As of that date, the minimum requirement for certification will be five years of relevant work experience in two or more of the 10 domains of the CISSP CBK® or four years of work experience with an applicable college degree or a credential from the (ISC)²-approved list. The current requirements for the CISSP call for four years of work experience in one or more of the 10 domains of the CISSP CBK, or three years of experience with an applicable college degree or a credential from the (ISC)²-approved list (up to two years can be waived). Also effective 1 October, CISSP candidates will be required to obtain an endorsement of their candidature exclusively from an (ISC) 2-certified professional in good standing. The professional endorsing the candidate can hold any (ISC) 2 certification – CISSP, Systems Security Certified Practitioner (SSCP®) or Certification and Accreditation Professional (CAP CM). Currently, candidates can be endorsed by an officer from the candidate’s organization if no CISSP endorsement can be obtained.
I'm happy to see that the CISSP certification will again mean something. Requirements for Information Security Experience will hopefully mean that less InfoSec basics will be ignored, and more people will be protected. [I hope...] (ISC)2 Notice: Modifications to CISSP® Experience Requirements Beginning 1 October 2007 |