The CREST Certified Red Team Manager - Scenario exam has a reputation for being tougher than it looks on paper. Braindumpsqa closes that gap with 20 practice questions modeled on the real CCRTM-SC objectives, edited by experienced IT professionals.
CREST CCRTM-SC Exam Overview:
| Certification Vendor: | CREST |
|---|---|
| Exam Name: | CREST Certified Red Team Manager - Scenario |
| Exam Number: | CCRTM-SC |
| Related Certifications: | CREST Certified Red Team Manager (CCRTM) |
| Available Languages: | English |
| Exam Duration: | 180 minutes |
| Passing Score: | At least 84 marks out of 120 (70%) for the Scenario component |
| Real Exam Qty: | 1 scenario question |
| Exam Price: | £800 + VAT |
| Exam Format: | Scenario Question, Written Scenario |
| Certificate Validity Period: | 3 years from the date the exam is sat |
| Sample Questions: | ![]() |
| Exam Way: | In-person computer-based examination at selected Pearson VUE test centres worldwide. The Scenario component is a closed-book written examination. Candidates receive an additional 15 minutes of reading time before the 3-hour Scenario exam. |
| Pre Condition: | No separate prerequisite exam is stated by CREST for the CCRTM examination; the CCRTM certification requires passing both the Multiple Choice & Long Form exam and the Scenario exam. |
| Official Syllabus URL: | https://www.crest-approved.org/ccrtm-faqs/ |
CREST CCRTM-SC Exam Syllabus Topics:
| Section | Objectives |
|---|---|
| Topic 1: Attack Methodology, Key Stages & Common Frameworks | - Cloud Environment Testing and Risks - Persistence Techniques and Risks - Hybrid Environment Testing and Risks - Physical access control bypasses and risks - Privilege Escalation Techniques and Risks - Lateral Movement Techniques and Risks - Initial Access Techniques and Risks - Attack Methodology Frameworks |
| Topic 2: Project Management, Governance & Oversight | - Stages of a red team engagement - Roles & responsibilities of the control group - Stakeholder Management & Engagement Integrity - Communications plans - Incident Management Response |
| Topic 3: Threat Intelligence | - Legalities / Ethics considerations of Threat Intelligence sources - Sources of Threat Intelligence - Benefits of Active vs Passive Methodologies - Considerations of Threat Models |
| Topic 4: Legal, Ethical and Moral Aspects of Attack Management | - Ethical testing considerations - Additional relevant legislation or contractual information - Data handling legislation - Inadvertent and Collateral targeting - Privacy legislation - Computer crime/cyber abuse and misuse legislation |
| Topic 5: Risk Management, Reporting and Communication | - Internationally Recognised Standards and Frameworks - Engagement Risk Management - Risk Management Lexicon - Articulating Risk |
| Topic 6: Key Concepts | - Detection and Response Assessment - Attack Path Mapping and Attack Path Simulation - Terminology - Red Team Frameworks - Red team, Purple team testing, penetration testing |
| Topic 7: Dropper/Implant Design, Safety and Secure Coding | - Implant Droppers capabilities and risks - Persistent vs Semi-Persistent implant design and risks - Infrastructure Controls - Implant Core capabilities and risks - Encryption vs Encoding - Implant Controls - Secure Data Handling |
| Topic 8: Rules of Engagement, Contingencies and Scenario Simulation | - Types of scenarios - Contingencies / Client Facilitation - Rules of Engagements - Test plans |
| Topic 9: Planning & Scoping | - Requirements Analysis (scoping) - Stakeholders for engagements |
Answers to the Most-Asked CREST CCRTM-SC Exam Questions
How much does the CCRTM-SC exam cost, and what is the passing score?
Registering for the CREST Certified Red Team Manager - Scenario exam costs £800 + VAT, and you need At least 84 marks out of 120 (70%) for the Scenario component to pass. One detail worth remembering: a failed attempt is not discounted — retaking the exam means paying £800 + VAT again in full. Use the Braindumpsqa test engine to benchmark yourself first; when your mock results consistently clear At least 84 marks out of 120 (70%) for the Scenario component, you are ready to book.
What does the CCRTM-SC exam cover, and why does it matter?
The CCRTM-SC exam is CREST's official test for the CREST Certified credential, a certification at the Certified level. Earning it tells employers your skills have been verified by the vendor itself, which carries real weight in hiring and promotion decisions. Within the same certification track, it sits alongside CREST Certified Red Team Manager (CCRTM), so it can also serve as a stepping stone toward those credentials.
Which topics does the CCRTM-SC exam test?
CREST divides the CREST Certified Red Team Manager - Scenario exam into 9 domains. The largest ones are Legal, Ethical and Moral Aspects of Attack Management, Threat Intelligence, Key Concepts — together these account for the bulk of your score, so start there. The complete domain-by-domain outline appears in the exam topics section above on this page.
