RE: [Full-disclosure] CISSP Test

From: adeel hussain (ad33lh_at_gmail.com)
Date: 03/22/05

  • Next message: Forbes, Robert R: "RE: [Full-disclosure] CISSP Test"
    Date: Tue, 22 Mar 2005 11:37:45 -0500
    To: full-disclosure@lists.grok.org.uk
    
    

    Hello Vladamir,

    To answer your question, yes the CISSP is worth it. However it is
    only worth it due to the publics misconception of what is is.

    The CISSP certification basically shows that you have a base
    understanding of the primary concepts across what are widely regarded
    as all the major areas if IT security knowledge (known as the Common
    Body of Knowledge or CBK). This is a good thing if you are, or aspire
    to be, in a management position.

    Unfortunately the common perception of the CISSP by most non-IT
    security people (which includes HR staff) is that someone who is a
    CISSP is capable and competent in all areas of IT security. Add to
    that the belief it is the best (or only) security certification they
    are aware of and it becomes "the" security certification in thier
    eyes.

    I have seen many job descriptions in my time and in the last few years
    it is rare to find one that does not either require or desire the
    CISSP.

    As for other certifications, the SANS certs are quite good although, I
    believe, they are about to get devalued by the removal of the
    practical requirement. I would recommend getting the CISSP, maybe the
    GSEC (SANS security essentials cert) and then focusing on certs for
    products/systems within the area you will be working in. But
    remember, the cert is just the starting point and the resume's foot in
    the door. You need to study and get as much hands on as you can to
    actually learn your chosen trade.

    Good Luck,

    Adeel
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/


  • Next message: Forbes, Robert R: "RE: [Full-disclosure] CISSP Test"

    Relevant Pages

    • RE: [ok] [Full-Disclosure] Certifications
      ... I totally agree with you that the GIAC's certs are definitively very ... Comparing the CISSP to the GIAC Exams is like comparing fire and water. ... general overview of the concepts of security; ...
      (Full-Disclosure)
    • Re: Security Certs
      ... interested in network security mostly. ... Subject: Security Certs ... The SANS GSEC Certification like most of the ... I've heard a CISSP say that the CISSP concepts are at a ...
      (Security-Basics)
    • RE: Security Certs
      ... I have obtained CISSP, CISA, ... Security+ and I must say the benefit have been more in the knowledge gained ... experience to qualify and obtain than the other certs. ...
      (Security-Basics)
    • Re: Getting worried about the CISSP
      ... >> that's about the way it's been with all certs for years. ... security sector for a while now. ... i would not spend money out of my own pocket on the CISSP. ...
      (alt.computer.security)
    • Re: CISSP Question
      ... Have a minimum of four years of direct full-time security professional ... You don't have to be affiliated with an organization to take the CISSP ... ISACA does have a standard that is used in many places. ...
      (Security-Basics)