Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 36 guests online
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Network Pen Testing
GCIA
EH-Net
May 23, 2013, 10:03:49 PM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Network Pen Testing
(Moderator:
don
) >
GCIA
Pages:
1
[
2
]
3
Go Down
« previous
next »
Print
Author
Topic: GCIA (Read 19534 times)
0 Members and 1 Guest are viewing this topic.
nothingelse
Newbie
Offline
Posts: 7
Re: GCIA
«
Reply #15 on:
January 20, 2011, 08:17:24 PM »
Yeah I worked as a Intrusion/Security Analyst for about 3 years. I am now managing/mentoring a team of 17 analysts, but it is still part of my duties. We actually require the GCIA at my company so all analysts have to obtain it after starting. If that is the type of role you are looking for I would say that GCIA is a great start.
Logged
GCIA Gold, GWAPT
knwminus
Full Member
Offline
Posts: 100
Re: GCIA
«
Reply #16 on:
January 20, 2011, 08:23:21 PM »
I know I want to be a "security analyst" and eventually security engineer but I am not sure if I want to work with firewalls, IDS/IPS, systems, web applications or a mix of all of the above. The GCIA seems interesting but so does GPEN, GWAPT, and GCFW. At the cost of 900-3500 a pop though, it is a bit out of reach.
Logged
A+ N+ CCNA CCNA:S CNSS 4011 Security+
Next Up: CCNP CCNP:S
nothingelse
Newbie
Offline
Posts: 7
Re: GCIA
«
Reply #17 on:
January 20, 2011, 08:29:56 PM »
Yeah completely understand. I honestly think that SANS is overpriced for what they provide. I got lucky because my employer pays for our certifications since it is a job requirement and they believe in "continuing education". I would never pay SANS over out of my own pocket. I don't know what you employment status is, but If I were you I would try to find a place that does pay or somehow convince your current employer that it is a benefit to them as much as you
Logged
GCIA Gold, GWAPT
knwminus
Full Member
Offline
Posts: 100
Re: GCIA
«
Reply #18 on:
January 20, 2011, 10:49:04 PM »
I am gainfully employed but I know they wouldn't pay 3k+ for a class (and I wouldn't ask).
More than likely I might try to challenge a cert or two but even that is starting to sound like a tough pill to swallow. 1k is a good amount of money. The OSCP looks awesome but it is 1k but at least that includes training and stuff. 1K just to challenge a test? Seems a bit pricey lol.
I might just try to knock out the "cheap stuff", MCTS, C|EH, SSCP, Elearn, offensive security and possibly learn security online. Then I'll find an employer who will pay for the big stuff (SANS).
Logged
A+ N+ CCNA CCNA:S CNSS 4011 Security+
Next Up: CCNP CCNP:S
tturner
Sr. Member
Offline
Posts: 432
Re: GCIA
«
Reply #19 on:
January 21, 2011, 06:08:15 AM »
I always go the
http://www.sans.org/security-training/volunteer.php
route. $800 for conference attendance + cert + 4 months of Ondemand + some of the best social networking opportunities at the conference, What it does NOT include is bonus materials like SIFT kit, Wireless hardware etc which you will have to pay extra for. For instance I think the SEC508 Forensics course as a volunteer winds up being around $1100 which is still way cheaper. For most courses though this is a non-issue since only a few tracks utilize these extra materials.
For the record, when I did GCIA I did it via OnDemand and had never worked in packet analysis outside of troubleshooting network issues with Wireshark and some very basic work with tcpdump when pentesting.
Logged
Certifications:
CISSP, CISA, GPEN, GWAPT, GAWN, GCIA, GCIH, GSEC, OPSE, CSWAE, CSTP, VCP
WIP: OSWP, GSSP-JAVA, GXPN
Udacity on hold, again. I suck.
http://sentinel24.com/blog
@tonylturner
http://bsidesorlando.org
Methodikal
Newbie
Offline
Posts: 10
Re: GCIA
«
Reply #20 on:
January 21, 2011, 08:39:53 AM »
Quote from: tturner on January 21, 2011, 06:08:15 AM
I always go the
http://www.sans.org/security-training/volunteer.php
route. $800 for conference attendance + cert + 4 months of Ondemand + some of the best social networking opportunities at the conference, What it does NOT include is bonus materials like SIFT kit, Wireless hardware etc which you will have to pay extra for. For instance I think the SEC508 Forensics course as a volunteer winds up being around $1100 which is still way cheaper. For most courses though this is a non-issue since only a few tracks utilize these extra materials.
For the record, when I did GCIA I did it via OnDemand and had never worked in packet analysis outside of troubleshooting network issues with Wireshark and some very basic work with tcpdump when pentesting.
I did it last year and I agree, it's awesome! Best part is the networking. I met ALOT of bright people I still keep in contact with.
Logged
Got EIP?
knwminus
Full Member
Offline
Posts: 100
Re: GCIA
«
Reply #21 on:
January 21, 2011, 10:20:03 AM »
I might have to check that out
How do you jump into a analyst position? I mean from what I have seen, the entry bar is set pretty high.
Logged
A+ N+ CCNA CCNA:S CNSS 4011 Security+
Next Up: CCNP CCNP:S
ziggy_567
Sr. Member
Offline
Posts: 361
Re: GCIA
«
Reply #22 on:
January 21, 2011, 02:29:49 PM »
I haven't taken the actual test for the GCIA, but I can tell you that its the only practice test for GIAC exams that I've taken that I failed. I guess that either means that the test is harder or I'm pretty crappy at packet analysis.
