<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:admin="http://webns.net/mvcb/"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#">
	<channel> 

	<title>Comments on: GSEC vs CISSP</title>
	<link>http://ask.metafilter.com/227131/GSEC-vs-CISSP/</link>
	<description>Comments on Ask MetaFilter post GSEC vs CISSP</description>
	<pubDate>Sun, 21 Oct 2012 12:49:40 -0800</pubDate>
	<lastBuildDate>Sun, 21 Oct 2012 13:25:01 -0800</lastBuildDate>
	<language>en-us</language>
	<docs>http://blogs.law.harvard.edu/tech/rss</docs>
	<ttl>60</ttl>

	<item>
		<title>Question: GSEC vs CISSP</title>
		<link>http://ask.metafilter.com/227131/GSEC-vs-CISSP</link>	
		<description>Just finished taking the SANS training course SEC401 in prep for the GSEC exam. Can I take the CISSP using the GSEC training course as prep? &lt;br /&gt;&lt;br /&gt;  I just finished taking the 6 day SANS training bootcamp (SEC401) in prep for the GSEC exam. &lt;br&gt;
I am now considering taking both the GSEC and CISSP now while the information from the training course is fresh in my mind. The goal is to maximize my training dollars and not have to wait until next year for the CISSP and take another bootcamp/spend more time studying.  Are the tests similar enough to get both certs off of one bootcamp or is the CISSP different enough to warrant additional training/studying?</description>
		<guid isPermaLink="false">post:ask.metafilter.com,2012:site.227131</guid>
		<pubDate>Sun, 21 Oct 2012 12:49:40 -0800</pubDate>
		<dc:creator>nineRED</dc:creator>
		
			<category>GSEC</category>
		
			<category>CISSP</category>
		
			<category>SANS</category>
		
			<category>ISC2</category>
		
			<category>GIAC</category>
		
			<category>SEC401</category>
		
	</item>
	<item>
		<title>By: zombieflanders</title>
		<link>http://ask.metafilter.com/227131/GSEC-vs-CISSP#3286802</link>	
		<description>I haven&apos;t done anything with SANS just yet but I do have a CISSP. A quick look tells me GSEC is much more technical than the CISSP, which tends to cover a wider spread of general topics as well as technical and policy topics. You may want to look around for sample CISSP exams (there are quite a few available online) to get an idea of what kind of questions you&apos;ll get. If you do choose to do both, I&apos;d suggest you sit for the GSEC, review any material for the CISSP that isn&apos;t covered by it as soon as possible afterwards, and then take the CISSP.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2012:site.227131-3286802</guid>
		<pubDate>Sun, 21 Oct 2012 13:25:01 -0800</pubDate>
		<dc:creator>zombieflanders</dc:creator>
	</item><item>
		<title>By: carmenghia</title>
		<link>http://ask.metafilter.com/227131/GSEC-vs-CISSP#3286887</link>	
		<description>I agree with zombieflanders - the CISSP is more of a management exam - a lot of ground to cover, but not particularly deep in any one place. Any SANS class you&apos;ll take (with one or two exceptions) will be much more technical and specific than what you&apos;ll study for the CISSP.   I think you&apos;d get a lot of out of going through the SANS class, taking the GSEC and then studying with books/quizzes for the CISSP.&lt;br&gt;
&lt;br&gt;
I will say that a bootcamp class specific to CISSP may give you insight into how to prepare for the test itself - because it&apos;s not a straight technical exam, there is a method and madness to how to get in the right frame of mind for the CISSP exam.   However, if you are fresh off a SANS bootcamp and are able to go straight to a review of the CISSP concepts, it may be the best time for you to take the exam. &lt;br&gt;
&lt;br&gt;
Just as an aside - the CISSP exam does require that you have 5 years of security experience in two of their domains (I believe you can substitute a year of that experience with other certifications/education.)  If you don&apos;t have the 5 years of experience, you can become an Associate of ISC2 until you have the required years of experience. &lt;br&gt;
&lt;br&gt;
Best of luck!</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2012:site.227131-3286887</guid>
		<pubDate>Sun, 21 Oct 2012 14:37:32 -0800</pubDate>
		<dc:creator>carmenghia</dc:creator>
	</item><item>
		<title>By: odinsdream</title>
		<link>http://ask.metafilter.com/227131/GSEC-vs-CISSP#3287126</link>	
		<description>You may want to check out some previous AskMe CISSP study questions.&lt;br&gt;
&lt;br&gt;
The non-technical management aspects are likely to catch you if you don&apos;t pick up some more materials.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2012:site.227131-3287126</guid>
		<pubDate>Sun, 21 Oct 2012 19:17:49 -0800</pubDate>
		<dc:creator>odinsdream</dc:creator>
	</item><item>
		<title>By: anti social order</title>
		<link>http://ask.metafilter.com/227131/GSEC-vs-CISSP#3287528</link>	
		<description>&lt;em&gt;CISSP (is) not a straight technical exam&lt;/em&gt;&lt;br&gt;
 &lt;br&gt;
Not at all. I want to say that I had maybe 30 technical questions with a clear right/wrong answer, and all the rest were debatable policy decisions that need to be made according to how ISC2 thinks things should be. &lt;br&gt;
&lt;br&gt;
Take the practice exams and if you&apos;re clearing 85% then you should be fine. Shon Harris (who wrote the main CISSP book) has another book of just CISSP questions and answers. I found those to be more difficult than those on the actual test.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2012:site.227131-3287528</guid>
		<pubDate>Mon, 22 Oct 2012 07:43:13 -0800</pubDate>
		<dc:creator>anti social order</dc:creator>
	</item><item>
		<title>By: nineRED</title>
		<link>http://ask.metafilter.com/227131/GSEC-vs-CISSP#3290576</link>	
		<description>Thanks, all. I will follow &lt;strong&gt;zombieflanders&apos;&lt;/strong&gt; and &lt;strong&gt;carmenghia&lt;/strong&gt;&apos;s advice and take the GSEC as planned and then focus on filling in the gaps for the CISSP.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2012:site.227131-3290576</guid>
		<pubDate>Wed, 24 Oct 2012 17:26:17 -0800</pubDate>
		<dc:creator>nineRED</dc:creator>
	</item>
	</channel>
</rss>
