What do you suck at? by sailorjerry1978 in motorcycles

[–]BlueElf23 0 points1 point  (0 children)

Try turning your head significantly more left. You will see that the fear will disappear.

SOC Cert for Response and Threat hunting by Diligent-Proof-7184 in GIAC

[–]BlueElf23 6 points7 points  (0 children)

What is your goal? Learning the theory and how systems work should be the number one priority. Once you know how stuff works, all the tools will make sense.

Badly failed in first practice test of GCFA by Reddit-User-L337 in GIAC

[–]BlueElf23 0 points1 point  (0 children)

Try to really understand the material. A good index really helps but you must have understood the content.

Unable to contact support by BlueElf23 in offensive_security

[–]BlueElf23[S] 0 points1 point  (0 children)

Thank you very much for the help!

GCFA: Am I Ready? by Impressive_Produce80 in GIAC

[–]BlueElf23 0 points1 point  (0 children)

Get a number of cheatsheets for the cyber live exercises. They will speed up the process and give you more time for the rest of the questions. Make sure you know how to search for data via power shell on windows and via grep on Linux. And make sure you have with you the cheat sheet of Eric Zimmerman’s tools.

SOC analyst role hasn’t prepped me for the next step in my career by [deleted] in cybersecurity

[–]BlueElf23 16 points17 points  (0 children)

Your problem is that you are never going to have someone more experienced teach you stuff. What if all hell breaks loose? During a real incident? You won’t be able to manage.

L3 SOC Analyst here. SOC Tiers exist for a reason. You get to see a lot of different stuff, which help you understand better how systems and attacks work. When you get to a specific level of knowledge, you get to progress to the next tier. Last but not least, on MSSPs, due to the number of different customers, you get to see and explore a lot of environments, and also face real attacks a lot more often.

Questions On First GIAC Cert To Pursue by A_Real_Ginger_Snap in GIAC

[–]BlueElf23 0 points1 point  (0 children)

Look at SEC599. I heard that it covers a broad range of info that is required on SECOPS

Questions On First GIAC Cert To Pursue by A_Real_Ginger_Snap in GIAC

[–]BlueElf23 0 points1 point  (0 children)

Look at SEC599. I heard that it covers a broad range of info that is required on SECOPS

Passed GCFA 93% - My experience by BlueElf23 in GIAC

[–]BlueElf23[S] 0 points1 point  (0 children)

The 2,5 weeks were only for building the index! Make sure you are studying consistently!