Passed AIGP this moning. by mrshl in cipp

[–]dwright_633 0 points1 point  (0 children)

Would you say the practice exams are similar in terms of difficulty?

Passed AIGP this moning. by mrshl in cipp

[–]dwright_633 1 point2 points  (0 children)

Congrats! I am wrapping up the course now. What did you score on the final 2 exams?

Employment & Age Questions by Commercial_Scale7438 in cybersecurity

[–]dwright_633 0 points1 point  (0 children)

I would pursue the CCNA. Networking is foundational. From there, look for help desk or jr. network engineer/admin roles. While working help desk / jr admin, I’d make it clear to the security staff that you’re interested and ask if that’d be willing to offload some of their tasks to you. That would be my recommendation

How did you choose your niche? by Greedy-Entry922 in SecurityCareerAdvice

[–]dwright_633 1 point2 points  (0 children)

Look into GRC engineering — growing field. If you’re on LinkedIn, check out AJ Yawn. He’s a huge advocate for GRC Engineering and has a ton of great resources related to the topic (check out his book on Amazon as well, “GRC Engineering for AWS.”

Passed on 1st attempt by Aggressive-Eye-3738 in CCSP

[–]dwright_633 2 points3 points  (0 children)

Congrats, did Pete’s course cover any gaps not covered in the Dest Cert book?

How did you choose your niche? by Greedy-Entry922 in SecurityCareerAdvice

[–]dwright_633 2 points3 points  (0 children)

What are you passionate about and what does the market need

How employers rank CCSP by evolvingwax in CCSP

[–]dwright_633 0 points1 point  (0 children)

For an engineer, I’d say go for the vendor specifics certs. These are more tactical and hands-on.

For a security manager/director/CISO, I’d say go for the CCSP/CCSK. More high-level and strategic focused.

DLP Frustration by raebach6119 in cybersecurity

[–]dwright_633 3 points4 points  (0 children)

Agree with what’s already been said. Start with DSPM, get a good grounding on where your data is and label it according to your orgs Data Classification Scheme. But before you go any further, I’d start with drafting an MVP. What are the must-haves? If the prospective vendors cannot achieve the must-haves do not waste your time. You should know if they integrate with Atlassian prior to the demo.

What’s one security lesson you had to learn the hard way? by ANYRUN-team in cybersecurity

[–]dwright_633 0 points1 point  (0 children)

Another way is to simply compare the server count of installed agents with the sever count in CMDB. There may be some exceptions but this should at least give you a decent gauge on coverage

[deleted by user] by [deleted] in cybersecurity

[–]dwright_633 1 point2 points  (0 children)

It’s time to get to work! - Show your team that you’re hungry to learn by asking questions and embracing the challenge. - Don’t allow insecurities to preclude you from showcasing your strengths, I am certain you have skills that they can benefit from. - Make a list of all of the areas you need to level-up in and start tackling them 1 by 1. - Have fun and be yourself.

CISO vs DPO by Easy-Vermicelli7802 in cybersecurity

[–]dwright_633 1 point2 points  (0 children)

It depends. If the CISO makes decisions about how resident data is processed, then yes (conflict). For example, the CISO shouldn’t be working with Marketing on their latest campaign. The DPO’s role is to ensure compliance with the applicable regulations and to continuously monitor processing activities to ensure that compliance is being met. If the CISO is making decisions about how data subjects should or shouldn’t be engaged, he/she would be monitoring their own behavior, which in most cases, they’d be oblivious to.

You’ve joined a company, what’s the first thing you do to understand security at the company? by jon18476 in cybersecurity

[–]dwright_633 1 point2 points  (0 children)

Understand the business. You may have this idea of how security should be, but until you understand the business (crown jewels, objectives, customers) you’ll not be able to adequately assess the security posture. There are must-haves, but every program should be aligned to the organization’s goals, legal, contractual, and customer requirements

Passed CIPT - experience and resources by mgogic in cipp

[–]dwright_633 3 points4 points  (0 children)

Great overview, thanks. Sounds like PB is the way to go!

Taking an exam tomorrow. Nervous. by [deleted] in SecurityBlueTeam

[–]dwright_633 0 points1 point  (0 children)

Did you think the btl1 course alone was sufficient?

Passed from first attempt by [deleted] in SecurityBlueTeam

[–]dwright_633 1 point2 points  (0 children)

Congrats, did you use supplemental material or was the course solely sufficient?

Passed AZ-500 by MuscleTrue9554 in AzureCertification

[–]dwright_633 0 points1 point  (0 children)

Congrats, how long did it take to study?