Home > Ask the Security Experts > Expert Archive: Security Management Questions & Answers > What's the difference between CompTIA and CISSP certifications?
Ask The Security Expert: Questions & Answers
EMAIL THIS

What's the difference between CompTIA and CISSP certifications?

Mike Rothman, past SearchSecurity.com expert EXPERT RESPONSE FROM: Mike Rothman, past SearchSecurity.com expert

Pose a Question
Other Security Categories
Meet all Security Experts
Become an Expert for this site


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


>
QUESTION POSED ON: 23 February 2007
I heard recently that there are now more than 30,000 IT pros with CompTIA's Security+ certification. How does the Security+ certification compare with (ISC)2's CISSP certification, and how much influence does it have in the security community?


BROWSE BY TAG
Expert Archive: Security Management,   CISSP Certification,   Information Security Careers, Training and Certifications,   Security Industry Certifications,   VIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED CONTENT
Expert Archive: Security Management
What is the GISP certification and how does it compare to the CISSP certification?
Using a QSA to write up a PCI DSS report on compliance (ROC)
How can gap analysis be applied to the security SDLC?
Comparing cheap security products and appliances to costly appliances
What are some tips on protecting my security budget in a poor economy?
What value do research firms provide to their subscribing enterprises?
What certificate offers the best ROI for an IT project manager?
Is insider activity or outsider activity a bigger enterprise threat?
How does information security prevent fraud in the enterprise?
Differences between an SAS 70 data center and a Tier III data center

CISSP Certification
Some IT security certifications are overvalued, analyst says
Q2 2009 data shows IT security certification pay still climbing
Why doesn't the CISSP cover information assurance and DIACAP?
IT security skills and certification pay
Despite recession, pay climbs for top IT security certifications
Information security book excerpts and reviews
Security skills pay increases despite economic downturn
How do I get CPE credits?
Finding a security management job after an economic downturn
What is the GISP certification and how does it compare to the CISSP certification?
CISSP Certification Research

Security Industry Certifications
Despite recession, information security certification pay continues to climb
Creating a personal brand in information security
Some IT security certifications are overvalued, analyst says
Q2 2009 data shows IT security certification pay still climbing
An introduction to Information Security Career Advisor
Security jobs survey finds fewer budget cuts, lower security salaries
IT security skills and certification pay
Despite recession, pay climbs for top IT security certifications
How do I transition to a career in IT security?
Security skills pay increases despite economic downturn

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
Certified Information Systems Security Professional  (SearchSecurity.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary


I'm a pretty "pragmatic" guy, so I'm not a huge fan of certifications. Put it this way, I think there are a lot of folks that can pass a test, but don't have the experience to effectively do their job. A certification proves that someone has passed a knowledge standard, not much more than that. I don't really think that these specific certifications hold much influence. Some of the smartest security research folks I know are not CISSPs, yet they can break into your network in about 10 minutes.

But if you have your heart set on having some random letters behind your name on a business card, the differences between the certifications are rather minimal. You can compare the certifications across a number of characteristics, like how respected the certification is and whether the certification has a well-known brand. Security+ is often considered a beginner's certification, though it is pretty well-known. The test is fair, though not overly difficult, and it doesn't really require any prior experience in the field – which makes it appropriate for folks just entering it. At $225, it's reasonably priced as far as certifications go.

The CISSP is the granddaddy of security certifications, but as the number of certified practitioners has grown, the value of the CISSP has been watered down a bit.

The test is as much about stamina as anything else. It's not overly technical, but it is extensive. To prepare for the test, many folks take a week-long boot camp, and many pass. Yet in order to get your CISSP, you need to have 4 years of verifiable experience in the space. At $500 (plus an annual renewal), it ain't cheap – but if you've been doing security for a while and you want to get some letters, the CISSP is probably the best known.

More information:

  • Visit our CISSP Certification Training School.
  • Did CISSP lose its luster? In a 2006 interview, Senior News Writer Bill Brenner asked (ISC)2 board member Howard Schmidt how the requirements had changed.




  • Search and Browse the Expert Answer Center
    Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
    Browse our Expert Advice



    Find Security Solutions for Your Business
    TechTarget Security Media
    Information Security View this month\\'s issue and subscribe today.
    Information Security Decisions Apply online for free conference admission.
    SearchSecurity.com
    HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

    About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
    TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

    TechTarget Corporate Web Site  |  Media Kits  |  Site Map




    All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
      TechTarget - The IT Media ROI Experts