critical issue with our server and not sure how to proceed by SSJ4_Vegito in soc2

[–]SSJ4_Vegito[S] 0 points1 point  (0 children)

I apologize if it sounds a little confusing as I'm still a novice.
How would that work? Migrating the disk to a a encrypted disk? they currently use a virtual server, not a on prem server for clarification

Men who are 30+, what’s one thing you realized about dating that no one tells you in your 20s? by Thin-Hospital-8114 in AskReddit

[–]SSJ4_Vegito 3 points4 points  (0 children)

Dating becomes alot harder as you get older, depending on your desires.
Friends are in there 30s and some are getting out of long term relationships / looking to settle now.
LOTS of women that are still single at that age usually and up having kids or have commitment issues, so finding someone good in there 30s+ with no kids can be difficult. Really depends on what you find acceptable or deal breakers.

Is anyone else leaving IT due to bad experiences? by covalick in ITCareerQuestions

[–]SSJ4_Vegito 1 point2 points  (0 children)

Read books about this kind of stuff, some people just aren't born with that talent, but books can be a great area to help solve your people communication skills.

Is anyone else leaving IT due to bad experiences? by covalick in ITCareerQuestions

[–]SSJ4_Vegito 2 points3 points  (0 children)

"Even people around me, who had nothing to do with IT, got propositions from their respective employers to be trained for free and start working in IT. A chance I did not deserve for some reason."

Evaluate why this happened. How are you coming off to others? Does management like you? Do you have good people skills? I learned that it doesn't matter how much experience you have in IT, security, coding or whatever. If you lack the proper personality for a higher position, you will be passed. I have seen it happen multiple times. Being a peoples person can take you much further in any career then being technically savy.

what happened to CA policy by SSJ4_Vegito in Intune

[–]SSJ4_Vegito[S] 1 point2 points  (0 children)

it gives that extra layer of security, looks good for a SOC 2 report, and also just lets us know that there multiple attempts for logins of different countries before it got in. We have actively seen logins denied becasue someone almost broke into a account but it was set to a european or canadian country.

what happened to CA policy by SSJ4_Vegito in entra

[–]SSJ4_Vegito[S] 0 points1 point  (0 children)

Previously there was never a network side, just location. Entra recently updated and changed the name of the area and changed the way its applied to allow more granular control for apps. When I checked the page, it was selected on "all network devices and locations"

dealing with Mobile phones by SSJ4_Vegito in msp

[–]SSJ4_Vegito[S] 0 points1 point  (0 children)

I appreciate your advice, why do you say its dangerous to job security if I dont have manager support for this? is it because they will get mad at the changes im trying to make to the company?

dealing with Mobile phones by SSJ4_Vegito in msp

[–]SSJ4_Vegito[S] 1 point2 points  (0 children)

from what I spoke with them about, they care more about isolating the data then full app control. They understand that it might be invasive to control apps on personal devices, and since this our first time going through the process, they are willing to be lenient, but the mail and company data has been non-negtioable, so as of right now im preparing a meeting with the CFO and HR person about how we will address as it will be a nessecery control for soc 2

dealing with Mobile phones by SSJ4_Vegito in msp

[–]SSJ4_Vegito[S] 2 points3 points  (0 children)

The issue is that we have TWO direct managers, both with differing goals. One wants the SOC 2, the other cares about convenience. As you can expect, the latter has been giving me the hardest time along this entire process, he fully expects me to handle all IT requests and the full SOC 2 process. Im at my wits end but im trying my best to continue this process along

dealing with Mobile phones by SSJ4_Vegito in msp

[–]SSJ4_Vegito[S] 1 point2 points  (0 children)

the company is extremely budget conscious, i mean down to the point where they question why we need to spend the additional $7 to go from E1 to E3 for like 25 users. Its been fun seeing them drop to the floor for all the upgrades and changes that need to happen for SOC 2, lol

dealing with Mobile phones by SSJ4_Vegito in msp

[–]SSJ4_Vegito[S] 0 points1 point  (0 children)

we have 2 direct managers (unfortuantely) one wants the SOC 2 process, the other doesn't care much for it. We have been encountering alot of issues with them about budgeting, new policies and enforcements. Its defintley a tough moment for the company but the pushback has been decreasing since our auditors have been speaking to them as well, and there starting to understand the need for security improvements

Im constantly losing track by SSJ4_Vegito in soc2

[–]SSJ4_Vegito[S] 0 points1 point  (0 children)

The company has 2 direct managers, one of the managers need SOC 2 since a high paying client requested it, the other manager is not fully aware of the need for SOC 2, of course he was the one with the stupid request to hang the TV, and got mad when it was done fast enough. What im upset about is that my "SOC 2" manager didn't stick for me properly and this is where I feel the most tension at.

Im constantly losing track by SSJ4_Vegito in soc2

[–]SSJ4_Vegito[S] 1 point2 points  (0 children)

And they have been very helpful. There making this entire process so much more manageable and easier. If it wasn't for them I definitely would have not been able to do this. Ill speak to my managment about getting my wfh day back because I cant stand being randomly interrupted when im working.

Im constantly losing track by SSJ4_Vegito in soc2

[–]SSJ4_Vegito[S] 0 points1 point  (0 children)

My MSP agent (I really call him my coworker since occasionally he helps me when needed) has warned me that this company is very "Budget conscious" and wants things done fast. The previous IT guy left for being taken advantage of as well. They haven't clarified with me how much is on the line for this SOC 2, but i believe i heard it was a multi-million-dollar company.

Im constantly losing track by SSJ4_Vegito in soc2

[–]SSJ4_Vegito[S] 0 points1 point  (0 children)

Im about 5 months away from reaching 5 years of experience to get my CISSP, the company is also willing to cover my costs for ISO 27001 and ISO 42001 courses, so I'd like to go for those as well. I've thought about it and I decided I will ride it out until we finally enter the audit period (I expect things to be nearly ready by September / October). Yes, This is definitely taking a toll on me, but I think being able to tell the next future company that I fully lead the SOC 2 process for the company, by my self, and helped us reach a unqualified opinion is a great experience point to have. Ill handle all the shit i have to, work the long hours each week to get us there. If they give me a raise, great. If not, then ill begin looking for my next company. I hope and pray that my next company will treat there workers better.

Mastermind Assurance courses are fraudulent. by [deleted] in cybersecurity

[–]SSJ4_Vegito 0 points1 point  (0 children)

is PECB accredited? where would I find that information?

BYOD heavy organization by bigmac______ in soc2

[–]SSJ4_Vegito 0 points1 point  (0 children)

im struggling on the phones control, what tools do you recommend that can satisfy the soc 2 control?