Fortinet certification planning changed materially on July 15, 2026. The former FCF, FCA, FCP, FCSS, and FCX certifications were retired and Fortinet returned to an eight-level NSE structure. The current Fortinet certifications now spans NSE 1 through NSE 8, with track-specific NSE 5, NSE 6, and NSE 7 certifications in Secure Networking, Security Operations, SASE, and Cloud Security.
That change means older exam codes and certification labels should be read as transition context rather than as a current path map. FortiGate Administrator now maps to NSE 4; FortiSwitch Administrator maps to NSE 5 in Secure Networking; FortiManager Administrator maps to NSE 6 in Secure Networking; and advanced Security Operations work is represented by the Security Operations track at NSE 5, 6, and 7.
ExamLabs still contains useful material under earlier labels such as FCP_FGT_AD-7.6 and FCP_FMG_AD-7.6. Those destinations can help with technology study, but candidates should separate the product skill from the current certification name before planning an exam sequence.
NSE 1 through NSE 4 establish the common base
The updated program uses NSE 1 and NSE 2 for foundational online learning, NSE 3 for FortiGate Operator knowledge, and NSE 4 for a proctored FortiOS Administrator exam. That common NSE 4 foundation matters because the track-specific NSE 5 and NSE 6 certifications require an active NSE 4.
This is where older NSE4_FGT_AD-7.6 material needs careful interpretation. The technology domain remains FortiGate and FortiOS administration, but the 2026 program now names the credential NSE 4 and treats it as the operational base for higher track certifications.
NSE 5 introduces track-specific specialization
NSE 5 is no longer one generic level. Candidates earn NSE 5 in a specific track by holding active NSE 4 and passing an eligible exam for Secure Networking, Security Operations, SASE, or Cloud Security. The product choice therefore signals the operational domain a candidate is building.
For example, FortiSwitch Administrator maps to NSE 5 in Secure Networking, so NSE5_FSW_AD-7.6 should be understood as networking-oriented experience. Security Operations at the same level instead uses operations products such as FortiAnalyzer Analyst or FortiSandbox Administrator under the current mapping.
NSE 6 deepens product and operational responsibility
NSE 6 also exists by track and requires an active NSE 4 plus a qualifying NSE 6 exam. The level includes more advanced products and operational responsibilities, such as FortiManager in Secure Networking and tools such as FortiEDR, FortiSIEM, FortiNDR, and FortiSOAR in Security Operations.
This design allows candidates to build depth without pretending every Fortinet professional needs the same product set. A network-security engineer and a SOC engineer may share the NSE 4 foundation but then develop different day-to-day operational skills.
NSE 7 is now a comprehensive architect level by track
Fortinet changed NSE 7 to comprehensive exams for Secure Networking, Security Operations, SASE, and Cloud Security. Candidates need an active NSE 4 plus an active NSE 5 or NSE 6 in the same track before taking the relevant NSE 7 architect exam.
The design is important because it makes advanced certification depend on earlier track experience rather than a single standalone exam. NSE 7 is intended to represent broader architecture and advanced operational judgment across the track, not just mastery of one product interface.
NSE 8 and industry certifications sit above the track model
NSE 8 remains the expert level and combines prerequisites with practical testing. Fortinet also introduced industry certifications such as OT Security and MSSP Security. These paths require lower NSE foundations and advanced track credentials before the industry-specific exam or practical requirement is completed.
Candidates should view those credentials as evidence of broad professional capability rather than a shortcut around lower levels. The prerequisites intentionally connect expert certification to a current working foundation in Fortinet security technologies.
Choose the track from the work you perform
Secure Networking is the natural direction for FortiGate, switching, management, authentication, network access, and related infrastructure. Security Operations fits detection, analysis, endpoint and telemetry products. SASE focuses on secure access and SD-WAN contexts, while Cloud Security covers public and private cloud security products.
The strongest choice follows responsibility rather than prestige. A candidate who operates FortiManager and network policy should not choose Security Operations merely because it sounds more advanced, and a SOC analyst should not build an exam plan around switching if those skills are peripheral to the job.
Transition history still matters for existing holders
Fortinet mapped active pre-July 2026 certifications and exams into the new NSE structure. Someone with recent FortiGate Administrator experience could receive NSE 4, while product exams such as FortiSwitch or FortiManager mapped into Secure Networking levels. Similar mappings exist for Security Operations and the other tracks.
