← All certifications

GIAC Security Essentials (GSEC)

GIAC

Hands-on security essentials credential with a live-lab component. An Intermediate qualification option across many IT and Cybersecurity work roles including 411, 451, 511 and 531.

We have a course for this

Built from this exam's published objectives. The first module is free.

Baseline certification levels

This certification satisfies these DoD baseline levels — the IAT / IAM / IASAE / CSSP requirement many contracts still state. It's a separate question from the 8140 work roles above, and there is no official mapping between the two.

What this qualifies you for

Listed specifically for 19 work roles — up to Intermediate proficiency. Because options cascade downward, a cert listed at Advanced also satisfies Intermediate and Basic for that role.

411Technical Support SpecialistProvides technical support to customers who need assistance utilizing client level hardware and software in accordance with established or approved organizational process components. (i.e., Master Incident Management Plan, when applicable).Intermediate421Database AdministratorAdministers databases and/or data management systems that allow for the storage, query, and utilization of data.Intermediate441Network Operations (NETOPS) SpecialistPlans, implements, and operates network services/systems, to include hardware and virtual environments.Intermediate451System Administrator (SYSADMIN)Installs, configures, troubleshoots, and maintains hardware, software, and administers system accounts.Intermediate511Cyber Defense AnalystUses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs.) to analyze events that occur within their environments for the purposes of mitigating threats.Intermediate521Cyber Defense Infrastructure Support SpecialistTests, implements, deploys, maintains, and administers the infrastructure hardware and software.Intermediate531Cyber Defense Incident ResponderInvestigates, analyzes, and responds to cyber incidents within the network environment or enclave.Intermediate541Vulnerability Assessment AnalystPerforms assessments of systems and networks within the NE or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy. Measures effectiveness of defense-in-depth architecture against known vulnerabilities.Intermediate611Authorizing Official/Designated Representative (AO/DR)Senior official or executive with the authority to formally assume responsibility for operating an information system at an acceptable level of risk to organizational operations (including mission, functions, image, or reputation), organizational assets, individuals, other organizations, and the Nation (CNSSI 4009).Intermediate612Security Control AssessorConducts independent comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system to determine the overall effectiveness of the controls (as defined in NIST 800-37).Intermediate622Secure Software AssessorAnalyzes the security of new or existing computer applications, software, or specialized utility programs and provides actionable results.Intermediate631Information Systems Security DeveloperDesigns, develops, tests, and evaluates information system security throughout the systems development lifecycle.Intermediate632Systems DeveloperDesigns, develops, tests, and evaluates information systems throughout the systems development lifecycle.Intermediate641Systems Requirements PlannerConsults with customers to evaluate functional requirements and translate functional requirements into technical solutions.Intermediate651Enterprise ArchitectDevelops and maintains business, systems, and information processes to support enterprise mission needs; develops information technology (IT) rules and requirements that describe baseline and target architectures.Intermediate652Security ArchitectDesigns enterprise and systems security throughout the development lifecycle; translates technology and environmental conditions (e.g., law and regulation) into security designs and processes.Intermediate671System Testing and Evaluation (T&E) SpecialistPlans, prepares, and executes tests of systems to evaluate results against specifications and requirements as well as analyze/report test results.Intermediate722Information Systems Security Manager (ISSM)Responsible for the cybersecurity of a program, organization, system, or enclave.Intermediate723Communications Security (COMSEC) ManagerManages the Communications Security (COMSEC) resources of an organization (CNSSI No. 4009).Intermediate
Also listed for 14 Cyberspace Enablers roles — but so is every other certification

The Enablers matrix isn’t role-differentiated: the same certification options are listed for all 14 roles at every proficiency level. We verified that across all 14. So this is true, and it carries no information about this credential specifically — which is why it isn’t in the count above.

Renewal

4year cycle36CPE per cycle

Certification renewal, USD 499

This is the issuer’s clock. 8140 runs a second one — 20 hours of CPD a year, at every proficiency level, which applies even if you hold no certification at all. How that works

GIAC runs a FOUR-year cycle, not the three-year cycle CompTIA, ISC2, ISACA and Cisco use. Any renewal logic assuming a uniform cycle is wrong here.

Source: GIAC certification renewal policy · checked 2026-07-16

Verifying it

GIAC publishes a lookup a third party can use without your involvement.

Name or GIAC Analyst number

The directory is a public HTML page, not a machine-readable endpoint.

Source: GIAC certified professional directory · checked 2026-07-16

Exam blueprint

Verified against GIAC’s published outline.

GSEC

Current

106 questions · 4 hours · passing score 72%

Access control and password management
Cryptography and cryptography application
Defense in depth and defensible network architecture
Endpoint security
Incident handling and response
Linux fundamentals, security and hardening
Log management and SIEM
Malicious code and exploit mitigation
Network security devices, networking and protocols
Security frameworks and CIS controls
Virtualization, cloud security and AI essentials
Vulnerability scanning and penetration testing
Web communication security
Windows security
Wireless network security

GIAC publishes objective areas without percentage weightings, so none are shown.

GIAC does not publish percentage weightings for GSEC objectives, so none are shown. The 72% passing score applies to exam versions released on or after 2026-04-06; the authoritative score for a given attempt appears in the candidate's own GIAC account.

Source: GIAC GSEC certification page · checked 2026-07-16