If I fail the CREST Certified Red Team Manager - Scenario exam, what are my options? And how fast do I get the product?
Two layers of protection here. First, delivery: your CCRTM-SC product is available for instant download, and a copy lands in your email within one minute of payment — if 2 hours pass with nothing (check spam first), our support team will resend it. There is no cap on how many computers you can install it on. Second, the refund policy: if you take the CCRTM-SC exam within 60 days of purchase and fail, you may claim a full refund. The claim needs a scanned enrollment slip plus your official Score Report PDF, filed within 2 days after the exam, and it is settled within 7 days. The policy covers only the corresponding exam — attempts within 3 days of purchase, exams never actually taken, free materials, and expired orders are excluded, and the candidate's name must match the payer's. If you would rather keep studying, you can instead exchange your product for two free exam products of equal value and keep the update service on your original purchase.
How long is the CCRTM-SC exam, and how many questions does it have?
You will face 1 scenario question questions in 180 minutes on the CREST Certified Red Team Manager - Scenario exam. Do the math and the per-question budget is tight, which is why pacing drills matter as much as content review. Our advice: take two or three full timed mocks in the Braindumpsqa engine before the real thing, and practice skipping a stubborn question instead of burning five minutes on it.
Can I test-drive the CCRTM-SC material before paying?
Of course. Braindumpsqa publishes a free PDF demo for the CREST Certified Red Team Manager - Scenario exam so you can review real sample questions and answers first. Every purchase also includes 365 days of free updates, and after that period you can renew the update service at a 50% discount directly from your member zone.
Do I need to meet any requirements before taking the CCRTM-SC exam?
No separate prerequisite exam is stated by CREST for the CCRTM examination; the CCRTM certification requires passing both the Multiple Choice & Long Form exam and the Scenario exam. Eligibility rules are set by CREST and do change from time to time, so double-check the latest requirements on the official exam page at https://www.crest-approved.org/ccrtm-faqs/ before you register.
CREST Certified Red Team Manager - Scenario Sample Questions:
Question #1
Background: You are the Control Team Lead's primary point of contact at the Red Team provider for a TIBER-EU engagement against Larchmont Insurance SE. In week 9 of the required 12-week active Red Team testing phase, your team achieves the agreed primary objective (demonstrating a realistic path to manipulating claims-payment data) far earlier than the original plan anticipated, and does so without being detected by the Blue Team at any point. Your lead tester messages you, enthusiastic, suggesting that since the objective is already achieved with three weeks of the mandated minimum window still remaining, the team should simply
"wrap up early, write the report now, and free up the team for other engagements," since "we've proven the point already and nothing important is likely to change in the remaining weeks." Separately, the Threat Intelligence Report identified a secondary, lower-probability but still plausible threat actor and attack path (targeting the SE entity's cross-border reinsurance data-sharing arrangements) that the original test plan had allocated the remaining weeks to explore, time permitting.
Question: Assess the lead tester's suggestion to conclude testing early, and explain what should actually happen with the remaining three weeks of the mandated testing window.
Question #2
Background: You manage a red team engagement for Priorswood Legal Services Group, a firm that (unusually for your typical financial-sector client base) is itself a law firm with several regulated legal practice areas. During the engagement's OSINT and social engineering planning phase, your team compiles detailed public-source profiles of several named partners and senior associates to support a spear-phishing pretext, including publicly available information about their professional specialisms, recent case involvements mentioned in public court records and law firm marketing materials, and social media activity.
Priorswood's General Counsel (who, unusually, is also acting as a Control Group member for this engagement) raises a specific concern during a status call: some of the case involvement information your team has gathered, while technically drawn from public sources, relates to ongoing client matters that are subject to legal professional privilege from the perspective of Priorswood's own clients, and she is concerned that even referencing this information in your phishing pretexts or internal working documents could create a paper trail that "looks uncomfortably close to us handling privileged client-matter information carelessly, even though it's just OSINT." Question: Assess the General Counsel's concern, and explain how your team should handle OSINT collection and use in this specific engagement context, including any changes you would make to your standard approach.
Solutions:
| Question #1 Correct Answer: Only visible for members | Question #2 Correct Answer: Only visible for members |


PDF Version Demo
3 Customer Reviews




Quality and ValueBraindumpsQA Practice Exams are written to the highest standards of technical accuracy, using only certified subject matter experts and published authors for development - no all study materials.
Tested and ApprovedWe are committed to the process of vendor and third party approvals. We believe professionals and executives alike deserve the confidence of quality coverage these authorizations provide.
Easy to PassIf you prepare for the exams using our BraindumpsQA testing engine, It is easy to succeed for all certifications in the first attempt. You don't have to deal with all dumps or any free torrent / rapidshare all stuff.
Try Before BuyBraindumpsQA offers free demo of each product. You can check out the interface, question quality and usability of our practice exams before you decide to buy.