Older articles such as Fortinet NSE 4 career paths remain useful only when their certification labels are read historically. Product and skill discussions can survive a program renaming, but current candidates should verify today’s level, track, exam name, and prerequisite before registering.
Recertification is now tied to the NSE structure
Current NSE and industry certifications have defined renewal requirements and a two-year validity period. Depending on level, candidates may use a later proctored exam, an available recertification assessment, or—at NSE 8—activity points and practical requirements.
This makes certification maintenance part of path planning. Professionals should avoid letting a prerequisite expire if a higher-level certification depends on it, and they should understand which renewals also extend lower active certifications.
Build the path around technology mastery
The best use of FortiGate administrator career value is to connect configuration knowledge to real operations: policy, routing, VPN, authentication, logging, high availability, and troubleshooting. Certification labels may change again, but the ability to operate and explain those systems remains valuable.
A durable path therefore combines current program awareness with hands-on product depth. Candidates should know what the badge is called today, but they should spend most of their effort understanding the technology and the failure modes that the certification is meant to represent.
Because the new NSE structure uses prerequisites, sequence matters more than it did for people who treated product exams as independent badges. A candidate targeting NSE 7 in Secure Networking, for example, needs an active NSE 4 and an active NSE 5 or NSE 6 in the same track before the NSE 7 architect exam can complete the certification. That makes expiration dates and track consistency operational planning issues. Passing technically relevant exams out of sequence can still build skill, but the certification may not be issued until prerequisite conditions are satisfied.
Organizations that sponsor certification should update internal career frameworks as well. Job descriptions, promotion matrices, partner requirements, and training budgets may still refer to FCP or FCSS even though those labels are retired. Mapping old expectations to current NSE levels prevents employees from chasing credentials that no longer exist and helps managers distinguish between a product course, a proctored exam, and an active certification with prerequisites. This is especially important during the first year after a large program transition.
The new structure also makes cross-track breadth easier to describe. A professional can hold NSE 5 or NSE 6 in more than one track if their work spans networking, security operations, SASE, or cloud security. That can be useful for architects and senior engineers whose responsibilities cross product boundaries. Breadth should still follow real experience; collecting track certifications without operating the underlying technologies can make a profile look broader than the practitioner’s day-to-day capability.
Candidates should keep a simple evidence record for every certification decision: current Fortinet requirement, exam name, track, prerequisite, delivery method, validity period, and the date the information was checked. Program details can change faster than third-party articles are updated. A small verification habit prevents expensive registration mistakes and makes it easier to reconcile older study material with a newer certification structure.
Training plans should also distinguish course completion from certification attainment. Fortinet offers self-paced and instructor-led learning across the NSE levels, but some certifications require proctored exams and active prerequisites. Completing a course can build skill without automatically creating an active certification. Organizations that track only course badges may therefore overstate readiness for a higher NSE level. Candidates should verify the exact requirement chain in their Training Institute account before assuming that a learning activity satisfies a prerequisite.
The transition also creates a documentation challenge for teams with long-lived runbooks and internal skill matrices. References to “FCP engineer,” “FCSS architect,” or an older NSE exam code should be updated with the current level and track while preserving historical context where it helps explain existing staff credentials. Clean terminology makes mentoring easier because new candidates can compare their path with experienced colleagues without confusing retired labels with current requirements.
For employers, the most useful interpretation of the new program is capability by level and track rather than a direct one-for-one translation of every old badge. NSE 4 indicates the FortiOS administrative base; NSE 5 and NSE 6 show increasingly specialized track skills; NSE 7 represents advanced architecture in that track; and NSE 8 represents expert practical capability. That model is easier to map to job responsibilities than treating retired FCP and FCSS names as permanent career tiers.
Fortinet certification paths in late 2026 should be planned from the new NSE model, not the retired FCP/FCSS hierarchy. Start with the common NSE foundation, choose the track that matches your work, and progress only when the next level corresponds to deeper responsibility.
Legacy exam codes can still point to useful study material, but they need explicit context. The safest rule is simple: use older resources for technology depth and Fortinet’s current program requirements for certification decisions.