What are the best courses and certifications to move into a career in info-sec or cyber-security?

Developing new skills to add to existing ones in the field of cyber-security is on the one hand really straightforward however, there are many paths to choose, each with dozens of courses and certifications.

Information security is a multifaceted, multidisciplinary field. Choosing a path that will deliver knowledge to support your career can be intimidating. In an rapidly changing technical environment, very few are able to predict their career much beyond five years.

Do you need the technical stuff?

HR and Training managers often ask the question, "Do you want to be a techie or a manager?" Potential cyber-security professional will likely want both, even if not simultaneously.

Careers in information security require a knowledge of IT systems (networks, software and sometimes hardware) as well as vendor applications.

Often overlooked and one of the biggest risks are the people who use these systems.

Being an expert in this field requires an understanding of the threats and vulnerabilities that typify the modern-day cyber attack as well as an awareness of the security commercial products can provide.

Early in a career

In the first years of your career, you'll need to get as much hands-on experience as possible, achieving industry-standard qualifications from companies like Microsoft and CISCO. Vendor-neutral courses provided by CompTIA with their A+, Network+ and Security+ qualifications are also highly valued worldwide.

Specialist knowledge

As experience develops, individuals tend to decide to focus on non-vendor roles, including security architecture, penetration testing, digital forensics, incident management and security/compliance auditing.

Specific training and certifications will be required for these careers. Individuals tend to choose globally recognised qualifications awarded by independent organisations and assessed via certification, for instance, EC-Council's Certified Ethical Hacker (CEH).

Management qualifications tend to come later

Senior careers, with higher salaries, will probably mean becoming a manager or consulting with management. The role may mean managing a team of specialists or all of the people, processes and technology associated with effective information security.

It's likely a thorough knowledge of asset and risk management and the controls required to mitigate the risks to an organisation will be part of the role. The skills and knowledge associated with ISO 27001 qualifications, ISO27001 Foundation and ISO27001 Lead Implementer will cover this area comprehensively.

An Info-security management qualifications people also consider obtaining is the Certificate in Information Security Management Principles (CISMP). This BCS certificate is widely recognised by companies and is endorsed by the UK Government in the CESG Certified Professional training scheme.

With more than five years' experience, it's likely you'll be ready for and benefit from (ISC)2 CISSP, ISACA CISA or CISM examinations. These are the gold standards of cyber security qualifications and are usually a mandatory requirement for securing a senior management position.

DISCLAIMER

Firebrand Training grants you a personal, non-exclusive, non-transferable license to access and use the site. You may download or print material from the site only for your own personal, non-commercial use. Read our full terms and conditions on https://firebrand.training/uk/learn/terms-and-conditions.