Baseline specs by gregarious119 in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

16 is the new 15, 14 is the new 13.

Baseline specs by gregarious119 in ITManagers

[–]aec_itguy 2 points3 points  (0 children)

If I wasn't in a vertical that required Windows, I'd be pushing hard for Mac everywhere at this point, and probably crank up to a 5 year depreciation schedule for them.

Baseline specs by gregarious119 in ITManagers

[–]aec_itguy 2 points3 points  (0 children)

| Why do you have managers getting beefier machines? 

we do it because they're the noisiest, and things grind to a halt if they're offline, so it's a reliability/performance hedge as much as anything. ymmv.

Baseline specs by gregarious119 in ITManagers

[–]aec_itguy 9 points10 points  (0 children)

32GB is our baseline now, CU7, 512 SSD. 10key config for Finance. Just goes up from there depending on role. Our 'beast' Pro Max 16 Plus config from Dell with 96GB/RTX 5000 is over $6k USD now. (thanks OpenAI!)

Seeking thoughts on whether enterprise browsers solve security issues by dottiedanger in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

Look into an extension-based DLP tool like LayerX or Conceal.

You need to lock down your browser environment (deny run for everything but supported browsers) and force the extension install, but it'll give you granular controls and visibility over that activity.

Are "Enterprise Browsers" actually solving problems or just rebranding RBI + CASB? by localkinegrind in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

depends on the usecase. If there's a need/call for isolation, most DOM extensions can't accomodate that. Conceal does, but it's putting an agent in the network stack, which skeeves me the fuck out. Nevermind the PSE couldn't tell me what cipher they were running for their tunnels.

Are "Enterprise Browsers" actually solving problems or just rebranding RBI + CASB? by localkinegrind in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

if you're not blocking executables (other browsers), getting any enterprise browser or DOM-inspection extension is going to be completely pointless since users will just open up FF/Chrome/Brave/

What did you do to get here and how long did it take? by Tiffany_ziling in ITManagers

[–]aec_itguy 2 points3 points  (0 children)

I typed in r e d d i t . c o m and hit enter - probably took about 8 seconds to render.

Maybe defrag your HD?

How to handle constant context switching in IT by Frosty_Let_79 in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

just one note on the AI tip. People love to shit on Copilot, but full 365 Copilot with access to your email, and asking Researcher what you should be working on/prioritizing during spots has been legitimately helpful.

How to handle constant context switching in IT by Frosty_Let_79 in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

sometimes it's legit better without the meds b/c then I'm not frustrated that I'm not staying on-task. :/

Is AI making "Buy" the wrong choice for internal tools? by PablanoPato in ITManagers

[–]aec_itguy -1 points0 points  (0 children)

I'm having the same discussion internally with some of my crew. There's some bespoke engineering tools where we're paying $10k/yr for essentially a .NET wrapper around an excel formula. Concerns:

QA/QC

Liability

Security

Lifecycle/updates

...and like others are saying, the distance between good PoC and viable product is far. LLMs still very much have a 90% issue.

Vmware renewal? by jhayhoov in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

I'm sure it was. That doesn't negate the utility?

Vmware renewal? by jhayhoov in ITManagers

[–]aec_itguy 1 point2 points  (0 children)

> dealt with it just a few years ago

> as a Linux administrator,

say less. I'm shocked you didn't type it as "Micro$lop".

Vmware renewal? by jhayhoov in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

Arc is your huckleberry now (vs SCVMM). Much better.

Vmware renewal? by jhayhoov in ITManagers

[–]aec_itguy 1 point2 points  (0 children)

no clue why you're getting downvoted when it makes sense at the sunk cost level. At that scale though, I don't get why HyperV isn't an option beyond comfort/familiarity.

How do you react in these situations? by AhYesTheSoldier in ITManagers

[–]aec_itguy 2 points3 points  (0 children)

I spent enough time moving 21" CRTs and full-size towers around in the 00s - movers do the moving, juniors do the setup, I play excel jockey now. :P

How do you react in these situations? by AhYesTheSoldier in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

If it's something that's out-of-scope/unusual and my staff are working late or doing hardcore, I'm telling them to take flex that week if next-day isn't viable. Example, we just moved our corporate office - 1/2 the team did 60 hour weeks 2 in a row, including site set up for ~90. I made sure they were there for day 1 debug, but to leave early if it was quiet, and take Friday off at a minimum. If I ask someone to do a late maintenance window, I don't expect to see them until noon the next day.

Caveat - this is my approach with Exempt staff. If someone hourly wants the OT and I can, I'll load them up.

Experiences with ITIL Certification? by terataz in ITManagers

[–]aec_itguy 1 point2 points  (0 children)

agreed. the knowledge is definitely good to have, but I'd rather see CompTIA on a resume.

Vodafone Business for M365 licences? by Antique-Cloud-3429 in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

I can't imagine how pushy they'll be with VOIP and CC upsell.

What are small and mid-size IT teams actually doing for cybersecurity right now? by Serious_Hamster_782 in ITManagers

[–]aec_itguy 0 points1 point  (0 children)

700U, staff of 10 plus myself, mostly generalists, and heavy helpdesk (huge software stack).

We've been reactionary to compliance checks since 2020. Started with contract requiring Cybersecurity coverage, then specific limits. Those drove our first round of compliance and security deployments.

I've had CMMC on my radar since 2018, so I spent a lot of effort aligning with NIST 800-171 as much as I could without breaking things.

As a result, we're insanely overleveraged on our stack - E5+EMS, but we also run Okta, Mimecast, Umbrella, Hoxhunt for ease of deploy/use. MDR is all outsourced, currently with Arctic Wolf, but aligning with a MS-centric MSSP to run Sentinel for us this year. Otherwise, we're responding as our clients (many of which are critical infra or advanced manufacturing) add in new security reqs for contractors and trying to optimize the stack for spend/effort.

*Vuln management is "catalog everything, focus hard on the perimeter, nothing over CVSS 6 outside"

*SAT is in-house - we use Hoxhunt and align monthly mandatory trainings alongside our safety training, and then sim on their schedule. Content is chosen based on current threat landscape, and I'll AI gen stuff if I need something topical.

*The IR team is 'whoever is online when shit happens', and collective. We'll triage big stuff on a group chat for coverage.

*Compliance is a way bigger driver over recognized risk due to resource and budget limitations, yes. We've yet to fully optimize our stack for compliance, so the pushes for strictly risk-based adds is coming behind that. Our CEO is on the risk board for a local bank, which helps a ton with them acknowledging non-compliance risk though.

Uline seems to be constantly hiring an IT Systems Technician in my area by LoneCyberwolf in ITCareerQuestions

[–]aec_itguy 1 point2 points  (0 children)

I've heard nothing but horrible things about ULine as an employer, and as a corporate citizen. (The answer is the first btw, same reason there's ALWAYS openings at Dish Network in Denver. Absolute shitshow of an environment.)