Practitioner Security Analyst
Validate your practical penetration testing and security analysis skills with the CREST Practitioner Security Analyst (CPSA) certification. This globally recognized credential is for professionals actively performing technical security assessments.
Exam syllabus, organized by domain
Syllabus overview
Exam summary
The CREST Practitioner Security Analyst (CPSA) certification is the foundational tier of CREST's penetration testing pathway, specifically designed for practitioners performing hands-on security assessments. It validates a candidate's breadth of knowledge across networking, security standards, penetration testing methodologies, tools, and professional ethics. The exam tests both theoretical understanding and practical reasoning through scenario-based multiple-choice questions (MCQs). Successful candidates demonstrate the ability to plan, execute, and report on a structured penetration test within defined scopes and legal frameworks. This certification is mandatory for those seeking higher-level CREST registrations (e.g., CRT, CCT) and serves as a benchmark for employers globally in regulated and commercial environments.
Career ROI | High ROI 8.5 / 10 | - |
Market maturity | Industry Standard 9.0 / 10 | - |
Obsolescence risk | Stable 7.0 / 10 | - |
Role alignment | Perfect Match 9.5 / 10 | - |
Hands-on weight | Practice-Heavy 8.0 / 10 | - |
Error margin | Standard 6.0 / 10 | - |
Experience required | Intermediate 6.5 / 10 | - |
Prep complexity | Very Complex 8.0 / 10 | - |
Time to benefit | Fast Track 8.0 / 10 | - |
Compliance signal | Strong Signal 9.5 / 10 | - |
Mastery levels
Frequently asked questions
Key facts about the Practitioner Security Analyst certification and how to prepare for it.
Compare related certifications
Explore other certifications in the same category and see how they stack up.