Are you CISSP Certified? Which is the best security certification?

Dani AI

Generated

As noticed on job boards and as and began to point out, CISSP still shows up a lot for senior/security-lead roles — but the cert and the market have changed since 2008. Below is an up-to-date, practical summary that fills gaps from the earlier replies and helps decide whether CISSP is the right investment.

CISSP is most valuable when the target role emphasizes security leadership, governance, architecture, risk or broad program ownership. It is less useful as a proof of hands-on offensive or specialist technical skill; for those careers consider technical certs (for example Offensive Security offerings) or vendor-specific paths instead. If local listings repeatedly ask for CISSP, read the posting closely to see whether it is required or simply preferred.

Important changes and maintenance to know about (post-2008): the Common Body of Knowledge has been consolidated and the exam format has changed; the certification also requires ongoing professional development and annual maintenance to remain active. For authoritative, current details consult the official CISSP pages at (ISC)²: (ISC)² CISSP certification information.

Practical path and preparation tips: map your work experience to the current CBK domains, build a 3–6 month study plan if you already work in security (longer if you are new), use the official study guide plus lots of practice questions, and add hands-on labs or simulations for weak areas. If you don’t yet meet the experience expectations, the Associate of (ISC)² route and other entry-level certs let you demonstrate knowledge now and convert to full CISSP after gaining experience.

As provided background and reminded everyone there are many certs, weigh CISSP against your career goals rather than its market popularity alone. Check the official (ISC)² resources for the latest exam, endorsement and maintenance rules before you commit.

Recommended Answers

All 3 Replies

I think a chief security officer may have both a CPP and CISSP. There are approximately 55 different vendors offering security certifications. Many new certifications are coming out and outlining a few would be helpful CISSP, CISA, CISM, CFE, GIAC, ITIL, BS7799, ISO27000, certifications from OISSG, ISSA and so on and so forth.

In Jobserve.com they are looking mostly for CISSPs. What happens in your area?

The CISSP certification program is governed by the International Information Systems Security Certification Consortium, or (ISC)². The (ISC)² is a non-profit organization that is based in Palm Harbor, Florida. According to the (ISC)² Web site, the CISSP certification is aimed at "mid- and senior-level managers who are working toward or have already attained positions as CISOs, CSOs or senior security engineers". There are a couple elements of the CISSP credential that set it apart from most other vendor-neutral (or vendor-specific, for that matter) programs. For instance, to earn your CISSP you must. Subscribe to the (ISC)² Code of Ethics. Have a minimum five years of direct full-time security professional work experience in two or more of the ten domains of the information systems.

---------------------------------------------
Bobwilliams

Be a part of the DaniWeb community

We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.