Note: I am not actively looking for a job now. Also sorry in advance for this long cuss post.
Ok folks, I have a question for you all. I am trying to decided between a few things specifically things that I want to do to boast my resume and help round me out as an infosec guy. I am trying to decided between MCTS/MCITP:EA, GWAPT/GPEN/GCIA/GSEC and C|EH and WCNA. Here is my logic:
MCTS/MCITP:EA:
Why?:
Most people have some MS in their shop. My current place has some 2k, 2k3 and 2k8 servers and I am going to try to get us all to 2k3 and 2k8 boxes soon. I am not a big MS fan but I have been tasked with rolling out a secure image of 2k8 for our web servers, redoing gpos and upgrading us to windows 7 so I would get to use much of the material covered under the MCITP:EA. I could also pick an individual MCTS to sort of fill the gap in my MS knowledge. I have seen several interesting security jobs that want folks with PKI, GPO, AD and DNS knowledge for them.
Why not?:
I don't want to be an MS admin. I feel like the time I spend learning what it takes to be a great MS admin could be better spent learning linux and web security. Also if I choose to do the MCITP:EA path, that would knock out all of the other things I would want to do for 2011 since I would have to balance school (16 credits plus) and a full time job. I also feel like I could study the material and learn most of what I feel l need to know while doing the GSEC.
GWAPT/GPEN/GCIA/GSEC
Why?:
Sans certs are very respected by the infosec community and the government (which is where I want to go, either as a contractor or an employee). While GPEN and GWAPT are sort of specialist certs both of them match up with my job is starting to turn into (especially GWAPT). They are very expensive, and most likely I would only get to do two of them between now and the end of year 2011. GSEC to me represents a baseline of security knowledge every infosec person should have and as I have looked at the objectives, there are some things I do not know. As I stated before I feel like I could learn the parts of windows that interest me by doing GSEC. I am just not sure if GSEC has as much weight in general as the MCITP.
C|EH:
Why?
Purely because it matches up with a few DOD 8570 CND jobs and such. The why not is because I don't think it is as popular in general as some of the other certs.
WCNA
This one would be purely for the knowledge and because it is more oriented with the types of jobs I want to do. It isn't very popular but it could take off. $300 is a bit steep for a cert that no one knows about yet

So many people go from Entry level (vendor neutral) like comptia to vendor like cisco and ms then finally back to vendor neutral for "specialty exams" like SANS and ISC2. I am just wondering at what point do you decided that you want to go from vendor to vendor neutral. Basically I am looking for the most bang for my buck. I will have a limited amount of time in 2011 to do certs and I want to get the ones with the most career impact as I will probably start looking again sometime in 2010 (which is why I moved SSCP up instead of LPIC-1). What do you guys think?
I've been thinking of a path like (after SSCP) LPIC-1 (required for school) WCNA, C|EH, GSEC Another SANS cert.