Thursday, March 18, 2010

Bookmark and Share

Archive for the ‘Certifications’ Category

CI$$P

I came across this article stating that CISSP certification correlates directly to higher salaries in information security.

This upsets me. Not because I have a grudge against the process, per se; if someone wants to get a CISSP, that’s fine by me – for my dollar, I’ve always thought it was a bit too expensive but who am I to judge how people spend their hard-earned money. Rather, what disturbs me is the fact that organizations appear to be using the CISSP as a recruitment aid.

Why are we paying a for-profit company an “entrance tariff” in order to practice information security; what do we as a society or we as information security workers getting back from the certification process? Unions (organized by workers for workers) offer some degree of protection for the individual; professional credentials (CPA’s, engineers, doctors, etc.) supply some type of protection to society at large. CISSP does neither – until this credential is a) administered by a non-profit professional entity and b) undergoes independent review to establish the degree to which it protects society, I think we are mistaken to make it a “must-have” in the hiring process.

Of course, there’s the other matter of CISSP’s favoring other CISSP’s in the hiring process, which I won’t go into here; suffice it to say that I think we have enough “old boy” networks already…

Bookmark and Share
“So many technologies- but which ones (if any) do you really need?”
Blog Cloud

The Law: Fear It Administrative Cruft (16)
Analysts (31)
Apple (25)
AppSec (12)
Assessments (2)
Auditors (2)
Biometrics (4)
Blogs (13)
Breaches (21)
Buzzwords (2)
By Grabthar's Hammer!! (1)
Certifications (1)
Change Management (1)
Cheezburger Network (1)
Chupacabra (1)
Cloud Computing Security (4)
Collaborative Strategy Guild (2)
Compliance (4)
Copyright (9)
Credit Cards (3)
Crypto (11)
CXO Summit 2010 (1)
Cyberterrorism (2)
Data Protection (2)
DHS (25)
eBay (1)
Emergence (1)
End-to-End Encryption (2)
England (1)
Financial Fraud (1)
FISAP (1)
Forensics (5)
FTC Red Flad Rules (1)
FUD (12)
gnisreveR (2)
Google (2)
Holidays! (3)
Humor (16)
Identity Theft (4)
James Bond Shiz (1)
Legal Shiz (13)
Linux (3)
Malware (35)
Marketing and PR (9)
Messaging Security (1)
Microsoft (26)
Monoculture (3)
Mouth-Frothing (2)
Musings (17)
Open Source (3)
Oracle (21)
Outsourcing (4)
Paris Hilton (1)
Passwords (1)
PCI (4)
Phish-Eye (8)
Phones (5)
Planes (1)
Privacy (1)
Programming (1)
QDSP Blues (15)
Research (30)
Resources (6)
Rhesus Monkeys (2)
Risk Management (18)
RSA 2009 (1)
RSA 2010 (1)
SAML (1)
SAN (1)
SC Mag Blues (1)
SCADA (1)
Security Curve (8)
SecurityCurve Speaking (2)
SIEM and Log Management (5)
Social Networking (1)
SOX (1)
Speaking (2)
Spinach (1)
Spy Stuff (1)
Stealing Stuff (8)
Storage (1)
Symantec (7)
Tarot (1)
Teleological suspension of the ethical (3)
The Great Borack (1)
The Law: Fear It (10)
The Old Man of the Mountain (1)
The Regs (5)
Tokenization (1)
Useless Shizz (13)
Vendors (37)
Virtual Worlds (2)
Voting (2)
Vulnerabilities (40)
Walt Disney (2)
Wi-Fi (16)

WP Cumulus Flash tag cloud by Roy Tanck and Luke Morton requires Flash Player 9 or better.

Archives