___Tom___
___Tom___ t1_iv02qrn wrote
Reply to comment by PeanutSalsa in I'm Gage Bennett, a Defense Content Developer at Offensive Security Ask me anything about cyber security and defense content creation. by Offsec_Community
No OP, but some sub-reddits do have a bot doing link-checking, yes.
___Tom___ t1_iv02neg wrote
Reply to comment by Offsec_Community in I'm Gage Bennett, a Defense Content Developer at Offensive Security Ask me anything about cyber security and defense content creation. by Offsec_Community
Second that. Some of the world-class people I'm lucky to know in the field have no formal qualifications. However, many of them are (like myself) dinosaurs from a time when there was no "IT Security" study. You'd study something with IT and then pivot into security. These days, qualifications are getting more important, but everywhere I've worked within the past 10 years people were still open for lateral entrants.
___Tom___ t1_iv02da7 wrote
Reply to comment by avvstin in I'm Gage Bennett, a Defense Content Developer at Offensive Security Ask me anything about cyber security and defense content creation. by Offsec_Community
Come over to Europe. We are desperate for people with cybersecurity knowledge. My company is hiring and so is every other company in the field that I know.
___Tom___ t1_iv0285a wrote
Reply to comment by kee80 in I'm Gage Bennett, a Defense Content Developer at Offensive Security Ask me anything about cyber security and defense content creation. by Offsec_Community
Not OP, but IMHO the single best thing you can do is to not re-use passwords. Use a different password for every website you have an account on, because password leaks are common and your username is often your e-mail these days, and hackers will take a leaked password database and try those e-mail/password combinations on other sites, especially social media, gmail, and others that offer SSO ("log in with Facebook/GMail/Github/etc")
___Tom___ t1_iv020l9 wrote
Reply to I'm Gage Bennett, a Defense Content Developer at Offensive Security Ask me anything about cyber security and defense content creation. by Offsec_Community
I'm also in your sphere and want to bounce a pet-peeve of mine off you. Security awareness trainings. My take: We've been doing them for 30 years or so. If they'd work, they'd have worked by now. What do you think of them?
___Tom___ t1_iv02yu9 wrote
Reply to comment by cathlicjoo in I'm Gage Bennett, a Defense Content Developer at Offensive Security Ask me anything about cyber security and defense content creation. by Offsec_Community
Not OP, but my company is looking, so: The right mindset. Skills can be acquired. But dealing with an intelligent, intentionally acting adversary is fundamentally different from dealing with technical failures, environment events or simple system behaviour. This is also where in the training scenarios I sometimes run most companies fail. They can handle a fire, a DDoS attack, a malware outbreak - but they can't handle a hacker who will pivot and react to whatever you're doing. Having a basic grasp of what it means to be under attack is essential.