CISSP or SSCP first
Hi am changing tack and trying to get some security qualifications to go with my Cloud certs (AWS SA-A and CD-A).
I have completed Cisco Cyber Ops (210-250 & 255) and have some basic security expertise (Compia Security+) and am a MCP and CIPP/E
Should I take SSCP then CISSP? ...or just do CISSP? ..some considerations:
1) is it a big jump to just do CISSP in 3 months
2) would they certify me easily? (I have degree and 20 years IT experience)
3) Would it help me get a job in Info Sec management?
thanks for any replies
I have completed Cisco Cyber Ops (210-250 & 255) and have some basic security expertise (Compia Security+) and am a MCP and CIPP/E
Should I take SSCP then CISSP? ...or just do CISSP? ..some considerations:
1) is it a big jump to just do CISSP in 3 months
2) would they certify me easily? (I have degree and 20 years IT experience)
3) Would it help me get a job in Info Sec management?
thanks for any replies
Have: CISSP, SSCP, CYSA+, CCNA CyberOp, CIPP/E, PRINCE, ITIL v3, MS Azure 900/103/500, AWS SA-A, Splunk Core User , CyberArk Trustee......
2020 Goals: CISM/CISA, AWS CDA-P/SA-P/Security, Splunk Power User
2020 Goals: CISM/CISA, AWS CDA-P/SA-P/Security, Splunk Power User
Tagged:
Comments
Security Engineer/Analyst/Geek, Red & Blue Teams
OSCP, GCFA, GWAPT, CISSP, OSWP, AWS SA-A, AWS Security, Sec+, Linux+, CCNA Cyber Ops, CCSK
2021 goals: maybe AWAE or SLAE, bunch o' courses and red team labs?
2020 Goals: CISM/CISA, AWS CDA-P/SA-P/Security, Splunk Power User
Forum Admin at www.techexams.net
--
LinkedIn: www.linkedin.com/in/jamesdmurray
Twitter: www.twitter.com/jdmurray
if we 'assumed' it took 3 months to do CISSP ......how long would it take (with comparable effort) to do SSCP? - one month?
2020 Goals: CISM/CISA, AWS CDA-P/SA-P/Security, Splunk Power User
I think after you get your CISSP, the SSCP will be a walk in the park.
Achieved (27): Certified Associate in Python Programming, Microsoft Certified: Azure Fundamentals, PenTest+, Project+, CySA+, Flutter Certified Application Developer, OCP Java EE 7 Application Developer, CCSP, OCP Java SE 11 Developer, CISSP, Linux+/LPIC-1, CCSKv4, OCE Java EE 6 JPA Developer, CSSLP, Server+, Cloud+, Arcitura Certified Cloud Professional, CASP+, Mobility+, Storage+, Android Certified Application Developer, OCP Java SE 8 Programmer, Security+, OCM Java SE 6 Developer, B.S. and M.S. in Computer Science
Connect With Me || My Blog Site || Follow Me
2020 Goals: CISM/CISA, AWS CDA-P/SA-P/Security, Splunk Power User
SSCP - hmmmm....not sure it was worth the effort ....increased confidence but was expensive and not sure it helped much with the CISSP ....also only 5,986 people have it (580 in UK) so not a well known cert so questionable how useful in job market it will be - would not recommend exam
CISSP - yes as hard as they say it is ....was sure i was failing on first 100 questions but felt i did really well on last 30 ....a hard exam to prepare for .....and 142k people have it (7.5k in uk) and seems to be the benchmark infosec security qualification - get it done
Next ....CISM and maybe CISA (or just read materials) ....maybe the new Cisco CyberOps Professional in Dec/Jan21 ........am really not sure any more certs are worth it .....my three domains i have drawn out are:
Data Privacy - I think IAPP are king and I have the CIPP/e ....not sure more is required.... Isaca are trying to pick up the tech Privacy ...but i did notice Privacy (and cloud) well represented in CISSP and to a lesser extent CISM so not sure it will get the traction and view it as an add on for Isaca
InfoSec - CISSP then CISM .....after that law of heavily diminishing returns
Cloud - not sure of the point of anything other than AWS and Azure
so my 'cert' pitch to the job market is:
CISSP/CISM ...CIPP/e ...and AWS and Azure security (with the admin certs as well)
any comments/questions/alternative views welcome.....thanks to everyone who offered a view!
2020 Goals: CISM/CISA, AWS CDA-P/SA-P/Security, Splunk Power User
Security Engineer/Analyst/Geek, Red & Blue Teams
OSCP, GCFA, GWAPT, CISSP, OSWP, AWS SA-A, AWS Security, Sec+, Linux+, CCNA Cyber Ops, CCSK
2021 goals: maybe AWAE or SLAE, bunch o' courses and red team labs?
2020 Goals: CISM/CISA, AWS CDA-P/SA-P/Security, Splunk Power User
Hindsight is 20/20 (or at least closer to 20/20), so easy now to say maybe you should have skipped SSCP, but at the time you perceived some value... whether it was practice/prep, confidence building, or even just a fallback in case you failed the CISSP (that you acknowledged was pretty hard). Because you passed the CISSP, you see no (or little value) in having taken the SSCP, but if you would have failed CISSP you may (or may not
My point is really that I'd try not to diminish or second guess those accomplishments! You passed two certification exams, and that's fantastic. Congrats on both passes!
2020 Goals: CISM/CISA, AWS CDA-P/SA-P/Security, Splunk Power User