Sunday, March 7, 2010

What is the best IT Security Certification?

I think it depends on what you are after to. If you are looking for IT Security Auditing field there is CISA or CIA . But if you are looking for overall IT security field I suggest CISSP as this is a defacto gold standard in IT Security not to mention that it covers a lot of accreditation with revise US DOD 8570 for any personnel involve with or conducting Information Assurance as of this year (2010). CISM is also one of the popular certification focusing on the IT security management level. CEH is also the new addition in DOD 8570 this certification covers ethical hacking such as penetration testing, vulnerability testing and etc. C|EH is more technical in nature because you need to think as a non ethical hacker or cracker in securing your target systems almost same with some of GIAC IT security certification.

Certification chart from Us DOD 8570
(chart is a partial list of certification accredited by US DoD)

Regardless on what certification you are trying to pursue you have to check the Job Market trend on what security certification is the most popular or employer wants to employ. I have searched numerous  IT Security Job related the most common  are CISSP, CISM or CISA. Maybe the reasons behind is that this certification requires at least 5 years of verified experience thus ensuring or the employer is assured that the certified individual had a working knowledge on the IT Security field.