Cybersecurity accreditation and certification body announces two new skills development-focused partnerships as cybersecurity skills challenges continue to impact organizations. Credit: Metamorworks / Getty Images Information security accreditation and certification body CREST has announced two new partnerships aimed at developing the cybersecurity skills of its members. The first is a partnership with cyber workforce optimization platform Immersive Labs to support the development of defensive and offensive security skills. The second is a collaboration with cybersecurity training and upskilling platform Hack The Box to assist the development of offensive security capabilities. Both will help CREST members prepare for CREST examinations, the company said. The partnerships come as cybersecurity skills and resources challenges continue to impact organizations across the globe.CREST-Immersive Labs partnership to provide threat simulations, mitigation techniquesCREST’s partnership with Immersive Labs will see the latter provide access to hands-on simulations of threats and mitigation techniques, allowing those preparing for CREST examinations to exercise and improve capabilities in line with the certification framework, the firm stated in a press release. CREST will work with Immersive Labs to put a particular focus on incident response, mapping its online, on-demand content to the exam syllabus and delivering several bespoke learning pathways, it added.“We are delighted to be working with Immersive Labs to offer members a powerful, real-time alternative for ongoing skills development,” said Rowland Johnson, president of CREST. “Immersive Labs will be providing labs that are aligned to our examination framework and CREST accredited organizations will have free access to entry level labs. They will then have the option to gain access to a wider set of labs, at a reduced cost which will be aligned to our registered and certified level exams. This new partnership is not only providing our members with better access to training for CREST exams, but we also hope it will build a greater sense of community.” CREST-Hack The Box partnership to deliver innovative, interactive approach to skills developmentCREST’s partnership with Hack The Box will provide test labs tailored toward individuals who are planning to take CREST penetration testing and red-teaming examinations, the firm stated. CREST is currently working with Hack The Box to map its current content against the CREST exams to create fully bespoke labs that will cover the following exams: CREST Practitioner Security Analyst (CPSA)CREST Registered Security Analyst (CRSA)CREST Registered Penetration Tester (CRT)CREST Certified Tester (CCT – Web and Infrastructure)CREST Certified Simulated Attack Specialist (CCSAS)CREST Certified Simulated Attack Manager (CCSAM)Johnson said that the labs will cover all levels – from entry to advanced – and will be made available to both the CREST and Hack The Box communities. “CREST accredited organizations will have free access to entry level labs, with the option to gain access to a wider set of labs, at a reduced cost, as a result of this new partner relationship,” he added.Commenting, Hack The Box’s Director of Operations Nikos Fountas said that the gamified labs will help to indicate if someone is at the right level to take and pass certain CREST exams. Skills shortages behind many cybersecurity challengesThe skills development partnerships have been announced a month after a report from cybersecurity vendor Fortinet discovered that many of the challenges organizations face in combating cybercrime are directly related to a lack of qualified cybersecurity professionals. In the 2022 Cybersecurity Skills Gap report, 60% of more than 1,200 IT and cybersecurity decision-makers said they struggle to recruit cybersecurity talent, with 52% struggling to retain qualified people once they have them. What’s more, 67% of those surveyed agreed that the shortage of qualified cybersecurity candidates creates additional risks for their organizations. Related content news Singing River ransomware attack now thought to have affected over 895,000 The health care provider has dramatically increased its estimate of the number of patients affected by the August 2023 attack. By Shweta Sharma May 15, 2024 4 mins Data Breach Ransomware brandpost Sponsored by Sans Institute Clock is ticking for companies to prepare for EU NIS2 Directive Many companies are still not ready for the impact of NIS2, but SANS can help them prepare. By Laura McEwan May 15, 2024 3 mins Security feature Backlogs at National Vulnerability Database prompt action from NIST and CISA A crisis at the key US service for ranking vulnerabilities has been fueled by short resources and an explosion of security flaws as the volume of software production increases. By John Mello Jr. May 15, 2024 10 mins Threat and Vulnerability Management Security Practices Vulnerabilities news FBI warns Black Basta ransomware impacted over 500 organizations worldwide CISA advisory includes indicators of compromise and TTPs that can be used for threat hunting. By Lucian Constantin May 14, 2024 6 mins Ransomware Phishing Healthcare Industry PODCASTS VIDEOS RESOURCES EVENTS SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe