CREST , a cybersecurity accreditation body, has introduced new AI-Enabled Penetration Testing standards aimed at accrediting services that responsibly utilize AI in cybersecurity. Launched on July 28, 2026, these optional standards enhance existing accreditation by allowing providers to demonstrate secure AI governance in their operations. The initiative responds to a reported increase in AI application among cybersecurity firms, with 76% incorporating AI into their services.
The new accreditation is expected to address governance gaps and enhance trust in AI-enabled services. Applications are now open for existing CREST members, with the first accreditations anticipated within a month. Nick Benson, CEO of CREST, emphasized the need for independent assurance in the face of growing AI adoption.