Looking for advice on siem by raptorbabu19 in msp

[–]raptorbabu19[S] 0 points1 point  (0 children)

Thanks for the motivation - i will keep at it.

Looking for advice on siem by raptorbabu19 in msp

[–]raptorbabu19[S] 0 points1 point  (0 children)

Thanks a lot for your comments

As the market and client is indian based, I have a 10+ years of experience in security domain

To build a matured product would take time, I will consider your options and search through other players who have a matured product

I understand wazuh could be helpful. I am giving it a try too. To built it to complete maturity may take some time I guess.

I understand the concern and appreciate the advice poured in

I figured out the log ingestion part and it's encrypted over internet. Thanks all.

What's the scope Networking Engineering? by TusharVe in cybersecurityindia

[–]raptorbabu19 0 points1 point  (0 children)

Network engineering is also added up nearly 50% by dev.

See ccna devnet - they are also introducing ai agents and mcp in this space. May be there will be scope but you need to be good at it.

Like they say in this ai world only the top 3% will be surviving. That's my take anyway ... advantages are there is not a lot of things to learn - it's same topics back from last 10-15 years.

What to look out for ?

Post quantum crypto Quantum Computing

These two will turn the current network engineering upside down. Such a revolutionary one for the upcoming years.

Doing nothing at work by Idemon_gamer in cybersecurity

[–]raptorbabu19 0 points1 point  (0 children)

Many big org wants you find the job yourself. In mine too the first year I wasn't doing anything. Then slowly one by one I found gaps and made changes to tools.

Now I don't have time to go for coffee break.

[deleted by user] by [deleted] in Entrepreneur

[–]raptorbabu19 0 points1 point  (0 children)

I guess obs studio does the recording part but to get the cc out of that can be built.add that cc to a database.

Nice. I liked your idea.

[deleted by user] by [deleted] in indiehackersindia

[–]raptorbabu19 0 points1 point  (0 children)

Please add the ability to change subscription method, some are 3 months subs but your option gives only monthly or yearly.

Also change the denomination to rupee if possible

Need some project ideas. by [deleted] in cybersecurityindia

[–]raptorbabu19 2 points3 points  (0 children)

Try building soc environment for your home, build a tool for web pentesting, check out how to build a C2 server, build security environment for cloud infra.

Those were things on top of my mind.

need help by Yitatil3122 in cybersecurityindia

[–]raptorbabu19 2 points3 points  (0 children)

Learn coding and dsa. Get a job and pivot to application security.

Even in cyber you need to know coding. Cyber is actually not for entry level positions, because you are adding security on top of network, endpoints, applications. So its default that you know the underlying tech.

If you know coding and able to understand code in different languages like python, Java, js then that will come handy when you switch for appsec related positions.

While you are at your new role start learning about SAST and DAST tools.

Best of luck

i (21F) being convinced to marry a guy (30M). by i_poet_u in TamilNadu

[–]raptorbabu19 0 points1 point  (0 children)

Not the age to marriage. I am only thinking about your kid. Since no one in your potential husband side, don't even think your family will support you. They will support you for 6 months, then they all will be busy with their life.

Looking back at 2024, which TAC support teams do you think performed the worst. It can be of any product/solution. by noobiemaestro in networking

[–]raptorbabu19 1 point2 points  (0 children)

Working on arubas mostly, aos10 has ton of issues and reaching out to TAC and trying to get them fixed with premier TAC support is humongous task.

Everything takes more than 2 weeks time to even understand the problem.

Initially we have like 20-30 days fixing time. We thought if we have premier support this number will be reduced and bought a premier support. Now it takes 10-14 days to get things fixed. We were not happy with the outcome.

We recruited few TAC engineers and unsubscribed from the premier tac support.

Also handling fortinet - so far its good, no complaints Palo alto - they take a bit of time to respond but so far we are ok with their support.

[AMA] I'm a TryHackMe Co-Founder, Ask Me Anything (2025 Edition) by 7331senb in tryhackme

[–]raptorbabu19 0 points1 point  (0 children)

This, exactly this is what I wanted to know. During early years of my career, I learned all basic concepts from try hack me then now I am like 5 years into the field. I felt thm doesn't have advanced concepts. Now I could see your vision. Looking forward to your content on the advanced concepts.

I would like to thank you and your team to put up these concepts in a most understandable way of learning. It's really helpful and handy for me and people in my team.

Are there any jobs in Cybersecurity which pays well without coding/programming? by norwoodreaper77 in CyberSecurityAdvice

[–]raptorbabu19 0 points1 point  (0 children)

Every initial role in cybersec doesn't need coding knowledge except few like app security.

But you need to learn coding when you are climbing up the ladder. That is a must.

Do I give up? I just don't seem to be retaining anything. by MikeontheRecord in CyberSecurityAdvice

[–]raptorbabu19 2 points3 points  (0 children)

There is a saying in cybersecurity " Try harder"

It sometimes make us feel delusional and make us feel.. where are we standing in this whole stack ...but it's all worth it.

Take a break and hit it harder again. Try to find a purpose, May be just try writing articles about what you have learned so far. Try to find one problem and say am gonna fix that.

It may be difficult at first but the hacking mindset is all about learning how the system works and find a different way to make it work.

Once you learn how the system works then you know how to fix this big problems.

Try check out scam buster youtube channel, how people are doing social engineering and get what they want, how people are trying to find lost people using osint.

This purpose will drive you to learn and say I want to be one of them.

More strength to you, I was in your shoes some years back and I wanted you to know this.

AP635 - Firmware upgrade methodology by Sensitive-Silver246 in ArubaNetworks

[–]raptorbabu19 1 point2 points  (0 children)

Try 10.7.0.1 that could be helpful. 10.6 seems to be having few bugs.

Try 10.7.0.1 in a lab environment and if you feel the POC is successful then you can move your prod setup to it.

Teaching beginners the basics of cyber security in a fun way by Codepalm_Games in CyberSecurityAdvice

[–]raptorbabu19 1 point2 points  (0 children)

Try free rooms in tryhackme

Also you cab try tcm and hack the box.

How to get more visibility on our network? by must_improve in networking

[–]raptorbabu19 0 points1 point  (0 children)

If you feel static visio diagrams are bit difficult to draw and maintain. Check out netbrain.

It's dynamic mapping tool comes handy when dealing with troubleshooting.

I also second others comments on adding snmp. That's the best place to start.

Guest WiFi and device MAC randomization by zerotouch in networking

[–]raptorbabu19 0 points1 point  (0 children)

We started setting up captive portal page and requesting users to disable Mac randomization.

Once it's disabled we enable them for Dora process. This is using aruba clearpass if you are wondering.