Saturday, May 17, 2008

Infosec Qualifications

Information systems security is about the "Protection of information systems against (INFOSEC) unauthorized access to or modification of information, whether in storage, processing or transit, and against the denial of service to authorized users, including those measures necessary to detect, document, and counter such threats” (Committee on National Security Systems, 2006, p. 21).

Social security attacks are on the increase (ISO27k implementers' forum, & CISSPforum, 2008)
and the prime focus of Security threats worldwide in 2008.

The demand for security qualifications (IsecT, 2008) is also on the increase, yet does management know if infosec qualifications provide a solution to the social threats, and if so, how much do security qualifications solve this infosec problem?