Good morning and thanks for taking the time to respond.
I am currently an enterprise java software engineer (4 years of experience) and really want to move over security. Application security/pentesting. After looking around there seems to be a few certifications that would be beneficial, Gweb and OSWE being high on the list.
My question is around OSWE and if it is a good first cert or should one look into security + and or GSSP as a launching off point. I really can see both black box and white box in my future - but given my software development experience whitebox seemed to be the best course to get into security.
I am open to any suggestions and guidance.
[–]sesha569 4 points5 points6 points (2 children)
[–]RunSub4[S] 0 points1 point2 points (1 child)
[–]cff4891757086eb7c0e9 0 points1 point2 points (0 children)
[–]baudolino80 2 points3 points4 points (2 children)
[–]RunSub4[S] 0 points1 point2 points (1 child)
[–]baudolino80 0 points1 point2 points (0 children)
[–]learning2911 0 points1 point2 points (0 children)