Security1 distinct publisher3 min readPublished
The optional module went into CREST's penetration testing standard in July 2026 and ten providers have now cleared it. CREST's own survey put 69% of providers already using AI in daily delivery, so the badge still covers a thin slice of the market.
The Watch · Security desk

Compiled by The WatchSomething wrong?How this is made
CREST's announcement covers what the module is for, but not what earning it required. CREST describes the module as an independent assessment that lets providers demonstrate responsible, secure AI governance to clients and regulators [5]. The criteria and the evidence requirements are not set out in the material [14]. For a buyer that is still useful, because it converts a scoping-call conversation into a document request: which parts of an engagement were in scope for the assessment, whether target or client data reaches a third-party model provider, whether a model selects exploitation actions or only triages output, whether findings are human-verified before they reach the report, and how long prompts and results are retained.
The adoption numbers are the reason the module cannot yet work as a filter. CREST's March 2026 report found 76% of providers had increased AI usage over the past year and 69% were already integrating it into daily service delivery [7]. Ten firms hold the module [1]. More than 100 organisations signed CREST's AI Charter in June [8], which puts the accredited group at no more than a tenth of the population that has already put its name to the principles [12]. Score a bid down for lacking the module today and you disqualify most of the field, including firms whose only exposure is that the assessment is four months old [2].
The sequence is compressed. Report in March 2026, AI Principles in March, Charter in June, module folded into the Penetration Testing Accreditation Standard in July [7][8][2], so four months separated the finding from something a client can ask to see [13]. Denis Kucinic, VP Operations at Packetlabs, framed the point in procurement terms, saying independent and assessable standards let providers back up voluntary promises with concrete assurance [11]. CREST CEO Nick Benson put it as the industry moving from discussion and principles towards independently assured adoption [9].
The exposure being governed here runs deeper than report quality. A testing provider holds scope documents, live findings and, on many engagements, credentials. If any of that transits a hosted model, the provider's model plumbing sits in the same risk category as any other subprocessor in the chain, and until now the only way to interrogate it was to ask the vendor and believe the answer. William Wright of Closed Door Security, one of the ten, said AI is helping security teams work faster and at scale but needs to be governed appropriately [10].
Ten passes establish that the assessment runs and that firms in Europe, India and the US have been through it [1][4]. That's enough to put a request for the assessment scope into a questionnaire, though not yet enough to read an absence as a finding [12].
Ranked by verification strength, evidence, and original report placement.
CREST has granted 10 companies its newly established accreditation recognising responsible use of AI within penetration testing services.
The AI-Enabled Penetration Testing accreditation is a new optional module integrated in July 2026 into CREST's existing Penetration Testing Accreditation Standard.
The first cohort of accredited providers is Closed Door Security Ltd, ImmuniWeb, JUMPSEC Ltd, Packetlabs, Pentesys, REDSECLABS Private Ltd, Risk Associates, SECNORA OU, Solusec Ltd and Thoropass Inc.
The module allows accredited providers who actively integrate AI into their daily operations to undergo independent assessment and formally demonstrate responsible, secure AI governance to clients and regulators.
The new module will not affect standard CREST memberships, but gives providers using AI a way to verify their practices and earn an extra layer of trusted assurance.
CREST's AI in Penetration Testing report, released March 2026, found 76% of cybersecurity providers had increased their AI usage over the past year and 69% were already integrating it into daily service delivery.
Distinct publishers with included, body-backed reporting in this cluster.
1 article · September 3, 2026
Follow any of these and your For You feed starts watching them — no settings page required.
Evidence-backed comparisons of source perspectives and observed adoption signals. Read the methodology
Which Builder, Operator, and Investor concerns the observed source mix emphasized—not a truth score.
Evidence, demonstrated adoption, hype gap, incentives, and confidence are assessed independently, each on its own current evidence. How these are measured.
One write-up of the issuer's own announcement
The ten names, the July integration date, the March report and the 76%/69% figures all reach us the same way: CREST said them, and Infosecurity Magazine reported them. That is fine for a roster and a date. It is thinner for the claim at the centre of the story, because the assessment criteria are nowhere in the coverage — so 'independently assured' currently rests entirely on the assurer's description of its own work.
Ten firms against a market CREST itself sized
CREST supplies the denominators that make its own launch look early: 100-plus organisations signed the free charter, ten have taken the assessed module, and 69% of providers already run AI in daily delivery. Real uptake, in other words, but a tenth of the signatory list and a sliver of the practitioner base two months after the module went live.
Restrained numbers, load carried by one adjective
Infosecurity Magazine does not inflate anything — it prints the small number, ten, and the awkward context, 69%. The stretch is verbal. 'Independently assured, responsible adoption' is doing the work of a published standard nobody outside CREST has read, and the only voices vouching for it are the body that sells the assessment and two firms that just passed it. Sloppy edges like a Canadian and a UAE-linked member inside a 'Europe, India and the US' cohort suggest announcement copy carried through with light handling.
Everyone quoted benefits from the badge
Three voices appear and all three are on the same side of the transaction: the body that created and sells the accreditation, and executives at two of the ten firms that have just been awarded it. Absent are an unaccredited competitor, a client who has asked for the module in a tender, and any regulator to confirm it means anything to them — even though clients and regulators are the audiences CREST names.
Solid on the event, thin on what it certifies
We are confident the module exists, that it went in during July 2026 and that these ten firms hold it; that is a registry fact and easily corrected later. Confidence drops sharply on meaning — whether the badge changes procurement behaviour, and what it demands of a provider, cannot be settled from a single write-up whose supporting documents remain unpublished.