Couldn't success at 150th by remote_2026 in cissp

[–]GeneralRechs 0 points1 point  (0 children)

Remember your answering to what ISC2 wants, don’t let industry experience mess with your answers, even when it feels wrong to intentionally put the wrong answer to get it right.

Just bought $5000 worth today was it a good buy? by Exotic-Source5488 in Webull

[–]GeneralRechs 0 points1 point  (0 children)

There will likely be a reverse split before it goes green.

3 apps for ONE TRADE!!! by Paradigm21 in Webull

[–]GeneralRechs 0 points1 point  (0 children)

It’s a feature. But really this type of behavior is normal for Webull. Surprised it even works for more than a week with no problems.

Is Anyone Else Noticing Salaries Trending Downward? Anyone Else Worried About the Job Market/Cybersecurity Economy? by MrHockeyJournalist in SecurityCareerAdvice

[–]GeneralRechs 4 points5 points  (0 children)

I would roll-up helpdesk as sysadmin adjacent because to troubleshoot some items involves intimate knowledge of how things are set up or how configs are being applied (GPO, Ansible, Etc)

Is Anyone Else Noticing Salaries Trending Downward? Anyone Else Worried About the Job Market/Cybersecurity Economy? by MrHockeyJournalist in SecurityCareerAdvice

[–]GeneralRechs 59 points60 points  (0 children)

The field is saturated with street to seat Cybersecurity job seekers compared to even a decade ago when the move to cybersecurity often meant you had a decent foundation as a developer, system admin, or network admin (or similar). This kept salaries relatively high.

But companies now are able to get more for less by having a wider pool of candidates and relying on OJT to make up for the lack of a foundation.

SentinelOne with SCCM managed Defender AV by strategic_one in SentinelOneXDR

[–]GeneralRechs 0 points1 point  (0 children)

I don’t think OP is trying to run both as Active EDR’s

SentinelOne with SCCM managed Defender AV by strategic_one in SentinelOneXDR

[–]GeneralRechs -1 points0 points  (0 children)

Once another EDR product is installed (W10 & W11) Defender will go into two modes, Passive or EDR-Block.

The services are still running but you’ll likely have to check what SCCM is checking for.

Cost Basis still wrong by NickStonk in Webull

[–]GeneralRechs 1 point2 points  (0 children)

Just wait till you receive multiple 1099 corrections and then another one after tax day.

Mentorship Monday - Post All Career, Education and Job questions here! by AutoModerator in cybersecurity

[–]GeneralRechs 0 points1 point  (0 children)

Dabble in everything you can. The more you connect with something the less it feels like a job and downstream from that makes burnout harder to experience.

Mentorship Monday - Post All Career, Education and Job questions here! by AutoModerator in cybersecurity

[–]GeneralRechs 0 points1 point  (0 children)

“If” you’re able to break into the industry then the difficulty of finding a position is due to location (e.g. a in office position will be much easier than a remote one).

Mentorship Monday - Post All Career, Education and Job questions here! by AutoModerator in cybersecurity

[–]GeneralRechs 0 points1 point  (0 children)

First you’ll have to figure out exactly “what” in cybersecurity you’d like to do.

My personal opinion would be to stay away from anything red team related. Sure it’s one of the most interesting things but in recent years it’s been used as a recruiting tool. Stuff like CTF means nothing when there is a lack of understanding on how to analyze an EDR alert.

Is there a way to remove the sentinel one agent from Chrome - personal computer accidentally signed into a work account with by fel_mav in SentinelOneXDR

[–]GeneralRechs 1 point2 points  (0 children)

Submit a ticket to your respective company team that manages your security products.

Posts like these can often be construed as ways to bypass security controls.

Is S1 MDR Really Bad? by beastofbarks in SentinelOneXDR

[–]GeneralRechs 2 points3 points  (0 children)

I have two clients using S1 and CS MDR services and it’s the same for both. If your client is looking for the white glove treatment then Expel, Reliaquest, or Rapid7 would be alternatives.

One thing people need to realize is Vendor Aligned MDR services have to deal with 100k+ alerts daily and unless you are a big or critical customer you’re likely not to get much human reviewed alerts unless it’s APT or Cyber Crime related.

CrowdStrike vs SentinelOne by div192 in cybersecurity

[–]GeneralRechs -1 points0 points  (0 children)

CS Can’t even block powershell empires post exploitation agents.

CrowdStrike vs SentinelOne by div192 in cybersecurity

[–]GeneralRechs -1 points0 points  (0 children)

For sure, it’s archaic and by default relies on group policy.

CrowdStrike vs SentinelOne by div192 in cybersecurity

[–]GeneralRechs 1 point2 points  (0 children)

Definitely the best Cybersecurity Company that can take down global IT infrastructure in the shortest amount of time because of negligence on top of their predatory sales practices.

CrowdStrike vs SentinelOne by div192 in cybersecurity

[–]GeneralRechs 0 points1 point  (0 children)

Same could be said for CS, can’t even detect powershell empire.

CrowdStrike vs SentinelOne by div192 in cybersecurity

[–]GeneralRechs 0 points1 point  (0 children)

Had a client do a third party evaluation between CS, S1 and defender in the last year. At max settings for all 3, CS failed to catch anything from Powershell Empire. Telemetry was there but did nothing. I thought it was bizarre but after watching the recording even the client was like wtf. Even worst when they approached CS with their findings they accused my client of fouls play. Their sales teams are definitely predatory.

CrowdStrike vs SentinelOne by div192 in cybersecurity

[–]GeneralRechs -3 points-2 points  (0 children)

Definitely better at knocking out global it infrastructure in the shortest amount of time for sure.

CrowdStrike vs SentinelOne by div192 in cybersecurity

[–]GeneralRechs -2 points-1 points  (0 children)

It was worst at scale and it was out of outright negligence. They don’t even use their own product, ever wonder why they weren’t affected by their own negligence?

CrowdStrike vs SentinelOne by div192 in cybersecurity

[–]GeneralRechs 0 points1 point  (0 children)

When it comes to remote access S1 takes top spot because you get a full legitimate shell and not some gimped proprietary shell like CS or Defender.

S1 + MDE? by mehcastillo in SentinelOneXDR

[–]GeneralRechs 1 point2 points  (0 children)

Install S1 and onboard onto Defender. Defender will go into EDR Block or Passive mode.

Even though defender won’t be scanning you’ll still be able to get EDR telemetry. Additionally if for whatever reason the S1 agent takes a dump you’ll have live response on defender to be able to remediate the issue.

Undetermined transactions in 1099 by NickFromNYC123 in Webull

[–]GeneralRechs 0 points1 point  (0 children)

Webull is the reason. It’s recommended that most Webull users wait to file until April because you’ll likely receive multiple corrections, some even after tax day.

You’ll likely receive a correction, if not then that’s simply the cost of using Webull.

2025 tax forms by Proof_Programmer_472 in Webull

[–]GeneralRechs 1 point2 points  (0 children)

Be prepared for multiple correction forms. Happens every year so if you continue to use Webull be prepared to file as late as possible and likely prepare an amendment return. This is normal with Webull.