CSSLP "Certified Secure Software Lifecycle Professional"
I got an email saying that I can get certified as being a "secure software lifecycle professional". While I think the concept is great, they go on to say "Don't forget that time is running out to get CSSLP certified without taking an exam." The important part of that is the "certified" and "without taking an exam". What they are expecting you to do is give a resume, short essay, and answer a few questions and that will give them enough for you to be "certified".
This kind of concept I think shows the flaw in how my industry views security. The security landscape changes every day and even knowing the core concepts by no means demonstrates that you are security minded. What is worse is that this company (ISC)2 is putting a kind of 'stamp' on people defining them as such. Now if a company bought into it and hired someone who is 'certified', they are expecting someone who is capable of writing secure software, but what they really got is a normal developer who had the free time to follow "simple steps to completing the CSSLP Online Experience Assessment".
Even the company pushing this does not think it is a good idea it seems: "the CSSLP Experience Assessment will only be here for a limited amount of time". If they thought this was a sustainable way to validate people's security experience, they would offer it as a permanent product. Really they are just astroturfing a user base so they can sell their services, but they are hurting security and the industry in the process.
Time is Running Out... The holidays are over, the New Year is here, and it's time we made something very clear. Time is running out to apply for the CSSLPCM Experience Assessment. You've already heard all about CSSLP, you've read the whitepapers, scanned through the brochure, read about it in the news, maybe even talked to us at a trade show. Now it's your turn to join more than 130industry leaders, like you, who have become the first CSSLPs. Apply for your CSSLP Experience Assessment today. Don't forget that time is running out to get CSSLP certified without taking an exam. If you've had 4 recent years of professional experience in the area of the Software Development Lifecycle (SDLC) and you're an expert in 4 of the 7 CSSLP Experience Assessment topic areas, you're nearly there. Here's how: Have everything ready before you start, including Click here for the simple steps to completing the CSSLP Online Experience Assessment. As always, I am available if you have additional questions. Don't delay; the CSSLP Experience Assessment will only be here for a limited amount of time! Warm regards, Glenn Johnson
To Get Certified without taking the Exam!
Here's the deal...
Did you know you can sign up for the CSSLP Experience Assessment
in just 15 minutes or less?
- Each essay needs to be 250-500 words.
- Each essay should describe an applicant's professional experience
as it relates to one of the 7 Domains
CSSLP Support Team
(ISC)2®
+1.866.462.4777 ext. 4432
+1.703.637.4432
