Choosing the Right Security Certifications for You

Date: Feb 16, 2011

Return to the article

The IT certification arena falls into two primary categories: vendor-neutral and vendor-specific. The question most people ask is how to choose the right certifications, or combination of certs, that work best for their careers. This article compares some of the most popular security certifications available, and recommends those that are best for different candidates.

The IT certification arena consists mainly of vendor-neutral and vendor-specific certifications. If your employer or primary customers use a certain vendor’s products, your choice is fairly easy: earn certifications that apply to that technology. For example, if your company supports Red Hat installations, pursue Red Hat Certified credentials. If you’re part of a predominantly IBM shop, go for the IBM certs. Deciding what to pursue on the vendor-neutral side is a bit more complicated, as is which combination of vendor-specific and vendor-neutral certs to obtain. To solve this dilemma, you need to understand where individual certs and cert programs fit in the overall scheme of coverage, and compare similar programs to decide which ones to pursue.

The Programs

Let’s start by looking at several vendor-specific and vendor-neutral certification programs, and then put them into perspective by job roles.

Some of the most popular vendor-specific security certs and programs include:

Other companies that maintain vendor-specific certification programs with a security angle include Guidance Software (EnCase forensics), Fortinet, IBM, Oracle, RSA, SAINT, Sourcefire (Snort), Symantec, and Websense. Brainbench offers a wide variety of both vendor-specific and vendor-neutral certifications.

On the vendor-specific side of security, some of the best-known and most widely followed IT security certification programs include:

Other certification organizations that offer vendor-neutral certs of note include Brainbench, CWNP (wireless networking credentials), CyberSecurity Institute, IACIS, Iowa-based training company mile2, and Security University (SU). ASIS International offers a small but esteemed program, which includes the most senior and prestigious IT security professional certification mentioned in this article, the Certified Protection Professional (CPP). You can also earn the Professional Certified Investigator (PCI) and Physical Security Professional (PSP) through ASIS, if you’ve got at least five years’ experience and meet other rigorous requirements.

(c)Matching Certifications to Job Roles

Matching Certifications to Job Roles

This part of the article recommends security certification paths, or “ladders,” for job roles like general security, networking, forensics, and so on. Remember, these are just recommendations—guidelines to help you see logical progressions from entry-level to advanced certs.

For any job role, you can start with the Security+, SSCP, or GSEC as the foundational certification. All three certs are widely known and respected, although the Security+ may edge out the others as far as instant recognition by employers and certification seekers alike.

If you plan to stick with general security, focus on the CISSP or any of the intermediate-level GIAC certifications. Eventually round out your portfolio with one or more advanced-level certs, such as a CISSP concentration (Architecture, Engineering, or Management), the CISM, the CPP, or the GIAC Security Expert (GSE).

For networking security, start with the Security+, SSCP, GSEC, or the Brainbench Network Security (BNS). From there, specialize in a vendor-specific technology, such as the Cisco CCNP Security and eventually the CCIE, or the Check Point certs (Certified Security Administrator, Certified Security Expert, Certified Managed Security Expert). To maintain a more general networking portfolio, obtain the Brainbench Information Security Administrator (BISA), the CWNP’s Certified Wireless Security Professional (CWSP), or any of the intermediate-level GIAC certifications:

If you plan to go into security auditing and compliance, (ISC)2 offers the Certified Authorization Professional (CAP), which works well as an intermediate-level cert. Consider the CISA or CISM (from ISACA), or the GIAC Systems and Network Auditor (GSNA) from SANS as your senior-level goals.

For those of you more interested in counter-hacking and penetration testing, focus on EC-Council and/or SANS certs. EC-Council offers the Certified Ethical Hacker, or CEH, along with a Certified Pen Testing Consultant credential. On the SANS side, pick from the GIAC Certified Penetration Tester (GPEN) or the GIAC Web Application Penetration Tester (GWAPT). All of these are terrific intermediate-level certs. Move up to the EC-Council Licensed Penetration Tester or Certified Pen Testing Engineer by mile2.

Finally, individuals seeking computer and network forensics certification may focus on one or more of these intermediate-level certs:

The High Tech Crime Network offers advanced Certified Computer Crime Investigator (CCCI) and Certified Computer Forensic Technician (CCFT) certifications, as does ASIS with its Professional Certified Investigator credential.

800 East 96th Street, Indianapolis, Indiana 46240

sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |