I passed my CC exam last week. I already have my Comptia Sec+. I was thinking of going for my SSCP so it can fill in the knowledge gaps or should I just try the CISSP and then CCSP . I would like to focus on Cloud Security. I am also trying to get some MS security certs like the sc-400, etc. I am between jobs and hoping that theses certs will help me land a cybersecurity job.
So I don't know what your career plans are beyond "focus on Cloud Security", so I can only note this.
SSCP, CISSP, and CCSP all require experience to obtain. SSCP is the lowest as 2 years, CISSP & CCSP is 5 years unless you have a degree, then its 4 years. (actually, if you have the CCISP, that covers the experience for CCSP).
So if you don't have that experience, you'll have to obtain the "Associate of ISC2" status to "keep" the test score until you get the experience, but that lasts for only 5-6 years.
Thus if you're trying to land a job, Sec+ and CC would be the way to go, then when you have it, decide on SSCP or CISSP next.
Consider CCSK from the CSA instead of CCSP. No experience needed. And consider getting the AWS &/or Azure associate certs as well. There is Cloud+, but not sure how good or how respected.
Hope this helps.
Neither SSCP, CISSP, nor CCSP are for those "new" to cybersecurity. Keep in mind that you can not actually be issued any of these certifications without experience, so you might as well use the experience as part of your studying. Here is my recommended study path:
I have been in the IT field for 15+ years, mostly in a desktop support role. I did some networking, programming, security, etc. I also have the CCSK bundle, so I will be taking the exam soon. I already have some Azure certs like the AZ-900 and SC-900. I am looking to get the AZ-500 and MS-500. Any other suggestions?
"I have been in the IT field for 15+ years, mostly in a desktop support role"
Ok, I don't know what exactly you've done in this desktop support role, tho am surprised you've been doing this for 15 years and not advanced in some way. BUT you MIGHT have the experience needed to get the SSCP. Even in a desktop support you may be doing infosec work. Get a copy of the SSCP domains and breakdown, and go over it. See if you feel the work you've already done matches what is looked for. If you're not sure, network with an ISC2 member. (if you're not networking with IT peers, you need to. Join local IT/infosec groups such as local chapters of ISSA, ISC2, ISACA, whatever CompTIA has, or any local groups, etc).
If you feel you already meet the requirements, go for it. SSCP will give you an edge over Sec+ or CC in jobs. Leverage what you'd done already to get your next role.
@eddiechabbs wrote:
"What job titles would one be targeting after obtaining a CC?"
Well, basically entry-level roles. Roles that don't require much experience.
SOC analyst
Security analyst
security administrator
etc.
I am some what in the same boat as you. I have over 15 years experience, have my Sec+, CC and going for my CCSK. Where are all the jobs? Almost all "entry-level" require you have 3 years in a cybersecurity position. I just might look into cloud and give up on cybersecurity. ISC2 which Comptia and others that deal with CyberSecurity certs should have a job board just for security jobs. You get access after you pass certain certs.
I provisionally passed the exams yesterday and from what I have seen online and heard through CISSP-qualified individuals, I would rather go for the CISSP as the CCSP will be attained after passing the CISSP.