GSEC objects to end to end concept with a basic toolset/practical problems (IMHO) To be a good security analyst you need experience, but having those certs will get you on your way. If you want to understand penetration testing or will be managing penetration testers then GPEN is for you. It certainly won't be a starting point :-). The candidate will demonstrate an understanding of IDS tuning methods and correlation issues. The candidate will demonstrate competence in analyzing data from multiple sources (e.g. full packet capture, netflow, log files) as part of a forensic investigation. Candidates are required to demonstrate an understanding of information security beyond simple terminology and concepts. With the aim of becoming a Security Analyst/Tester, and for a good kick start, which one of these two is good? SEC503: Intrusion Detection In-Depth delivers the technical knowledge, insight, and hands-on training you need to defend your network with confidence. The pen-test isn't any good to anybody if it doesn't help them secure their systems. GCIH is all about incident handling and basic hacker techniques, and as your career progresses you'll learn that they are basic. GIAC Certified Intrusion Analyst (GCIA) is an advanced skill level credential that demonstrates a professional's knowledge. The candidate will demonstrate knowledge of IPv6 and how it differs from IPv4.
