beads wrote: » SANS GSEC would be ideal if you or your employer can afford it. The CompTIA Security+ or soon to be released Security Analyst+ would also be appropriate. CISSP should be reserved for long term, practicing security analysts and would be overkill for someone on the network administration side of the house. CASP if you were looking for something a bit more advanced but it really depends on what your duties are today, your division of labor or DoL within your organization and how deep into the practice you wish to explore. - b/eads