More good news on the security front. Although I'm a strong believer that certifications aren't everything (they're really only a small part of information security career success), there's good news as well. More than half of the IT-centric certifications that have grown in value (i.e. jump in salary) over the past three months are security certifications. Love the statement by David Foote "[Companies are] starting to look at security as ...
Continue Reading...I've got some new information security content you may be interested in.First off, here's an article I wrote for SearchWinIT.com:Will a degree or certification help enhance your IT career?...and one I wrote for SearchEnterpriseDesktop.com:Why should Windows shops use Microsoft Baseline Security Analyzer?...and finally a webcast I just recorded for SearchSoftwareQuality.com:Essential Elements of Web Application Penetration TestingAs always, check out www.principlelogic.com/resources.html for all of my information security articles, podcasts, webcasts, screencasts ...
Continue Reading...If you're looking to take a CISSP prep course, check DSTI's 4-day CISSP bootcamp in Kennesaw, GA December 10-13. You can get more information at digitalsecuritytraining.com. Apparently they're offering a 5% discount is offered for ISSA members. Even though their Web site leaves a little to be desired, I know the guys that run this company and they're top notch.If you're wondering if certification is the best route to take ...
Continue Reading...Here's a good read on certifications and whether or not they enhance or hinder your earning ability - especially if you focus on vendor-specific certifications such as what Microsoft offers.Mr. Mikols article led me to think about this are more in-depth and I came to this conclusion: I do believe that you can spend too much time focusing on getting certified. In fact, I've seen it personally. The mindset I've ...
Continue Reading...Here's an article I wrote for SearchEnterpriseDesktop.com:How to exploit two common Windows vulnerabilitiesHere's an article I wrote for SearchSoftwareQuality.com:Does certification really matter?Be sure to check out www.principlelogic.com/resources.html for all of my information security articles, podcast interviews, webcasts, screencasts and more....
Continue Reading...Well, ISC2 is at it again with yet another security certification - this time focused on application security. The CSSLP (Certified Secure Software Lifecycle Professional) focuses on security where it's often the weakest...at the source code level.Not a bad idea in general. I just don't foresee someone getting such a certification and then suddenly being a development expert much less someone being able to lock down the software lifecycle. These ...
Continue Reading...Here are two articles I wrote for Security Technology & Design magazine (a really good trade rag covering both IT and physical security) as well as another piece for Redmond Developer News I was interviewed for. Enjoy!Get Certified? The real deal with information security training and certifications10 Ways to Protect Your Web ServersDespite Help From Microsoft, SQL Injections Remain A Threat As always, be sure to check out www.principlelogic.com/resources.html for ...
Continue Reading...Here's another security career question from someone who is about to graduate with an IT bachelor's degree and is planning to work in the information security field:"...What is the best certificates you can recommend on information security to go through these days? How about going through Cisco Networking certificates such as CCIE. Is it better than CISSP? Actually I'm confused about either Cisco or CISSP. Should I be employed first ...
Continue Reading...I wanted to let you know that my new Security On Wheels mini audio program is now produced and ready to go. It's called Certifications, Degrees, or Experience - What's Best for Your Security Career? This audio program (which comes packaged in a 24 minute MP3 file) addresses what you need to focus on in order to properly educate yourself and stay sharp so you can work more effectively, earn ...
Continue Reading...