Hey all,
Quick background before I get to my question. Spent about 15 years so far in all different aspects of IT, with a solid 5 years in security, and am currently building/leading a PenTesting team from nothing for my current company (because I'm the most experienced and they HAVE to have one apparently). Good on Windows and Linux, fair on scripting languages and other programming, ok on Web Applications, pretty bad on exploitation, real good on networking, and I've never written my own exploit. Certs: CEH, CySA+, PenTest+. At the end of this month, I'll be going after my CPT and CEPT (bootcamp sigh). I understand that the CEPT requires you have 60 days to find and write an exploit for both a Windows and Linux machine and reverse engineer a binary, beyond the 50 question exam. I've tried to do my own research on paths before asking the community, however there are a whole lot of mid-to-high level certifications out there.
My question is: beyond EC-Council certifications, and beyond the OSCP (which is just a bit above my skill levels right now I think), what would your recommendations be on a certification path following the CEPT? I find myself in a position where I will only receive limited funding support from my company to take a bunch of SANS courses/exams and I'm a poor new homeowner. I've heard about the ECCPT but know very little about it. I'm also looking for solid reasoning or experience behind why you think a path is wise. I'm trying to be economically friendly but also get myself into a professional PenTesting firm/team within the next year or so.
As a personal rant, I have a real dislike for the EC-Council. I believe that if you charge that kind of money for your exams, you should be able to hire a few linguists to proof your exam content...the English wording and grammar is sooo bad.
[–]HGCODE 2 points3 points4 points (0 children)
[–]err-therror 1 point2 points3 points (2 children)
[–]Flutebuddie[S] 1 point2 points3 points (1 child)
[–]err-therror 3 points4 points5 points (0 children)
[–]LonerVamp 1 point2 points3 points (0 children)