zxbane wrote: » Jedi, I am pursuing the CISM myself at the moment because I work as a Info Assurance Manager for the DoD. I don't know if I agree that the CISA is redundant if you hold the CISSP since from my understanding the CISA delves much deeper into the realm of auditing, as expected.. I plan to test in June for the CISM and from studying so far I must say it gives me a much better overall view of organizations and how security is incorporated into organizational activities, as well as risk management, compliance etc. I definitely would recommend it if you have the required experience to go along with it.
zxbane wrote: » As you mentioned I haven't actually taken the CISM yet but in my opinion so far the CISM isn't as stressful as the CISSP was. The reason I say that is that the scope isn't as broad as the CISSP was, the CISM focuses on 4 domains where CISSP had 10 and covered many more topics. The CISM allows you to focus on a concentrated 4 domains. It is also more logic based, a lot of the review practice questions can be answered by following a logical thought process, compared to the CISSP where you honestly had to remember technical details about encryption, networking etc.
zxbane wrote: » I personally self studied for the CISSP for roughly 2.5-3 months and I am self studying for the CISM until June as well. I guess that is a question that really depends on the individual and their ability to self study and dedication to it.