Logged
--
Ziggy
eCPPT - GSEC - GCIH - GCUX - RHCE - SCSecA - Security+ - Network+
knwminus
Full Member
Offline
Posts: 100
Re: GCIA
«
Reply #23 on:
January 21, 2011, 03:51:48 PM »
Hmmm. I have heard the test is a bear. That's part of the reason why I want the official training and I don't want to have to throw 1k up to the wind.....
Logged
A+ N+ CCNA CCNA:S CNSS 4011 Security+
Next Up: CCNP CCNP:S
nothingelse
Newbie
Offline
Posts: 7
Re: GCIA
«
Reply #24 on:
January 21, 2011, 04:41:33 PM »
Quote from: knwminus on January 21, 2011, 10:20:03 AM
I might have to check that out
How do you jump into a analyst position? I mean from what I have seen, the entry bar is set pretty high.
I do a lot of the Technical Screening at my company so i will give you a quick breakdown of what we look for in our analysts. It likely varies from job to job, but this will give you an idea.
Firm Understanding of general Networking and protocols such as (TCP, UDP, ICMP, HTTP, HTTPS, FTP, SSH, SSL, DNS, SMTP etc..)
Understanding of IP Addresses and Subnetting. For example what is an RFC1918 address and what is special about it.
Comfortable using Linux and various utilities such as (grep, awk, tcpdump, cat, tail, head, etc..)
Firm Understanding of web attacks such as (SQL Injection, XSS, RFI, CSRF, directory traversal etc..)
Good Understanding of Regular Expressions
Good Understanding of how networks devices work such as routers, switches, hubs, bridges, Host Based and Network based IDS/IPS, Firewalls, Web Application Firewalls, Proxies etc..
Some familiarity with nmap or other scanning tools
Experience using Databases such as MySQL, SQL, Oracle
Also as an Analyst you need to be able to pick up minor details. It really is a job that requires a lot of attention to detail. This is likely why people say that the test is tough. SANS has a tendency to formulate the answers to the questions very similar so when you glance over them they all look the same, but there may be 1 minor detail that separates that answer from the rest like 1 octet may be different or the port number. Stuff like that is what is the biggest hang up. I hated it at first but after being in the position for 3 years I have learned that it is a necessity for you to be able to pick that kind of stuff out or you will easily miss attacks.
«
Last Edit: January 21, 2011, 04:45:44 PM by nothingelse
»
Logged
GCIA Gold, GWAPT
knwminus
Full Member
Offline
Posts: 100
Re: GCIA
«
Reply #25 on:
January 21, 2011, 08:05:39 PM »
Excellent write up. Maybe I should do the WCNA as a intro to the GCIA topics.
CEH, WCNA and Elearn as the el cheapo versions of GPEN, GCIA and GWAPT lol. Maybe that'll fly.
Logged
A+ N+ CCNA CCNA:S CNSS 4011 Security+
Next Up: CCNP CCNP:S
tturner
Sr. Member
Offline
Posts: 432
Re: GCIA
«
Reply #26 on:
January 21, 2011, 08:26:42 PM »
I'm doing GWAPT and SANS Metasploit course in April but I've been seriously considering WCNA after that. It's either that or RHCE. I'm still interested in OSCP but Im thinking I'll wait a bit on that as I've been focusing on the pentest stuff lately and need to round out a bit some of my core skills. I have the WCNA book and it's really good stuff.
Logged
Certifications:
CISSP, CISA, GPEN, GWAPT, GAWN, GCIA, GCIH, GSEC, OPSE, CSWAE, CSTP, VCP
WIP: OSWP, GSSP-JAVA, GXPN
Udacity on hold, again. I suck.
http://sentinel24.com/blog
@tonylturner
http://bsidesorlando.org
knwminus
Full Member
Offline
Posts: 100
Re: GCIA
«
Reply #27 on:
January 21, 2011, 09:26:02 PM »
I've got it as well although I haven't gotten into it yet. I have so many books on my "to read" list its insane.
Logged
A+ N+ CCNA CCNA:S CNSS 4011 Security+
Next Up: CCNP CCNP:S
H1t M0nk3y
Hero Member
Offline
Posts: 865
Re: GCIA
«
Reply #28 on:
January 22, 2011, 12:21:13 PM »
@nothingelse: Great write up! Thanks, for your insight!
Logged
OSCP, GPEN, GWAPT, GSEC, CEH, CISSP
kwkanter
Newbie
Offline
Posts: 2
Re: GCIA
«
Reply #29 on:
March 31, 2011, 08:12:43 PM »
I passed the GCIA back in November 2010 and can say it is a very nice certification. The classes will give you the knowledge to look at a network packet and find anomalies within them. The test was not that hard once you have taken the class as it does teach you all you need to work hands on. I took a local mentor session and would highly recommend them to anyone.
Logged
GCIA, MCSE, Security+, A+
Pages:
1
[
2
]
3
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
GCIH - GIAC Certified Incident Handler
: Passed my GCIH
(6) by
azmatt
Greetings
: Hi from the UK
(4) by
MrTuxracer
GCIH - GIAC Certified Incident Handler
: GCIH Free Practice test attempt
(0) by
prats84
News Items and General Discussion About EH-Net
: Change is Coming to EH-Net!!
(27) by
don
Network Pen Testing
: AIX Vulnerability Assessments
(2) by
ras76
Tutorials
: Need guidance
(9) by
hanyhasan
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.