CERTIFICATION IS A MUST
A Bachelor degree is usually sufficient, but a Masters degree can put you one step closer to landing the position. Industry certifications are a must. For leadership roles, companies like to see Certified Protection Professional (CPP), Certified Information Systems Security Professionals (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA) and Global Information Assurance Certification (GIAC). The more technical the role, the more GIAC and vendor specific certifications are desired.
Our company has seen different career paths lead to security management roles. Early on, companies asked for individuals who came up through physical security or technical ranks to include mainframe/midrange security, network security and Internet security. Common career progression frequently includes moving from security administrator to security engineer/analyst to security architecture titles to management. While this type of career progress is still important, there is more to it than just getting promotions.
Understanding mainframe, network and Internet security technology alone is no longer enough. Specific industry experience is often a prerequisite to obtaining a senior security leadership role in a particular industry. Additionally, as a result of regulatory compliance pressures, companies frequently want to see candidates who clearly demonstrate an understanding of compliance regulations that relate directly to their industry.