Get Certified: Roadmap

GIAC offers over 20 certifications in security administration, management, legal, audit, forensics and software security. A Certification Roadmap has been created to help you determine what certifications are right for specific job needs or career goals. Each GIAC certification is designed to stand on its own, and represents a certified individual's mastery of a particular set of knowledge and skills. There is no particular "order" in which GIAC certifications must be earned; though we recommend that candidates master lower level concepts before moving on to more advanced topics.

GIAC certifications align with individual job based disciplines and typically correspond to topics presented in SANS full 5-6 day courses. GIAC certification attempts have a 4 month time frame.

Cyber Defense & ICS
Level GIAC Certification Affiliate Training
Introductory GISF: GIAC Information Security Fundamentals SEC301: Intro to Information Security
Intermediate GSEC: GIAC Security Essentials SEC401: Security Essentials Bootcamp Style
Advanced GCED: GIAC Certified Enterprise Defender SEC501: Advanced Security Essentials - Enterprise Defender
Advanced GPPA: GIAC Certified Perimeter Protection Analyst
Advanced GCIA: GIAC Certified Intrusion Analyst SEC503: Intrusion Detection In-Depth
Advanced GCWN: GIAC Certified Windows Security Administrator SEC505: Securing Windows and PowerShell Automation
Advanced GCUX: GIAC Certified UNIX Security Administrator SEC506: Securing Linux/Unix
Advanced GMON: GIAC Continuous Monitoring Certification SEC511: Continuous Monitoring and Security Operations
Advanced GCCC: GIAC Critical Controls Certification SEC566: Implementing and Auditing the Critical Security Controls - In-Depth
Intermediate GICSP: Global Industrial Cyber Security Professional ICS410: ICS/SCADA Security Essentials

Penetration Testing
Level GIAC Certification Affiliate Training
Intermediate GCIH: GIAC Certified Incident Handler SEC504: Hacker Tools, Techniques, Exploits and Incident Handling
Advanced GPEN: GIAC Certified Penetration Tester SEC560: Network Penetration Testing and Ethical Hacking
Advanced GWAPT: GIAC Web Application Penetration Tester SEC542: Web App Penetration Testing and Ethical Hacking
Advanced GPYC: GIAC Python Coder SEC573: Python for Penetration Testers
Advanced GMOB: GIAC Mobile Device Security Analyst SEC575: Mobile Device Security and Ethical Hacking
Advanced GAWN: GIAC Assessing Wireless Networks SEC617: Wireless Ethical Hacking, Penetration Testing, and Defenses
Advanced GXPN: GIAC Exploit Researcher and Advanced Penetration Tester SEC660: Advanced Penetration Testing, Exploit Writing, and Ethical Hacking

Digital Forensics & Incident Response
Level GIAC Certification Affiliate Training
Intermediate GCFE: GIAC Certified Forensics Examiner FOR408: Windows Forensic Analysis
Advanced GCFA: GIAC Certified Forensic Analyst FOR508: Advanced Digital Forensics, Incident Response, and Threat Hunting
Advanced GNFA: GIAC Network Forensic Analyst FOR572: Advanced Network Forensics and Analysis
Advanced GASF: GIAC Advanced Smartphone Forensics FOR585: Advanced Smartphone Forensics
Advanced GREM: GIAC Reverse Engineering Malware FOR610: Reverse-Engineering Malware: Malware Analysis Tools and Techniques

Developer
Level GIAC Certification Affiliate Training
Advanced GWEB: GIAC Certified Web Application Defender DEV522: Defending Web Applications Security Essentials
Advanced GSSP-JAVA: GIAC Secure Software Programmer - Java DEV541: Secure Coding in Java/JEE: Developing Defensible Applications
Advanced GSSP-NET: GIAC Secure Software Programmer - .NET DEV544: Secure Coding in .NET: Developing Defensible Applications

Management & Leadership
Level GIAC Certification Affiliate Training
Intermediate GISP: GIAC Information Security Professional MGT414: SANS Training Program for CISSP® Certification
Advanced GSLC: GIAC Security Leadership Certification MGT512: SANS Security Leadership Essentials For Managers with Knowledge Compression™
Advanced GCPM: GIAC Certified Project Manager Certification MGT525: IT Project Management, Effective Communication, and PMP® Exam Prep
Advanced GLEG: GIAC Law of Data Security & Investigations LEG523: Law of Data Security and Investigations
Advanced GSNA: GIAC Systems and Network Auditor AUD507: Auditing & Monitoring Networks, Perimeters & Systems

GIAC Security Expert
Level GIAC Certification
Expert GSE: GIAC Security Expert

*No Specific training is required for any GIAC certification. There are many sources of information available regarding the certification objectives' knowledge areas. Practical experience is an option; there are also numerous books on the market covering Computer Information Security. Another option is any relevant courses from training providers, including SANS.*