CyberSecurityTips #22: What is the difference between attestation and certification?

The difference is quite simple, certification means that there is a body that has been delegated by a certain body to make sure that your organization upholds certain standards, and there is usually a limited number of such organisations that can certify you.
Attestation means that a company that is trusted by others to say that you uphold what others have noted you do checked and made sure in some way or form that the results of the check are correct with the information they have.

Attestation does not always mean you are compliant to a specific standard, just that all the documentation you supplied is in accordance to a certain standard - usually there is no checks of implementation or the actual procedures. Certification on the other hand checks that you actually practice what the standard or framework dicate.