Regions icon
Membership icon
Certification icon

CREST Focus Groups

CREST Focus Groups help us to continually monitor best practice in Penetration Testing, Threat Intelligence, Incident Response, Intelligence-Led Testing and SOC.

They also aid CREST in the development of its accreditation and certification requirements, ensuring that they remain fit for purpose and keep abreast of technological advancements.

Each group provides a sector specific focus for members and offer the opportunity for them to benefit from purposeful networking opportunities.  Membership is open to any representative from a member company accredited to the discipline.  Each Group has the following responsibilities:

  • Review membership accreditation processes;
  • Review related examination syllabuses;
  • Provide feedback to the CREST Assessors on examination content and quality, via their Focus Group Sub-Committee;
  • Provide feedback on discipline related issues;
  • Horizon-scan upcoming social, technological, economic, legal, regulatory, political and ethical factors that may impact their specialist area;
  • Provide direction to CREST, its initiatives and support related government initiatives;
  • Support Industry Advisory Groups.

Our Terms of Reference document provides key information and defines the terms that apply to all CREST’s Focus Groups and their Sub-Committees. Please note that due to the geographical spread and number of accredited companies, the split and number of seats varies for each Focus Group. Furthermore, where not all disciplines are represented across the regions, this would be reflected in the sub-committee composition.

If you are interested in learning more about the activities of these Focus Groups, please email [email protected]

Representatives from the buying community can engage with our Industry Advisory Group, giving buyers a role in supporting CREST policy and practice.

Each Focus Group is run by an elected Sub-Committee of members globally with the number of seats per region based on the number of accredited companies in each region.

Penetration Testing Focus Group Sub-Committee Members

EMEAAsiaAustralasiaAmericas
Tom Ellson, JumpsecPhil Arkwright, WithSecureAbartan Dhakal, Stickman CyberTaylor Smith, Pivot Point Security
Vincent Goovaerts, KrollFaizal Ashruf, USTEdward Farrell, Mercury ISSTony UcedaVelez, Versprite (Vice-Chair)
Ben Jacob, SecureworksManish Chawda, Pragma Pte LtdJack Rutherford, Triskele Labs
Miguel Marques, Quorum CyberCameron Leong, Centurion
Rob McElvanney, PA ConsultingSamuel Pua, WatchTowr
Boglarka Ronto, Commissum Associates (Chair)Louis Truong, VSEC
Abhijeet Udas, NCC Group
Tom Wedgbury, Nettitude Group

 

Incident Response Focus Group

EMEAAsiaAustralasiaAmericas
Stefano Maccaglia, RSAJason Ka Lee, PwC Hong Kong (Vice-Chair)Chathura Abeydeera, KPMGDavid Brilliant, Alvarez & Marsal
Benn Morris, 3B Data Security (Chair)
Adrian Shaw, Nettitude Group

Threat Intelligence

EMEAAustralasia
Oliver Church, Orpheus Cyber (Chair)Jason Smart, PwC
Rob Dartnall, Security Alliance (Vice-Chair)
Oliver Fairbank, Orpheus Cyber
Oliver Fay, Context Information Security
Andrew Flood, Nettitude Group
Matthew Hull, NCC Group

CREST Intelligence-Led Testing Focus Group

EMEAAsiaAustralasia
Dominic Chell, MDSecSaeid Atabaki, TrustwaveChathura Abeydeera, KPMG (Vice-Chair)
Matt Lorentzen, Cyberis (Chair)
Doug McLeod, Nettitude Group
Rob McElvanney, PA Consulting

 

CREST Security Operations Centre (SOC) Focus Group

EMEAAsia/Australasia
Leigh Collett, Accenture (Chair)Ramesh Naidu, Vigilant Asia (Vice-Chair)
Alan Freeland, DigitalXRAIDAneesh Jayakumar, Cyberproof
John Lodge, Socura
Dan Ryder, Nettitude

 

Industry Advisory Group
The Industry Advisory Groups (IAG) are an independent forum for senior professionals who discuss current industry topics and provide advice to CREST on the role it should play in supporting the buying community.  Meetings operate under the Chatham House Rule.

Each CREST Council will be establishing their own groups to focus on the buying community’s specific needs in their region.  IAGs in the UK and Australia are already in place.

If you are a buyer of cyber security services and would like to get involved in any of these groups, or as a member you know of a buyer who would like to be involved, please email Elaine Luck on [email protected]