And when it comes to the CISSP code of ethics, Timmay takes no prisoners, showcasing a litany of transgressions and transgressors that spans many slides.
Where does that leave infosec certification? While CISSP is considered by many to be the premiere certification in the field, it's by no means the only one, and there's no rule that says you can hold only one. Here are a few alternatives:
- CEH (Certified Ethical Hacker): Widely viewed as being easier to earn than a CISSP, but with a different slant. The CEH takes a more hands-on and less theoretical approach, with a broad exposure to infosec tools.
- CISA (Certified Information Systems Auditor): Takes an auditing approach to the infosec industry. You need to have five years of experience in info systems audit, control, or in infosec.
- OSCP (Offensive Security Certified Professional): Emphasizes hands-on penetration testing. No multiple choice; you're put in a lab and get points for hacking the boxes.