<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: What next after CISSP? in Exams</title>
    <link>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22078#M888</link>
    <description>&lt;P&gt;It all depends on where you'd like to go with your career, but having the paper qualification is only part of the picture.&amp;nbsp; It would probably make sense to group them by job family and then decide what sort of career path your hoping to follow:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Pen Testing&lt;/STRONG&gt;&lt;BR /&gt;CREST Practitioner Security Analyst (CPSA)&lt;BR /&gt;CREST Registered Penetration Tester (CRT)&lt;BR /&gt;Certified Ethical Hacker (CEH)&lt;BR /&gt;Licensed Penetration Tester (LPT) Master&lt;BR /&gt;Offensive Security Certified Professional (OSCP)&lt;BR /&gt;GIAC Penetration Tester (GPEN)&lt;BR /&gt;GIAC Exploit Researcher &amp;amp; Advanced Penetration Tester (GXPN)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;PCI&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Internal Security Assessor (IS)&lt;BR /&gt;Payment Card Industry Professional (PCIP)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Incident Response&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;GIAC Certified Incident Handler (GCIH)&lt;BR /&gt;CyberSec First Responder (CFR)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Engineering&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;System Security Certified Practitioner (SSCP)&lt;BR /&gt;Information Systems Security Engineering Professional (ISSEP)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Auditing&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;GIAC Systems and Network Auditor (GSNA)&lt;BR /&gt;ISACA Certified Information Systems Auditor (CISA)&lt;BR /&gt;ISO27001 Internal Auditor&lt;BR /&gt;ISO27001 Lead Auditor&lt;/P&gt;</description>
    <pubDate>Wed, 08 May 2019 09:25:53 GMT</pubDate>
    <dc:creator>Steve-Wilme</dc:creator>
    <dc:date>2019-05-08T09:25:53Z</dc:date>
    <item>
      <title>What next after CISSP?</title>
      <link>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22022#M883</link>
      <description />
      <pubDate>Tue, 07 May 2019 01:15:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22022#M883</guid>
      <dc:creator>oradba888</dc:creator>
      <dc:date>2019-05-07T01:15:25Z</dc:date>
    </item>
    <item>
      <title>Re: What next after CISSP?</title>
      <link>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22023#M884</link>
      <description>&lt;P&gt;sorry, entered too soon,.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Based on my interests/skillsets, I am leaning towards:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;CIPP ( Information Privacy)&lt;/LI&gt;&lt;LI&gt;Forensics?&lt;/LI&gt;&lt;LI&gt;Auditing (CISA)&lt;/LI&gt;&lt;LI&gt;CCSP&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As an Oracle Data Professional, and AWS tech, I have had the opportunity to work on cloud and been involved in SOC2 audits..:)&lt;/P&gt;&lt;P&gt;so I guess, question is: whats best to augment if you would want to enhance/build your contracting/consulting business?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I read about PCI QSA which is awesome, but I would have to be employed by a QSA approved firm&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2019 01:18:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22023#M884</guid>
      <dc:creator>oradba888</dc:creator>
      <dc:date>2019-05-07T01:18:25Z</dc:date>
    </item>
    <item>
      <title>Re: What next after CISSP?</title>
      <link>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22033#M885</link>
      <description>&lt;P&gt;Hi, based on your profile, I would have thought CISA by ISACA as the natural next step among the ones in your list. I'm quite keen to hear the community view.&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2019 08:54:11 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22033#M885</guid>
      <dc:creator>Fabio7</dc:creator>
      <dc:date>2019-05-07T08:54:11Z</dc:date>
    </item>
    <item>
      <title>Re: What next after CISSP?</title>
      <link>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22051#M886</link>
