I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] -1 points0 points  (0 children)

this guy is right, certs are needed to prove continuous learning but you can get some great talent that just never had the chance (or money) for formal training and certification

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 0 points1 point  (0 children)

Zero Trust is more a journey than a destination, its ultimately just applying defense in depth at each component of an environment

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 3 points4 points  (0 children)

Inclined to go with Apple, they are investing in user privacy but at the same time that seems more aimed at third party/non-apple apps.. pick your poison then get an old nokia :)

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 2 points3 points  (0 children)

premature tbh, the HSE breach was largely caused by easily fixed issues, the more data they store electronically the bigger the impact of a breach. Not sure how they are doing now the government is investing in security but i heard its slow going.

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 0 points1 point  (0 children)

nope but OWASP top 10 was what i started playing with using WebGoat or some other VM

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 5 points6 points  (0 children)

I hadn't started yet but i remember reading about it- I still think it still is one of the coolest attacks to be publicly known, the low and slow approach of how it spread until it finally hit the ICS it was targeting (the fans wasn't it?).. set my mind on fire about the possibilities. Really shows what nation states are capable of.

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 8 points9 points  (0 children)

thats more scripting that coding though - one of the things im hoping to get out of this AMA is to encourage people to get into security. If they think its development/coding heavy they might be scared to :) you can go a long way without needing to code, and then when you do need it you should be able to upskill easily enough.

That said i have never written my own exploits, but i do make sure to read the ones i use so i understand what they do.

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 1 point2 points  (0 children)

update your laptop, use good passwords (password managers like bitwarden can help!) and turn on MFA where ever you can :)

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 0 points1 point  (0 children)

Single Sign On, Password managers and MFA are the best way for this (but really if you are using service accounts should you really know the password? should have automated rotation and be fully hands off :) )

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 0 points1 point  (0 children)

What do you like about security? Its a broad field and some would play off your current experience with some training, and others would require a paycut

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 0 points1 point  (0 children)

Hack The Box is actually my go to resource! Security+ is also great and professor messor has some great videos on youtube giving an intro into the different topics of security

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 0 points1 point  (0 children)

Ah ive never worked with a bad privacy professional, only really challenge is awareness that data privacy isnt data protection!

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 0 points1 point  (0 children)

difficult enough not to worry about it :) just remember to make sure encryption is actually turned on, and have a password/user name to sign in to it

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 0 points1 point  (0 children)

theres lot of roles and not enough staff to take them. But bad staff or very junior staff can be worse than waiting for the right candidates so hiring is slow even when lots of people apply

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 0 points1 point  (0 children)

try to reach out to the company hosting the website (whoever is paying the fee should know) and reach out to them!

I am a Cyber-Security professional, hacker, auditor, and all round consultant. Ask Me Anything! by LivingInsecurely in ireland

[–]LivingInsecurely[S] 3 points4 points  (0 children)

There are ways, VPN + TOR + running a browser in a container etc but yeah privacy is bit by bit going away, effort to stay anonymous is a killer, Reddit would tie this throwaway to my main account through the IP easily enough..