Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 50 guests and 1 member online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow certifications dilema
EH-Net
May 23, 2013, 01:15:46 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: certifications dilema  (Read 3309 times)
0 Members and 1 Guest are viewing this topic.
Bushman
Newbie
*
Offline Offline

Posts: 14



View Profile
« on: June 18, 2012, 01:18:51 AM »

Hi guys,

Here are a few certs that I can find with their respective training institutions. They all look sexy and self proclaimed as being the best cert.

CPTC - Certified Penetration Testing Consultant     25421
CPTE - Certified Penetration Testing Engineer     34894
CSTA - Certified Security Testing Associate             3614
GPEN - GIAC Certified Penetration Tester             33170
OSCP - Offensive Security Certified Professional     36097
CEH - Certified Ethical Hacker                             90494
ECSA - EC-Council Certified Security Analyst     29890
CEPT - Certified Expert Penetration Tester            26267

However, the question I have been wrestling with is which one of these ethical hacking or pentesting certifications and trainings truly and genuinely offer the best material in the world? Categorizing them in the best being 1, how would you rank them in term of quality, depth, practicality and maturity?
I have only taken SANS training but have read a lot about the other ones' testimonies, reviews and talk to a few friends who have taken for example OSCP and CEH.

Could any one of you guys attempt to answer this question if you have taken a few of these courses and certs. Please provide some comparisons if you wish on tools covered, instructors' experience, labs setup and etc.

I am excited to hear from you and would like to thank you in advanced.
Logged

Certifications: CISSP, GISP, GPEN, GAWN, MCSE, Network+ and A+
Cyber.spirit
Sr. Member
****
Offline Offline

Posts: 351


The World is sick, Save your mind...


View Profile
« Reply #1 on: June 18, 2012, 02:24:44 AM »

OSCP and CEH is great but OSCP is more professional and its harder.....
Logged

ICS Academy Network Security Certified
UNIX
Hero Member
*****
Offline Offline

Posts: 1235


View Profile
« Reply #2 on: June 18, 2012, 02:27:36 AM »

From the ones you have listed, I'd say OSCP and CEPT. GPEN is popular as well, but based on your signature, it seems you already have it. If you want something for HR, you can also add CEH.
Logged
Bushman
Newbie
*
Offline Offline

Posts: 14



View Profile
« Reply #3 on: June 18, 2012, 02:57:58 PM »

A thank you to though who have responded so far.

However, I should add that I am not really interested in the HR or job hunt certs. I must say that even though all of us would like the pay but I am more into a REALY STUFF! I am interested in skills development, personal challenge and self satistifaction.
Logged

Certifications: CISSP, GISP, GPEN, GAWN, MCSE, Network+ and A+
cd1zz
Hero Member
*****
Offline Offline

Posts: 561


View Profile WWW
« Reply #4 on: June 18, 2012, 04:38:24 PM »

offsec
Logged

DragonGorge
Jr. Member
**
Offline Offline

Posts: 83



View Profile
« Reply #5 on: June 18, 2012, 08:11:04 PM »

However, I should add that I am not really interested in the HR or job hunt certs. I must say that even though all of us would like the pay but I am more into a REALY STUFF! I am interested in skills development, personal challenge and self satistifaction.
In that case I'd stick with OSCP. You're not going to get a whole lot of depth in CEH - "Mile wide and a foot deep"
Logged
MaXe
Hero Member
*****
Offline Offline

Posts: 669


I've just upgraded myself to a cyborg muahahaa!!1


View Profile WWW
« Reply #6 on: June 19, 2012, 09:27:31 AM »

If you're in India and you need a job, CEH. Keep in mind they require a clean criminal record and I think they also require 2 years of IT-security experience or related at least.

If this is not your situation, and you really want to learn what pentesting is about, well, at least the basics that is, it's definitely OSCP you have to do. CEH won't teach you pentesting. It's a mile wide but only a foot deep, while OSCP is a foot wide (pentesting) but a mile deep.

Keep in mind that a "foot wide" in OSCP, doesn't mean it covers only a few things, as OSCP (i.e. PWB) covers almost or perhaps just everything within penetration testing pretty much. Except hardcore exploit development, they have other courses for that  Grin
Logged

I'm an InterN0T'er
tturner
Sr. Member
****
Offline Offline

Posts: 432


View Profile WWW
« Reply #7 on: June 19, 2012, 09:51:22 AM »

I'd beg to differ on the whole mile wide, foot deep thing. Based on my conversations with CEH candidates, I tend to think CEH is only a foot wide, and about an inch deep. The exception to the width comment is that it seems CEH teaches you 20 tools to perform one task that you will likely only ever use 2 or 3 tools for. If that's what HR is looking for, by all means do what you have to do, but I'd prepare for disappointment if you were hoping to learn anything useful. The one thing CEH has going for it is marketing/name recognition and the other players lag behind here, regardless of their technical value.
Logged

Certifications:
CISSP, CISA, GPEN, GWAPT, GAWN, GCIA, GCIH, GSEC, OPSE, CSWAE, CSTP, VCP

WIP: OSWP, GSSP-JAVA, GXPN

Udacity on hold, again. I suck.

http://sentinel24.com/blog  @tonylturner http://bsidesorlando.org
UNIX
Hero Member
*****
Offline Offline

Posts: 1235


View Profile
« Reply #8 on: June 19, 2012, 10:05:44 AM »

However, I should add that I am not really interested in the HR or job hunt certs. I must say that even though all of us would like the pay but I am more into a REALY STUFF! I am interested in skills development, personal challenge and self satistifaction.

I'd go with OSCP and CEPT.

Keep in mind that a "foot wide" in OSCP, doesn't mean it covers only a few things, as OSCP (i.e. PWB) covers almost or perhaps just everything within penetration testing pretty much. Except hardcore exploit development, they have other courses for that  Grin

Although Mati and crew did - without a doubt - a great job, saying or thinking that PWB (or any other course) teaches (almost) everything about penetration testing, is just wrong and also naive.

I assume you didn't mean it that way, but that's how someone (especially someone new to the field) might interpret your statement.
« Last Edit: June 19, 2012, 10:17:50 AM by aweSEC » Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.07 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.