      <description>&lt;P&gt;CISA might be good for you.&amp;nbsp; I recommend getting involved with your local ISACA chapter, as many offer prep courses for it (mine does).&amp;nbsp; I always recommend people take a look at the application for it to be sure you are doing the work that meets the domains.&amp;nbsp; With the ISACA certs you have 5 years after passing the test to get the experience and submit the paperwork.&amp;nbsp; If you have a degree or certain certs, you can knock off a year or two of that.&amp;nbsp; Also, much of the CPE work you do for CISSP will probably count for the CISA (does for me).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As you're doing cloud work, CCSP might be good, but may be too general.&amp;nbsp; Also look at the AWS certs themselves.&amp;nbsp; Am looking at both myself.&lt;BR /&gt;&lt;BR /&gt;Not aware of any forensic certs right now, unless you look at the SANS/GIAC certs.&amp;nbsp; These can be pricy, sadly.&lt;BR /&gt;&lt;BR /&gt;IF you're doing privacy, take a look at the CIPP.&amp;nbsp; There are actually several of them.&amp;nbsp; One is aimed at IT people, another the privacy people, and they have ones aimed at folks in Europe, US, etc.&amp;nbsp; Some of what I do overlaps, but have only taken a cursory look at it.&amp;nbsp; See if there is a local CIPP chapter that you can drop by and chat with folks.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2019 15:26:46 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22051#M886</guid>
      <dc:creator>emb021</dc:creator>
      <dc:date>2019-05-07T15:26:46Z</dc:date>
    </item>
    <item>
      <title>Re: What next after CISSP?</title>
      <link>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22056#M887</link>
      <description>&lt;P&gt;&amp;gt; oradba888 (Newcomer II) posted a new topic in Certifications on 05-06-2019 09:15&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;gt; Subject: What next after CISSP?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Well, as we've pointed out elsewhere, have a look at&lt;BR /&gt;&lt;A href="https://nvlpubs.nist.gov/nistpubs/specialpublications/nist.sp.800-181.pdf" target="_blank" rel="noopener"&gt;https://nvlpubs.nist.gov/nistpubs/specialpublications/nist.sp.800-181.pdf&lt;/A&gt;&lt;BR /&gt;and you should get lots of good ideas ...&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2019 16:18:03 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22056#M887</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2019-05-07T16:18:03Z</dc:date>
    </item>
    <item>
      <title>Re: What next after CISSP?</title>
      <link>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22078#M888</link>
      <description>&lt;P&gt;It all depends on where you'd like to go with your career, but having the paper qualification is only part of the picture.&amp;nbsp; It would probably make sense to group them by job family and then decide what sort of career path your hoping to follow:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Pen Testing&lt;/STRONG&gt;&lt;BR /&gt;CREST Practitioner Security Analyst (CPSA)&lt;BR /&gt;CREST Registered Penetration Tester (CRT)&lt;BR /&gt;Certified Ethical Hacker (CEH)&lt;BR /&gt;Licensed Penetration Tester (LPT) Master&lt;BR /&gt;Offensive Security Certified Professional (OSCP)&lt;BR /&gt;GIAC Penetration Tester (GPEN)&lt;BR /&gt;GIAC Exploit Researcher &amp;amp; Advanced Penetration Tester (GXPN)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;PCI&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Internal Security Assessor (IS)&lt;BR /&gt;Payment Card Industry Professional (PCIP)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Incident Response&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;GIAC Certified Incident Handler (GCIH)&lt;BR /&gt;CyberSec First Responder (CFR)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Engineering&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;System Security Certified Practitioner (SSCP)&lt;BR /&gt;Information Systems Security Engineering Professional (ISSEP)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Auditing&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;GIAC Systems and Network Auditor (GSNA)&lt;BR /&gt;ISACA Certified Information Systems Auditor (CISA)&lt;BR /&gt;ISO27001 Internal Auditor&lt;BR /&gt;ISO27001 Lead Auditor&lt;/P&gt;</description>
      <pubDate>Wed, 08 May 2019 09:25:53 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Exams/What-next-after-CISSP/m-p/22078#M888</guid>
      <dc:creator>Steve-Wilme</dc:creator>
      <dc:date>2019-05-08T09:25:53Z</dc:date>
    </item>
  </channel>
</rss>

