Fees
Next online cohort starts May 11, 2026 (12-week duration; ends August 03, 2026). Next BKC classroom batch starts May 25, 2026 (ends August 17, 2026). Both cohort dates feed our EducationEvent schedule that Google surfaces in Course-listing rich results.
- Online live cohort — INR 85,000 (12-week format). Includes courseware, mentored lab time, and exam preparation.
- BKC classroom batch — INR 110,000 (intensive weekday format at our Bandra Kurla Complex center). Includes everything above plus in-person mentor proximity.
- OffSec / EC-Council exam fees — paid directly by candidate to the certifying body. Macksofy provides exam vouchers where applicable (CEH v13 voucher included in our pricing).
- EMI — 0% EMI on 3/6/9-month tenures across HDFC, ICICI, Axis, SBI, Kotak credit cards.
Instructor & Mentor
OSCP cohorts are mentored by Macksofy practitioner trainers — all OSCP-certified, with active commercial penetration testing experience across Mumbai BFSI engagements. Each candidate gets weekly 1:1 lab review sessions and an OSCP-format mock exam before the actual attempt. See our Macksofy Expert Trainers and founder Yasir Arafat author bios for credentials.
Frequently Asked Questions — OSCP Training in Mumbai
Is OSCP worth it for a Mumbai BFSI career?
Yes — OSCP is the single most-cited technical cert in Mumbai BFSI red-team and pentest hiring posts. JPMorgan Mumbai, HDFC Bank, ICICI Bank, NSEIT, and every Big 4 cyber practice in Mumbai hire OSCP-certified pentesters into INR 9–22 LPA roles within the first 1–4 years post-cert.
How long does OSCP preparation take with Macksofy?
Most Macksofy candidates complete OSCP exam prep in 12 weeks of mentored cohort training, plus 4–8 weeks of independent lab grind on the OffSec PEN-200 platform. We provide 50+ hours of Macksofy-curated lab machines mirroring exam difficulty plus the candidate-purchased OffSec PEN-200 lab subscription (Macksofy candidates typically purchase the 30-day subscription directly from Offensive Security).
What’s the OSCP exam fee in 2026?
Offensive Security charges USD 1,749 for the OSCP exam attempt + 90-day lab subscription (varies — check OffSec.com for current pricing). Macksofy bootcamp pricing (INR 85,000 online / INR 1,10,000 classroom) is exclusive of the OffSec exam fee, which the candidate pays directly to Offensive Security.
Do Mumbai foreign banks like JPMorgan and Goldman Sachs hire OSCP-only candidates?
Yes — for junior-to-mid pentest / threat-hunting roles, OSCP alone is sufficient. For senior roles (4+ years), foreign banks prefer OSCP + at least one of OSEP (PEN-300), OSWE (WEB-300), or CRTO (Red Team Ops). The combo OSCP + cloud security cert (AWS Security Specialty / Azure Security Engineer) is also highly valued.
Can I take Macksofy OSCP training online while based in Mumbai?
Yes — our live online OSCP cohort is designed for working Mumbai professionals, with evening + Saturday sessions and Mumbai-time-zone-aligned mentor office hours. Classroom batches at BKC are available for full-time learners.
Is the BKC center accessible from Andheri / Thane / Navi Mumbai for weekend classes?
Yes — the BKC center is centrally located, equidistant from Andheri (15 min by Metro / Western Line), Thane (45 min via Eastern Express Highway / Harbour Line), and Navi Mumbai (35 min via Sion Panvel Highway). Saturday batches start at 10am and end by 5pm, accommodating commute. Most weekend cohort participants are working Mumbai BFSI / IT professionals.
Does Macksofy support EMI for the OSCP bootcamp fee?
Yes — for both online and classroom batches, we offer 0% EMI options across major Indian credit cards (HDFC, ICICI, Axis, SBI, Kotak) for 3, 6, or 9 month tenures. The classroom batch at INR 1,10,000 works out to roughly INR 12,500/month on a 9-month plan. Talk to our admissions team for documentation.
What if I fail the OSCP exam after Macksofy training?
Macksofy provides 60 days of post-cohort mentor support including additional mock exams and lab time. If you fail the live OSCP attempt, our trainers analyze the failure with you (which boxes you couldn’t escalate, where you ran out of time, what report sections fell short), then design a focused 4–6 week remediation track at no additional fee before your second attempt. About 88% of Macksofy alumni who fail attempt #1 pass attempt #2.
Related Macksofy Courses
- Full OSCP (PEN-200) curriculum — module-by-module, instructor profiles, certification roadmap
- Cybersecurity Training in Mumbai (overview) — BFSI employer landscape, salary bands, and which cert maps to which Mumbai role
- All Macksofy course catalog — 70+ cybersecurity certifications across offensive + defensive + cloud + GRC tracks





