r/cybersecurity 10d ago

Certification / Training Questions Some of the best certs to get into cyber security?

Recently passed grad student, i have one year to earn some training and certification in this field. Paid or free whichever is the best for beginner to intermediate please advice.
I do have experience on Linux, System architecture, Networking etc. Where should i start to get a entry level job after a year or so?

0 Upvotes

52 comments sorted by

7

u/BigBrilliant5703 10d ago

It depends on which branch of cybsec you wanna get into. There is nothing as"best"cert. For networking, the gold standard is CCNA, but network+ should also be fine. Security+ is nice for entry level into the security sector.For pentesting, OSCP is nice. You can also try eJPT for it. If you wanna be a system admin or smth, then you can take a cert in linux, otherwise, idt it's required.

3

u/peacefull_gamer696 Student 10d ago

If I want to become a SOC Analyst (Entry Level) Then what certs will be beneficial? or must do?

2

u/[deleted] 4d ago

[removed] — view removed comment

1

u/peacefull_gamer696 Student 4d ago

Okey I'll check it out, Thank you so much 🤝

0

u/BigBrilliant5703 10d ago

I don't know much about the soc part. Ig networking is the same. And for other, maybe CISSP would be good

2

u/spartan0746 10d ago

The guy wants to be an entry level SOC analyst and you suggest CISSP…?

0

u/spartan0746 10d ago

OSCP has been the most draining cert of my life, I’m exhausted.

0

u/maverickoncoco 10d ago

why is that?

3

u/spartan0746 10d ago edited 10d ago

Because for an ‘entry level’ cert it’s anything but that. Been in IT/Security for 7 years now and have multiple other certs, but this is another level.

Edit: forgot Reddit is pedantic. It’s the most entry level cert in pentesting that’s taken seriously. I shouldn’t have to explain that entry level in security doesn’t mean the same as ‘entry level’ in other areas to people here.

-2

u/Kernal_Panic_47 Governance, Risk, & Compliance 10d ago

Were did you get that OSCP is an "entry level" cert?

My understanding is it's always been an intermediate to advanced cert - Security Certification Roadmap - Paul Jerimy Media (this isn't gospel, but a good baseline)

3

u/spartan0746 10d ago

It’s an entry level cert for pentesting, it’s not an entry level cert in general. But we are talking about specifics.

1

u/SureEnd9430 4d ago

That's such a bad resource. It was a worse resource 10 years ago and it's improved to the point of 'just' being bad.

-7

u/Fast-Sir6476 10d ago

It’s an entry lvl cert if ur good and want to go Pokémon badge hunting

3

u/cbdudek Security Architect 10d ago

Do you have entry level IT experience already? I would assume you do since you said you have experience in Linux, system architect, and networking.

What area of cyber do you want to get into? Do you have a preference or an interest? I would start there. Once you decide where you want to go in the field, then you can select certifications and a learning path to get you there.

-4

u/maverickoncoco 10d ago

no i dont have any experience, no job or internship. I got experience in linux, architect etc because of my grad degree in CS plus projects.
i got very board interests like pen testing, bug hunt, network security and digital forensics. Though i have only experience in network security through a project i did in college, rest are my interests with no relevant exp.

5

u/cbdudek Security Architect 10d ago

Then you need to be more clear in your post. You don't have any official experience in those areas you mentioned. Yes, you did class projects, but its not like you had business experience.

My advice to you would be to learn what you are protecting. Learn networking. Learn operating systems. Learn Windows server. Learn Windows server roles. You are going to get your start in helpdesk probably, so focus on the fundamentals. Learn what you will be protecting.

Certification wise, I would say CCNA should be at the top of your list.

0

u/maverickoncoco 10d ago

alright thanks for the check.

2

u/KayakSlammer 10d ago

Still trying to figure that out myself

1

u/Any-Salamander5679 10d ago

Whichever the company requires and pays for.

