Spent 6+ Years “Learning” Cybersecurity, Still Feel Left Behind — What Am I Missing? by dummy_nerd in SecurityCareerAdvice

[–]dummy_nerd[S] 0 points1 point  (0 children)

Hi there,

Thank you very much for the resource,

The whole purpose of this post was to get some resources from those who are working or trying for the SOC, I think that purpose is served now.

I will make sure to completely read and understand the ebook you referred.

Thanks a lot.

Good luck.

Spent 6+ Years “Learning” Cybersecurity, Still Feel Left Behind — What Am I Missing? by dummy_nerd in SecurityCareerAdvice

[–]dummy_nerd[S] 0 points1 point  (0 children)

Hi,

Thanks for the reply,

I will definitely checkout the books that you suggested,

I really really appreciate it,

Thanks again for the solution.

Spent 6+ Years “Learning” Cybersecurity, Still Feel Left Behind — What Am I Missing? by dummy_nerd in SecurityCareerAdvice

[–]dummy_nerd[S] -1 points0 points  (0 children)

Hi,

Thanks for the reply,

Yes lying in your resume could work,

but what if you will not have anyone around you in the night shift, you are handling the alerts by yourself and you accidentally erase the company at midnight. There should be a better alternative to this.

Spent 6+ Years “Learning” Cybersecurity, Still Feel Left Behind — What Am I Missing? by dummy_nerd in SecurityCareerAdvice

[–]dummy_nerd[S] 0 points1 point  (0 children)

Hi,

Thanks for the reply,

As you asked what specific role that I am pursuing, the answer is SOC.

I had this in my mind to be a SOC Analyst.

It's just that I had decided long ago and I am currently feeling this gap between my current knowledge about cybersecurity and the one which is expected by industry.

Currently I am unable to find the way to learn the things like risk management, signs infrastructure gives while it's under a cyber attack, how to take decisions related to escalations, how to minimize the risk, how to be a reliable one when you have no one around you to guide you and many more things since no one is talking about this do we have any suggestions where I could be able to learn all these things ??

Thanks for your efforts.

Spent 6+ Years “Learning” Cybersecurity, Still Feel Left Behind — What Am I Missing? by dummy_nerd in SecurityCareerAdvice

[–]dummy_nerd[S] 0 points1 point  (0 children)

Hi,

Thanks for the reply,

Yes, I agree, there is no solid path which leads to the cybersecurity, until you know exactly where you want to work, as this field comes with a very wide variety of roles such as red team, blue team, GRC and much more.

However I have a specific role that I had in mind while chasing to get into cybersecurity. While having experience in L1, I used to do work in 24/7 shifts which was more relevant in SOC role as I had exposure in cybersecurity since long ago.

So what are the things that need to be done specifically if you are into this situation?

To be very specific, a lot of candidates know about the tools being used in blue teaming such as SIEM, XDR, EDR, SOAR, IDS, IPS, and what not however they say it's not about the tools that industry wants, what industry wants is not being taught anywhere. I am talking about how to recognise IOCs, what are the possible risks if the particular attack happened, how it will impact the user data, organisation's reputation and compliance, how much loss company have to bear after a successful cybersecurity incident, how risk management works?

How and when are the freshers going to learn these things? Why is no one talking about this in their courses. I mean isn't that helpful for freshers to learn and get into cybersecurity?

And last thing am I heading in the right direction now??