pen-test
[Top] [All Lists]

Re: Re: CISSP

To: dfullerton@mantor.org
Subject: Re: Re: CISSP
From: "R. DuFresne" <dufresne@sysinfo.com>
Date: Tue, 19 Dec 2006 02:42:58 +0000 (UTC)
Cc: pen-test@securityfocus.com, pen-test-return-1078483125@securityfocus.com
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
In-reply-to: <20061204191059.23610.qmail@securityfocus.com>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
Organization: sysinfo.com
References: <20061204191059.23610.qmail@securityfocus.com>
Resent-date: Tue, 19 Dec 2006 21:12:28 -0700 (MST)
Resent-from: pen-test-return-1078483273@securityfocus.com
Resent-message-id: <20061220041228.2CA0B2392F1@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Mon, 4 Dec 2006, dfullerton@mantor.org wrote:

Then I wonder if this certification should really have this kind of notoriety. 
Looks like it's not technical and if an 11 years old boy can complete this cert 
...it's not about security management experience either.

Anyone can give me some good reason to acquire CISSP while not being related to 
money and the wannabe marketing-made notoriety?

To get hired. It's a requirement for most companies seeking security folks, some companies will hire you without, if you can show experience in the field, and require you get one shortly after being employed., and for any of the agencies that assist with those seeking employment in the field. If you are seeking experience in the field by hiring thru agencies that will market you for security type work, a CISSP is a most, in most cases upfront to get a foot in the door.



Personally I done GCIH and GHTQ, the latest is harder and really related to 
penetration testing. I would like some GOOD reason for someone in the security 
field for a while and having others, more in deep, technical certification to 
go on with CISSP.


Great certs, in some ways superior to the CISSP, yet, not as well known in the hiring realms. It takes getting an interview with a truly clueful management/front team to get these to come across with the same prestige as the CISSP.


Thanks,

Ron DuFresne


Should we glorify such things? Tell me more about the exam, the topics are 
quite general and may not be totally in line with the exam and the real 
knowledge being certified.

It's too late, what you choose to "glorify" means little the rest of the IT industry has already placed a high degree of import upon the cert.


Thanks,

Ron DuFresne
- -- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        admin & senior security consultant:  sysinfo.com
                        http://sysinfo.com
Key fingerprint = 9401 4B13 B918 164C 647A  E838 B2DF AFCC 94B0 6629

...We waste time looking for the perfect lover
instead of creating the perfect love.

                -Tom Robbins <Still Life With Woodpecker>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)

iD8DBQFFh1G1st+vzJSwZikRAgyGAJ9huIUNnx1Lv+GHEBvWvMMYO0TzeQCdFT0x
OKPzSqjBol47kzuokWpxl1k=
=4kW1
-----END PGP SIGNATURE-----

<Prev in Thread] Current Thread [Next in Thread>