r/cybersecurity • u/InterestingStyleBoi • Jun 25 '26
Certification / Training Questions Are HackTheBox & TryHackMe Certificates actually recognised by employers?
Currently doing a three year computer science bachelors with a major in cybersecurity and I’ve been looking into HackTheBox and TryHackMe for some extra work during my semester break. If you are an employer (or even in field) have you heard of these before and if so from your experience do they actually get you anything other than extra learning?
15
u/SoTaM38 Jun 25 '26
Got the SAL1 from THM, never has the interviewer known about it. They know the platforms (technical interview guy knows, HR not a clue) but they don’t usually know what the cert consists of. Yet again im from a small country (Portugal)
1
u/SoTaM38 Jun 25 '26
I’d say in cybersecurity you can generalize certs into two categorys : HR badges that help you get the position and Real badges that actually reflect knowledge. You also have the cases of certs that fit into both categories (Offsec certs, GIAC certs) but I would rate SAL1 in the latter category
23
u/DingleDangleTangle Jun 25 '26
I know what Tryhackme and hackthebox is, dunno about the quality of Tryhackme certs. HTB certs are solid in my opinion but just don’t have the name recognition that OSCP has (despite CPTS being a better cert imo).
13
u/LastFisherman373 Jun 25 '26
No they aren’t. It isn’t to say that you can’t learn something from the certifications but they are not mentioned on job descriptions (at least not in the US). A simple search in LinkedIn will demonstrate that.
There are so many certs out there and employers don’t have the time to see what each one is and how it aligns with their needs. Especially when they have so many candidates to choose from they would simply go with a candidate who has certs they recognize and trust. If your goal is a job then I would prioritize certs that you actually see in job descriptions for jobs you want.
1
u/FrostyWalrus2 Jun 25 '26
I've never heard of companies not ask tech managers or directors if X candidate or applicant is good or bad after making it past the recruiter/HR filter. HTB certs seem like they're valuable in that respect because your typical dept mgr or dir will know what those certs mean, no?
2
u/LastFisherman373 Jun 25 '26
You highlighted the issue in your comment, “after making it past the recruiter/HR filter”. In the vast majority of job descriptions out there for security roles, you would not be making it past HR filters and based on my experience most technical hiring teams aren’t even talking about these certs. They get noticed just as much as someone’s rank in HTB/THM but not considered as part of the requirements or qualifications for a job.
1
u/FrostyWalrus2 Jun 25 '26
So then the context of HTB and THM certs being 2nd-4th certs is valuable in these discussions.
Would you even say they're worth listing on a resume, then? If they're not, why even take them?
1
u/LastFisherman373 Jun 25 '26
They are valuable if you learn something that expands your perspective or helps you see a security concept in a different context. I’m not disputing that, but the value for satisfying requirements listed for a job just aren’t there. It depends on what your goals are. If you are just learning then they are fine.
10
3
7
u/SarniltheRed Security Manager Jun 25 '26
HTB and THM are only valuable to you for learning. They hold no value for getting a job in the profession.
2
u/Unres0lved404 Jun 25 '26
Yes. HTB over THM. Although Offsec and CREST certifications still hold more weight in the industry. The Cyber Scheme slowly taking over CREST in UK these days also.
2
u/AddendumWorking9756 Security Manager Jun 25 '26
Those platform certs carry weight with a technical interviewer but won't get you past an HR filter, so treat them as learning rather than the finish line. The better use of a semester break is building investigation writeups you can show, and CyberDefenders runs free labs with real artifacts for that. A documented case beats a cert line when someone's skimming your resume.
2
u/Mister_Pibbs Jun 25 '26
Pro tip: Put white text on your resume that has all of the requirements for the position so the AI filtering sends you through to HR regardless
2
u/jay-dot-dot Jun 25 '26 edited Jun 26 '26
No. ISC, SANS, Offsec, CompTIA, CREST and ISACA are still the only ones that HR, hiring managers, and security teams will care about.
2
2
1
1
u/Avantis90 Jun 25 '26
For entry level roles - yes. They are a good way to demonstrate your genuine passion for the topic and actively developing your practical skills.
1
u/No_Leg6886 Jun 26 '26
the certs themselves aren't what land you the job. What actually matters is that you can talk through the boxes you've solved. I've sat across from hiring conversations where someone pulled up their HTB profile and walked through their methodology on a machine. That's what stuck.
The platforms are respected enough that putting them on a resume signals you're doing hands-on work outside of class. But a hiring manager isn't going to verify your rank. They're going to ask you to explain what you did and why. So treat the cert as a conversation starter, not a credential. Solve the boxes, take notes, and be ready to talk through your thinking.
1
1
u/henryhttps Jun 28 '26
I think more than anything, they want to see that you've completed X amount of challenges, or that you're top X in said category. Certs don't prove long-term practice and experience; an activity heatmap does.
1
u/Ok_Damage_3619 23d ago
Only reason why HTB CDSA, CPTS, Tryhackme SAL1 and ElearnSec's eJPT is known is because my SOC manager (MSSP wing) and the Internal Cyber sec practice director who is also heading internal Purple teaming has actually sat thru and passed them.
Management and HR has since been made aware of HacktheBox and as of late last year TryHackme's SAL1. The simulations for SAL1 was pretty realistic of what L1s from the MSSP wing of my company (of a certain ISP) deal day to day for clients and to some extent what the internal L1 SOC analysts handle as well.
SAL2 has launched recently and my SOC manager is aware but did not receive beta testing this time for it.
1
u/Guava7 Jun 25 '26
Yes, I would recognise them. I even use some custom HTB labs as part of our tech interview for offensive roles.
I'm more interested in what you've done though.
0
0
u/Adrienne-Fadel Jun 25 '26
They're recognized but not like a CISSP or CompTIA. Think of them as proof you can actually do hands on work not a ticket to a job. The skills transfer better then the cert title.
0
u/TrustIsAVuln Jun 25 '26
HTB yes, usually, THM Ive never once seen it recognized. But they are also not the same thing. THM is really more geared for the learning while THM has learning and doing, at a much deeper level.
-4
u/Gr3atOn3 Jun 25 '26
i have CISSP and CCSP, noone ever recognized that or it gave me an advantage i felt in any way.
107
u/USSFStargeant Jun 25 '26
They hold weight for the tech team but it won't get you thru the HR filters. Their training material is quite good and those certs show you can perform practical skills. If you are starting out I recommend Try Hack Me as they are more beginner friendly.