Awarded for completing External Attack Surface Management and passing its exam, demonstrating the ability to explain EASM's discovery techniques at a conceptual level, recognise the finding categories internal scanning misses, triage and assign ownership to an unrecognised external asset, operate a continuous monitoring cadence, and integrate EASM findings into an existing vulnerability prioritisation and remediation programme.
Certificates are designed to be checked, not just displayed.
The credential is valid for 12 months from issue. Its public page states the expiry date, and renewing means passing the current exam again — so the credential always reflects the current material.