Interesting paper on security certification

by Anton Chuvakin

Related link:

Here is a funky paper on security certification called "Certification Uncertainty". It mostly rotates around the CISSP cert. The most fascinating thing about the paper is that after reading it a couple of times, I still can't figure out whether the author supports such certification or not. The paper has both "Would I hire somebody who has a CISSP certification over somebody who doesn't? Absolutely." and "CISSP may be nothing more than a club...".