The Certified Information Systems Security Professional (CISSP) is the premier credential for practitioners in IT/information security.  The certification is designed for experienced professionals who are responsible for developing the information security policies, standards, and procedures and managing their implementation across an organization.

In 1998, the National Security Agency (NSA) Information Assurance Methodology (IAM) was developed to meet the demand for information security (INFOSEC) assessments in federal agencies.  It was quickly determined that this system would also provide valuable information to others as a vehicle for standardization of INFOSEC assessments.

As a follow-on to the IAM, the National Security (NSA) developed the Information Evaluation  Methodology (IEM) to meet the demand for information security (INFOSEC) evaluations.  The NSA recognized that  this system would both provide valuable information to consumers and also provide a vehicle for standardization of INFOSEC evaluations..

The CCP requires the highest standards for the profession - both in passing examinations (CORE and specialty areas at the Expert-Mastery level), and in abiding by a common set of professional principles.

NSA INFOSEC Evaluation Methodology (IEM)

NSA INFOSEC Assessment Methodology (IAM)

Certified Computing Professional (CCP)

Certified Information Systems Security Professional (CISSP)

Montani Solutions, LLC

IT Security and Compliance

Consulting, Assessments, Audits, Reviews, Training

Expert assistance in keeping your IT resources as secure as the mountains.

IT Management                         IT Consulting

IT System Security

© 2008 Montani Solutions, LLC                                                                                                                 webadmin@montanisolutions.com

Individuals involved in the design and delivery of the systems behind that technology must be committed to:

· Uphold ethical practices in their day to day activities

· Master the body of knowledge of the profession

· Ensure that access to computerized information remains confidential

· Provide open and complete communications to clients, employers and the public

· Act to ensure that information technology serves and benefits society at large

 

The NSA IEM certification attests that the holder has completed the prescribed training concerning detailed and systematic methods for examining and addressing an organization's information security vulnerabilities and passed the corresponding test.

The NSA IAM certification attests that the holder has completed the prescribed training concerning detailed and systematic methods for examining and addressing an organization's information security vulnerabilities and passed the corresponding test.

The principals of Montani Solutions have earned and maintain the following professional and technical certifications.

Certifications

SANS/GIAC Systems and Network Auditors (GSNAs) have the knowledge, skills and abilities to apply risk analysis techniques and to conduct a technical audit of essential information systems.

 

Risk assessments and security audits are essential in complying with GLBA, HIPAA, FERPA, and SOX regulations.

 

SANS/GIAC Systems and Network Auditor (GSNA)

Along with viruses and worms, one of the biggest threats to computers on the Internet today is malware.  Malware, short for malicious software, is any program designed to wreak havoc, hide potentially incriminating information, and/or disrupt or damage computer systems. Examples of malware include the tools used by criminals, terrorists and crime organizations — like Trojans, key loggers, denial of service tools, virus toolkits, encryption and steganography tools and more.  A Certified Malware Investigator has been trained and tested in the use of WetStone’s Gargoyle Investigator™ Forensic Pro™ software in detecting malware in the current digital environment, and the tools to help mitigate that threat.   This is dramatically beyond the problems addressed by common anti-virus systems.

Certified Malware Investigator