My Journey to Achieving the GICSP Certification Through Self-Study
Usman Shahzad, CISSP, GICSP
Senior Cybersecurity Consultant |IT/OT GRC Leader | CISSP | GICSP | ISA 62443 Cybersecurity Expert | ISO 27001:2022 Lead Auditor | ISO 22301:2019 Lead Implementer | ISO 27005:2022 | CASP+ | CEH | OT Cybersecurity Trainer
I'm thrilled to share a critical achievement in my career path – conquering the Global Industrial Cyber Security Professional (GICSP) certification, a crown jewel in OT/ICS Security, endorsed by GIAC and SANS. What makes this moment even sweeter is that I charted my path to success through self-directed study, harnessing a variety of available resources and a select few specialized materials After numerous requests from my LinkedIn family, I'm writing this to share my study strategy with you all.
Beginning our exploration, let's first understand what the GICSP is and determine the ideal individuals who should consider pursuing this exam.
The GICSP (Global Industrial Control System Security Professional) is a prestigious cybersecurity certification for those who focus on keeping industrial control systems and networks secure. It's perfect for control system engineers/automation professionals who are keen on learning more about cybersecurity in their field. It's also suited for IT cybersecurity engineers and administrators who want to dive into the world of industrial control systems and operational technology security. If you're in one of these roles and eager to expand your cybersecurity skills, this certification is designed for you.
Decoding the GICSP Map
I started my journey by exploring the GICSP website, getting a solid feel for what the exam is all about. This was one of the major steps as it helped me to understand the requirements and expectations of the exams, i was able to find the following areas of the exam:
Study Material that helped me cover the exam areas.
White Papers :
SANS Youtube Official Channel and ICS/OT Security Videos
领英推荐
Preparing the CyberLive/Labs
The practical portion of the GICSP, the CyberLive labs, was like navigating through a storm. You must have good command over tools like Nessus, Wireshark, Nmap, SQLMap, and Burpsuite; Moreover, you should be proficient in using/troubleshooting and logging in Windows and Kali Linux.
I have made my On-Premises Lab consist of VMs (Windows+Linux) for practicing these tools and their usage.
Sourabh Suman Master ICS/OT Cybersecurity: Fundamental to Advanced Course is one of the keys for me to develop labs related to Linux and Cryptographic (Hash, Encryption Keys)
Books I have utilized for the study
Making Indexes of the Notes/Study Material
Notes Indexes are key to success in efficiently utilizing the exam time, the exam is an open book and you need to consult the notes/books frequently during the exam, the better indexes you make the better time will be managed in the course of the exam.
Lesley Carhart has defined a wonderfull approach for making the indexes for the SANS Exams and this technique helped me in making mine.
Setting Sail for the Exam.
Reflecting on the Journey
Conquering the GICSP was more than a test of knowledge; it was a journey of self-discipline, strategic study, and practical navigation. It sharpened my skills, pushing me to explore new horizons in OT networking and cybersecurity.
I hope my journey inspires future explorers of the GICSP certification. I like to thank the SANS Institute for designing such a great exam that transformed the skills of ICS/OT Cyber Security Consultants/Engineers/Architects.
Interim Security & Privacy professional
5 个月Thank you for sharing. Patric J.M. Versteeg, MSc. Nice read!
Cyber Security Analyst | IT Security Professional
7 个月Thank you for such a detailed explanation.
IT/OT Cyber Security Architect at Tata Consultancy Services
1 年Thanks for sharing your experience. ????
#Cyber Security IT/OT/ICS# |GICSP| GCIH | ISA/IEC 62443 Cybersecurity Fundamentals Specialist | CISM| CISA | CC| RHCSA |RHCE | ITIL |CCNA| Dell Server , Storage, VMware, NetBackup, DD, Cloud Appliances
1 年Congratulations
Cyber Security Professional - IT/OT ( GRID, GICSP, CISSP, CISM, CHFI, NNCE, LRPA, VCP, RHCE, AZ103, CCNA )
1 年Congratulation dear for this great achievement and thanks for sharing your insights.