GIAC Critical Controls Certification (GCCC)
Credential: GIAC Critical Controls Certification (GCCC)
Credentialing Agency: Global Information Assurance Certification (GIAC)
Renewal Period: 4 years
Global Information Assurance Certification (GIAC), Critical Controls Certification (GCCC) is an advanced level certification that recognizes a candidate's knowledge and skills for implementing and executing the Critical Security Controls, an approach to security recommended by the Council on Cybersecurity, and for performing audits based on the standard. GCCC candidates must have a solid understanding of the philosophies and driving forces behind the creation of the Controls, the scope of the Controls, and how the Controls can be used to prioritize information security controls based on community risk assessment efforts. Candidates must also have an understanding of how the Controls relate to other information assurance standards and can be used to meet the goals of those standards. GCCC is designed for security professionals, auditors, Chief Information Officers (CIOs), and risk officers who want to demonstrate their ability to assess and implement the Top Critical Security Controls. GCCC does not require any prerequisites or specific training. GCCC candidates are required to pass a written exam.
More information can be found on the certifying agency's website.
GIAC Critical Controls Certification (GCCC)
MINIMUM REQUIREMENTS
Eligibility Requirements (View Details)
- Credential Prerequisite
- Experience
- Education
- Training
- Membership
- Other
- Fee
Note: This credential may have multiple options for becoming eligible. Listed are the minimum requirements based on the minimum degree required. To view other options, see the Eligibility tab.
Exam Requirements (View Details)
- Exam
- Written Exam
- Oral Exam
- Practical Exam
- Performance Assessment
RECERTIFICATION SUMMARY
Renewal Period: 4 years
AGENCY CONTACT INFORMATION
Global Information Assurance Certification (GIAC)
8120 Woodmont Avenue
Suite 205
Bethesda, MD 20814
Phone: (301) 654-7267
Fax: (301) 951-0140
Email: info@giac.org
Other REQUIREMENTS
The GIAC Critical Controls Certification (GCCC) credential has the following other requirements:
- GCCC candidates must abide by the GIAC Code of Ethics.
Written Exam
- Account Monitoring and Control
- Application Software Security
- Background, History, Purpose and Implementation of the 20 CC
- Boundary Defense
- Continuous Vulnerability Assessment and Remediation
- Controlled Access Based on the Need to Know
- Controlled Use of Administrative Privileges
- Data Protection
- Data Recovery Capability
- Email and Web Browser Protections
- Incident Response and Management
- Inventory of Authorized and Unauthorized Devices
- Inventory of Authorized and Unauthorized Software
- Limitation and Control of Network Ports
- Maintenance, Monitoring, and Analysis of Audit Logs
- Malware Defenses
- Penetration Tests and Red Team Exercises
- Secure Configurations for Hardware and Software
- Secure Configurations for Network Devices
- Security Skills Assessment and Training to Fill Gaps
- Wireless Access Control
Exam Preparation Resources
There are a number of resources available to help you prepare for the GIAC Critical Controls Certification (GCCC) examination:
- Best Sources
- General References
- Related Courses
- Related Training
Testing Information
Testing for this credential is handled by Pearson VUE. The test centers are located in the U.S. They also have some test centers on military bases.
To find out more, use the following links on the Pearson VUE website:
For more information on the Global Information Assurance Certification (GIAC) testing process, visit the agency website.
RECERTIFICATION
GIAC Critical Controls Certification (GCCC)
Renewal Period: 4 years
Additional considerations for the GIAC Critical Controls Certification (GCCC) include:
- The GCCC does not require any prerequisites or specific training. Practical experience, self-study, college level courses, and courses from training providers, including SANS Institute, are options for acquiring the knowledge and skills necessary for certification.