Home > Ask the Security Experts > Questions & Answers > Necessity of becoming a computer engineer to succeed as an infosec professional
Ask The Security Expert: Questions & Answers
EMAIL THIS

Necessity of becoming a computer engineer to succeed as an infosec professional

Ed Tittel EXPERT RESPONSE FROM: Ed Tittel

Pose a Question
Other Security Categories
Meet all Security Experts
Become an Expert for this site


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


>
QUESTION POSED ON: 04 October 2002

I am a CISA, and I believe I can clear CISSP. I have never been a security professional, as I have been a general manager in a small company. However, I have strugled enough with my systems and therefore know about Windows settings and configurations. I have also fixed my own systems after virus infections, using guidance available at symantec.com. I am also a reseller for Web security certificates. I have overview experience of programming and database, having done some strong programming using C under DOS and followed that by learning Java, HTML etc. However, even after all this, somehow I feel all my systems are vulnerable to hacking and I can do very little about it. I think computers have become too complicated to be managed with any degree of guarantee. My question to you is whether it is possible for me to become an infosec professional without first becoming a computer engineer?


>

It is not necessary to become a computer engineer to effectively maintain security in your current circumstances (and indeed, in other circumstances as well). To that end, make use of the various post-installation checklists and lockdown information available on these Microsoft Web pages:
www.microsoft.com/security/
www.microsoft.com/technet/security/

Likewise, I would recommend reading heavily in this area and perhaps pursuing a more operational, hands-on certification like the SANS GIAC program rather than the CISSP if you really want to become a security practitioner. CISSP takes more of a theoretical, architectural and organizational view on security rather than a "to fix problem x, apply solution y" approach. Other certs will provide this latter perspective and are probably therefore more germane to your stated goals and needs.


For more information on this topic, visit these other SearchSecurity.com resources:
Careers and Certification Tip: The vendor-neutral security certification landscape
Ask the Expert: First certification for breaking into security
Ask the Expert: Prerequisite for GIAC certified Windows administrator


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



Search and Browse the Expert Answer Center
Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
Browse our Expert Advice



Find Security Solutions for Your Business
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts