Practical AI Pentest Associate

LEARN HOW TO HACK AI,
THEN PROVE IT.

The PAPA certification is an associate-level AI penetration testing exam experience. The exam will assess a student’s ability to exploit an agentic AI application.

papa badge

What is the Practical AI Pentest Associate (PAPA) Certification?

The Practical AI Pentest Associate (PAPA) certification is a real-world AI penetration testing exam experience. The exam will assess a student’s ability to perform a penetration test on an AI based application. Students will have two (2) full days to complete the assessment and an additional two (2) days to write a professional report.

How to Pass the PAPA Exam

In order to receive the certification, a student must:

Exploit an agentic AI application using any preferred tools or techniques.
Provide a detailed, professionally written report.
TCM Security exam vouchers are valid for 12 months and come with access to the training materials the exam is based on. Access begins on the day the voucher is purchased. We highly recommend preparing before attempting the exam. If you don’t initially succeed, don’t worry! We never want to profit on failure and include one free retake with every exam voucher.

Practical AI Pentest Associate Exam Format

Like all TCM Security certifications, the PAPA exam was designed to teach students how to apply their skills in a real-world situation. This is not a CTF. Our exams provide an experience that is similar to what you will be asked to do in a professional environment.

Absolutely ZERO flags to capture.
NO multiple choice questions.
WHAT IS INCLUDED

10+ Hours of On-Demand Training (12 Months Access)

Hands-On Local Labs

1 Exam Attempt + 1 Free Retake (12 Months Access)

2 Days to Complete

2 Days to Write Report

24/7/365 Course Support

Prerequisites
Beginner IT Knowledge
Device Capable of Running Virtual Machines

$249

Students, teachers, current/former military members, and first responders can save 20% on certifications. Email [email protected] with proof of status to receive a coupon code.

Who Should Take the Practical AI Pentest Associate Exam?

The PAPA is an associate-level introduction to the world of AI penetration testing. It is recommended that students have some familiarity with basic penetration testing methodologies. The PAPA is appropriate for:

  • Penetration testers expanding into AI/LLM environments
  • Developers building AI applications who want to understand their threat landscape
  • Blue teamers and security engineers assessing AI-based business risks
  • Technologists and enthusiasts curious about AI vulnerabilities and real-world exploits

How to Prepare for the PAPA Exam

AI 100: Fundamentals

AI fundamentals
Students will receive 12 months of access to over 4 hours of training materials in the AI 100: Fundamentals course on TCM Security Academy. The PAPA exam was built from the information and resources that you will find delivered in this course material, including:
  • What is a neural network and how do they function
  • Designing, implementing, and training your own basic neural network
  • Transformer LLM architecture including encoder/decoder, encoder only, and decoder only
  • How LLMs function internally
  • Setting up and interacting with your own local LLMs

AI Hacking 101

bug bounty logo
Students will receive 12 months of access to over 6 hours of training materials in the AI Hacking 101 course on TCM Security Academy. The PAPA exam was built from the information and resources that you will find delivered in this course material, including:
  • Prompt injection & jailbreaking
  • Sensitive information disclosure / data exfiltration (e.g., via RAG)
  • Improper output handling (harmful content, misinformation)
  • System prompt leakage
  • Excessive agency and logic/behavioral manipulation
  • RAG & Vector DB attacks (poisoning, retrieval manipulation)
  • Reconnaissance and model fingerprinting

AI Hacking 101: Live Training

hack artificial intelligence badge
Next Class Begins February 2nd!

This one day live training session teaches students the fundamentals of penetration testing AI/LLM based applications. Not only will students learn about common vulnerabilities, but they will also spend hands-on time in a custom-built environment exploiting and uncovering these vulnerabilities.

The training includes:

  • 1 day of live instruction
  • 1 PAPA exam attempt + training
  • Access to the class recordings
  • Access to a private Discord cohort for instructor and classmate discussions
  • 50 hours of online lab access post-class
  • CEU credits

All TCM Security Certifications Include:

Video Training

Receive 12 months of access to video-led training that was developed to provide a hands-on learning experience.

Realistic Exams

Our certification exams are designed to provide the student with a real-world penetration test experience.

Free Retake

If for any reason you need to take the exam a second time, we include a free retake voucher.  We don’t profit from your failures.

Industry Recognized

We are pleased to provide the most realistic and cost-effective cybersecurity certifications recognized by industry professionals and organizations.

Non-Invasive Experience

Complete the exam in the comfort of your own home without proctors or installed monitoring software.

Stable Environments

Get unlimited access to our stable student exam environments.  Hosted safely for you in the cloud.

Unbeatable Support

We proudly offer 24/7/365 customer support with the additional benefit of access to our community Discord with over 60,000+ students.

Discounts

We happily provide military, veterans, students, teachers, and first responders with a 20% off coupon, valid on certification vouchers, with or without training.

Request Certification Reimbursement

Training doesn’t stop once you land a pentesting position. If your company offers a training budget or reimbursement for continuing education, consider using it on TCM Security live training and certifications! To make things easier, we’ve created a Training Budget Request Template—a customizable document designed to align your learning goals with your company’s objectives. Be sure to follow your company’s policies and procedures to increase the likelihood of your request being approved.

Training Options for Organizations

Are you a manager looking to upskill your team? We offer bulk discounts for organizations looking to purchase multiple certification vouchers. Ask us about our training bundle. We also conduct private group session training. Please reach out to us at [email protected] if you are interested in learning more about those options!

Frequently Asked Questions

Does my training expire?
All certifications come with 12 months of training access starting from the purchase date.
Does the certification expire?
No, the Practical AI Pentest Associate certification does not expire at this time.
Does my exam voucher expire?
Your exam voucher is valid for 12 months, starting on the day of purchase.
Will I receive a digital certification?
Yes! You can view an example of those here.
How long is the exam?
The exam environment permits two full days to exploit an agentic AI application using any preferred tools or techniques
You will have an additional two days to write a professional report and submit it to our team.
How difficult is the exam?
Everyone is different. However, we believe that it’s achievable if you:
  • Have some experience with penetration testing and want to expand your skillset to include AI applications.
  • Have completed the included training materials and all of the practical exercises.
The environment isn't loading- what do I do?

This exam environment is a little different than other TCM exams. Upon launching the exam, it will take 25-30 minutes for the environment to spin up. The timer will not start until the environment is available. Read the RoE while you wait and contact support ([email protected]) if you need additional help.

Do you offer any discounts?
Yes! We are veteran-owned and want to thank you for your service.

We offer a 20% discount to current and former military as well as first responders (Police, EMTs, Firefighters, Nurses, Doctors, etc.), regardless of country.  We also extend this discount to students.

Please email [email protected] with proof of first responder status, such as a discharge form, ID, etc. and we will issue you a coupon code to use on purchase.  If you are a student, please email us from a valid educational address or provide proof of current enrollment.

Do you offer printed certifications?
In efforts to stay green, we do not offer printed certifications.  However, our certifications come in a high quality printable format and you’re welcome to have them printed on your own accord.
Is the exam proctored?
No. We do monitor network traffic in the exam environment and have detection mechanisms in place for cheating in the environment and the exam, but there will be no proctor or intrusive software to install on your machine.
Do you offer bulk discounts?
We do. If your organization would like to purchase several certification vouchers for your team members to learn more and upskill, please contact [email protected] for more information.

Ready to Get Started?

Your future in cybersecurity is here.
Home          About          Contact Us