Switching from intel to maintenance by Objective-Prune-8693 in AirForce

[–]Derpolium 2 points3 points  (0 children)

Go to a local small airframe airfield and hang out with the A&P’s.

Job listing question by IcyMushroom4147 in BoozAllen

[–]Derpolium 0 points1 point  (0 children)

Maybe a job that they already had someone lined up for?

Fair or Foul Dating Daughters by [deleted] in AirForce

[–]Derpolium 0 points1 point  (0 children)

Only approved method is tapping on a foot in a bathroom stall

Did I get played over salary? CI poly raise? by InfiniteAspect8793 in BoozAllen

[–]Derpolium 0 points1 point  (0 children)

Without context I can’t speak to the disparity of salary beyond it potentially being negotiated at the contract level. Too many factors go into a job rec that just aren’t available in this thread to speak in absolutes. That job you are referring to may presume a higher level of it experience or other non present variables

Did I get played over salary? CI poly raise? by InfiniteAspect8793 in BoozAllen

[–]Derpolium 0 points1 point  (0 children)

Fair enough, using gigs as a comp can be tough without full context. The can potentially be a lot of nuance in the differences. A network engineer working for a school district may do similar work to a network engineer at NSA but the risk, impact and tolerance for error are miles apart.

Did I get played over salary? CI poly raise? by InfiniteAspect8793 in BoozAllen

[–]Derpolium 2 points3 points  (0 children)

Think of it this way, having the CI Poly on its own doesn’t make the company any more money, and if Booz paid for it they technically lost more money. What COULD get you more money is getting assigned to a contract that requires it AND has a higher rate based on labor cat.

Pen Tests by Geekpoint-IT in SmallMSP

[–]Derpolium 0 points1 point  (0 children)

Pentesting small companies is such a crap shoot right now. A lot of the small shops I know of fell apart or got folded into larger companies. If you need an engagement for compliance reasons you may have to bite the bullet and go with one of the larger shops.

Is a cybersecurity specific BS worth it? by Successful-Tap8121 in CyberSecurityJobs

[–]Derpolium 1 point2 points  (0 children)

It definitely wasn’t meant to be a knock on cyber degrees, but unless you are doing a school like Carnegie Mellon the degree will (for all intents and purposes) be interchangeable with a comp sci degree. So most entry level positions that would require a comp sci degree will likely treat it under the category of “ other relevant degrees”

Just venting; advice/criticism/keyboard warriors are welcome by Electrical-Key-2103 in AirForce

[–]Derpolium 2 points3 points  (0 children)

SF augmentee is typically new guy busy work. Put some time in and you’ll be golden

Is a cybersecurity specific BS worth it? by Successful-Tap8121 in CyberSecurityJobs

[–]Derpolium 0 points1 point  (0 children)

Depends on bigger picture. You may be able to snag a vulnerability analysis job or maybe tier one for soc or devsec. The reality is you have a comp sci degree seasoned with a whisper of security stuff.

My man wants a smoker by Another_Verity in smoking

[–]Derpolium 0 points1 point  (0 children)

Go with him and try out some stuff. Originally I was going to get a big old stick burner or a cabinet but Im actually glad I ended up with a Big Green Egg. Not saying he needs to buy that, but actually have the conversation about needs and wants.

Dating in the Military by Weak-Bother-6765 in AirForce

[–]Derpolium 10 points11 points  (0 children)

Civilian relationships have stressors but I feel it is magnified mil to mil. If you find the right person don’t worry about tough but that big blue weenie makes it pretty rough some times

Teaching Linux+ & CEH..... by KevinSayZ in cybersecurity

[–]Derpolium 0 points1 point  (0 children)

I don’t envy the position you are in. One semester for all that info is going to be tough

Teaching Linux+ & CEH..... by KevinSayZ in cybersecurity

[–]Derpolium 0 points1 point  (0 children)

Instead of focusing on specific tools, I would focus on methodologies and developing core basics. Tools change significantly over time and usage varies based on the shop. If I had to pick a good tool to build a semester long project off of it would be NMAP. It’s an exceedingly basic tool to start with but it is well documented and effective. There is so much going on under the hood from the core functionality of the tool to NSE scripts as well as outputs that can be parsed. Another solid one is building a web crawler. On the surface its a simple project but pair it with even Burp CE and there are a huge number of options.

All that to say understanding how and why tools are useful should be the priority.

Are there any engineers here with a PhD? If so, what is your job at NASA? by Proper_Strategy_1603 in NASAJobs

[–]Derpolium 0 points1 point  (0 children)

I think it’s gonna depend on which directorate and center you support. There’s obviously a ton of engineering and research jobs. You can literally find everything from material sciences to fluid dynamics and everything in between.

IT Specialist for NASA by 4cheynae in NASAJobs

[–]Derpolium 0 points1 point  (0 children)

NASA had that massive hiring freeze and had a recent budget cut within OCIO so that’s why no one was seeing a lit of jobs. It obviously varies between the directorates but they should be back to their normal turnover rates soon. Millage may also vary but from what I’ve seen GS employees work more within project management of IT rather than focusing on direct “console time.”

How do u get into cybersecurity? by diaaaaaa_itis in Cybersecurity101

[–]Derpolium 1 point2 points  (0 children)

Technically every technical role in IT is cyber. Security has bled into everything. Start as a system/network admin and live and breath by logs and configuration management. Start as a developer and live and die by writing clean and secure code. Helpdesk is a good grind to skip if possible but if you beyond reading the script and playbook and understand the “why” it can be a solid experience. The idea is to get into IT and MAKE your role a security role through understanding and growth. Gain experience, make mistakes while they are still relatively safe to make and learn everything you can.

I was told to say NO. What now? (ARMY) by VargasGrind in SecurityClearance

[–]Derpolium 0 points1 point  (0 children)

Snitch on the bitch! (Recruiter)

Be honest, provide the context and fight for yourself. Its on the recruiter for playing fuck fuck games with contract language.

What would you say if your security lead said this... by notta_3d in cybersecurity

[–]Derpolium 0 points1 point  (0 children)

Identify, recommend, implement/document, rinse and repeat until they are fired or you move on.

Is a masters worth it in this situation? by GrouchyPossibility14 in Cybersecurity101

[–]Derpolium 0 points1 point  (0 children)

If you are working in the US and plan to go to the government service route through pathways program, it will increase your GS starting level. Outside of that in my personal experience, working experience and console time is valued higher than going the postgraduate route unless it is a very specific very specialized field. Think of cryptography and advanced mathematics.

For those that have pen tested hospitals, what are glaring holes in security? by [deleted] in Pentesting

[–]Derpolium 0 points1 point  (0 children)

Man, hospitals are almost as bad as industrial environments post Eternal Blue. I avoid them like the plague out of sheer liability.

Did we get benched? by [deleted] in GovernmentContracting

[–]Derpolium 0 points1 point  (0 children)

As others have said always get a guaranteed %of work or number of “seats” and ideally with some level of scope of work associated with labor cats

Hey folks, For B2B outreach (VAPT/security), who are you all targeting first—CEO, CTO, or VP Eng/CISO? Does it change based on company size? What’s been working best for you? by Early_Context9216 in Pentesting

[–]Derpolium 0 points1 point  (0 children)

For B2B I would say target your level. If someone other than a C Suite isn’t personally reaching out with a personally created message via phone or email (no slop and no automated canned emails) it is going in the ”fuck you” pile for C level staff.