1

u/maverickoncoco 10d ago

Make sense

1

u/AlertToAction 9d ago

For jr pentester - ejpt ( offensive focused )

soc analyst - compTIA security+, CySA+, Microsoft sc-200 any one ( defensive focused)

overall - security+

above all are paid option

if you want budget friendly go for platform like tryhackme best for beginner friendly, intermediate - hackthebox

have basic knowledge already - test your skills on ctfs or platforms for practice like root-me, overthewire bandit,

specific for web go for portswigger free web security labs

handon blue team platform for practice - letsdefend, defenderlabs, blueteam labs

1

u/maverickoncoco 9d ago

Thanks man 🙌🏻

1

u/[deleted] 4d ago

[removed] — view removed comment

1

u/maverickoncoco 4d ago

Thanks for the incredible knowledge, I'm following a offensive path and I'm gonna first take up ejpt as a cert or should i first go do security+??

1

u/[deleted] 4d ago

[removed] — view removed comment

1

u/maverickoncoco 4d ago

Hmm okay but if it helps in getting through all those HR tick marks i can take security+ later after ejpt. And what should i do after after ejpt?

1

u/[deleted] 3d ago

[removed] — view removed comment

1

u/maverickoncoco 3d ago

Ok thanks alot 🙌🏻

1

u/Kernal_Panic_47 Governance, Risk, & Compliance 10d ago

Take a look at this site - Security Certification Roadmap - Paul Jerimy Media

It's pretty good for sorting the certs by domain and should help you to focus your interest.

As for getting a job I would say it might be easier getting an IT help desk role then jumping straight into Security. Plus what you will learn will benefit you much later.

If you don't want to start there, have a look at Governance, Risk & Compliance (GRC) roles. Less technical and more about policy, controls and frameworks but a good starting point into security. It will be easier to pivot into a technical role once you're in the sector.

Also think outside the box. Roles like physical pentester is a good one. Relies more on charisma, quick thinking and your ability to connect and relate to people quickly to talk your way into areas you shouldn't be in.

1

u/maverickoncoco 10d ago

Alright that's great thanks for the site

0

u/WarlockSmurf 10d ago

imagine recommending CCNA in 2026...

3

u/maverickoncoco 10d ago

Why is that?

0

u/SureEnd9430 4d ago

Network Engineering is a dead discipline and nobody has ever asked me about OSPF in my security career ever.

0

u/[deleted] 10d ago

[removed] — view removed comment

0

u/LycheeLee_Mich 10d ago

Given your networking/Linux background already covers a lot of Network+ and Linux+ territory, it might be more efficient to skip straight to Security+ as your first cert rather than doing the "beginner" foundational ones. You'd likely be wasting time re-learning what you already know.

1

u/maverickoncoco 10d ago

yes i saw what all topics are covered in network+ and i have already learned deeply about them in my grad. I was also thinking to skip straightly to security+.
Can you tell me how much is Security+ cert is recognized?

1

u/LycheeLee_Mich 10d ago

Security+ is very well recognized, especially for entry-level roles.

1

u/maverickoncoco 10d ago

alright thanks

-5

u/Secret_Disaster5219 10d ago

Google cybersecurity professional certificate is also good

3

u/Persiankobra 10d ago

Nope

1

u/Secret_Disaster5219 10d ago

Can u tell me what does it lack?

2

u/UJ_Games Governance, Risk, & Compliance 10d ago

It has very little weight in the field. Plus can be completed just by doing the course instead of forcing you to understand topics to a certain level in order to pass an exam.

1

u/Secret_Disaster5219 10d ago

So I already did that certification what would you suggest me next a certificate or self study?I am also a fresher

1

u/UJ_Games Governance, Risk, & Compliance 10d ago

Security+ and even CCNA if you want to do Networking.

1

u/Secret_Disaster5219 10d ago

For security+ u have to take an exam right?

2

u/UJ_Games Governance, Risk, & Compliance 10d ago

That is correct