问一下,关于信息的audit,比如Information Risk Audit / IT Audit,一般做什么或者说招聘这样的人有什么要求
If you want to be a IT Audit, CISA is the cert. For CISSP, it is more for
IT Security Management and IT Security Consultant. CISSP requires 3 year Security related experience assume you have a degree. CISA requires 4 years.I am not sure about CISA, but for CISSP, you can pass the exam and get a ISC Associate title if you have less than 3 year experience.
However both CISA and CISSP are very theoretical and have very little technical and practical value. If you are a practical person and pursue technical excellence, you should go for GIAC certifications such as (GCIH) from www.sans.org.
However both CISA and CISSP are very theoretical and have very little technical and practical value. If you are a practical person and pursue technical excellence, you should go for GIAC certifications such as (GCIH) from www.sans.org.