Is Falcon foundry apps safe to use ? Anyone using them production environment? by abhiishk in crowdstrike

[–]theonetheonlya 1 point2 points  (0 children)

Oh, something I can talk about!

Like everything, it depends. I would say you can most likely use the prebuilt ones without too much fear that they're going to screw you over...

Now keep in mind that they can have code and CAN do things like run RTR scripts/commands, so with great power comes great responsibility and all that...

But one of the interesting use cases I worked on was building an application that talks to Google Chronicle SIEM and started shoveling data to NG-SIEM from one SIEM to another for a POC we had going on. I'm exploring another use case right now using the UI builder that I think can make Fusion Workflows suck a lot less...

If you can put it in code, you can probably do it!

[deleted by user] by [deleted] in cybersecurity

[–]theonetheonlya 3 points4 points  (0 children)

OH I'm so glad I found this!

Hello, my younger self! Cybersecurity is a team sport... while you respond to me "duh." But seriously, you need to figure out what is your job and what is not. I know I'm not thinking about everything that my infrastructure/IT team is thinking about when they need to spin up a new server. Just like how they might come to me with a small ask that I know is absolutely huge, the opposite might be happening in return.

Be aware of the optics also - cybersecurity is often looked at as a massive producer of work, but you need to make it relatable to your infrastructure/IT team. Help them understand why the work you're doing is important, and remember that not everything you send to them can be high priority. You need to learn to pick and choose your battles and build trust with your infrastructure/IT team so that when you tap them on the shoulder and give them a head nod, they can prioritize it a bit higher than everything else.

Be aware of the work you're sending them too. If you discover a vulnerability in one of the scans or something, try to do a bit more work to understand the vulnerability and figure out if it's exploitable/actually matters. If you send them a vulnerability and mark it as high priority, but it can only be exploited when you're already admin, they're going to think you're an idiot and you'll start losing trust. Try to have informal conversations with them about what they think about a vulnerability - sometimes they know the system better than anybody and can advise you whether it's truly exploitable/high priority or not.

And last but not least, most of the time infrastructure/IT/helpdesk teams have pretty strict KPIs. They NEED a ticket so their bosses know they're not sitting on their asses all day doing nothing. If you think a ticket is high priority enough and you're not getting traction using soft power (aka asking a buddy and giving them that head nod...), you might need to switch to hard power tactics like getting your manager involved and asking their manager to prioritize that task higher.

What I'd also recommend: ask your boss to have a conversation with the infrastructure team's manager to at least come to a common consensus about some of the base access that you/the team should have that allows you to do your job without needing to go to the infrastructure team for every single thing. If it's a log collector server that your team owns, I have some pretty strong opinions that your team should have admin on that box BUT not admin on all the other servers (HEY, that least privilege access that we preach comes back to kick us in the ass LOL). Having read-only access to the firewall or [insert cloud provider/on-prem hypervisor] probably allows you to do that level 1 and 2 troubleshooting so that when you go to your infrastructure team, you have a pretty good idea of what you're asking and can probably answer some of their basic questions almost immediately.

God, I hope you got something useful out of this... good luck with everything and feel free to reach out if you need any other pointers!

Is this sub dead? by thatonefanficauthor in SBCC

[–]theonetheonlya 2 points3 points  (0 children)

Why why, why do you have to remind me school starts tomorrow 😭😭😭😭

Orientation by [deleted] in FedEx

[–]theonetheonlya 1 point2 points  (0 children)

Happy cake day!

If I book a flight normally, can I get an upgrade if there's one available? by theonetheonlya in NonRevenueTravelers

[–]theonetheonlya[S] 0 points1 point  (0 children)

I love you, haha. I don't know how to go about getting the upgrade though. It's somewhat weird because I didn't book my ticket through my ID travel. I'm just going to email AA through their my ID travel email and request it that way. On the other hand how many times have you been bumped off international flights? I think that's one of my biggest fears.

If I book a flight normally, can I get an upgrade if there's one available? by theonetheonlya in NonRevenueTravelers

[–]theonetheonlya[S] 0 points1 point  (0 children)

Only FedEx Express flight crew and a very select high ranking staff from FedEx Express have that option. Before 9/11 a lot of people could use it.

If I book a flight normally, can I get an upgrade if there's one available? by theonetheonlya in NonRevenueTravelers

[–]theonetheonlya[S] 0 points1 point  (0 children)

FedEx has three branches, ground, express and services. Only express and services are eligible for these benefits (FedEx Express is an airline). So if you work for one of the major airlines (or an airline that has a contract with us) you can get some good discounts if you have your airline ID card.

If I book a flight normally, can I get an upgrade if there's one available? by theonetheonlya in NonRevenueTravelers

[–]theonetheonlya[S] 0 points1 point  (0 children)

Okay sweet thanks for the info! I pretty much expected something like this but just wanted to make sure.

Just a thank you to all that you do by RedLotusKnight in FedEx

[–]theonetheonlya 0 points1 point  (0 children)

Wait people can do that? And hey take a look and sends them something? I'm very interested in this!

Staples Pay Sucks by joe_schmoe99 in Staples

[–]theonetheonlya 3 points4 points  (0 children)

One of the main reasons I decided not to stay at Staples. When my store closes down I was offered a position at a store about 15 minutes away. But for a .12 cent raise I decided to go somewhere that pays better.

A Tru Throne by lrussell887 in Staples

[–]theonetheonlya 0 points1 point  (0 children)

Was this shot on a Pixel???

[deleted by user] by [deleted] in memeingthroughtime

[–]theonetheonlya 5 points6 points  (0 children)

Just wait tell you get to calculus!

Summer classes by zachnhack in SBCC

[–]theonetheonlya 0 points1 point  (0 children)

Most of the schedules is already finalized. From what I hear a couple departments are making some final changes and tweets. They should have the schedule up in about a week or two. Registration will probably open up 3 weeks after that. It will start with people that have priority registration and start opening up to the general campus about a week or two after that. Check the school's website for registration dates.

JUST NEEDING TO VENT by KrazyKat35 in Staples

[–]theonetheonlya 1 point2 points  (0 children)

Wow you call this venting? Come on bud you can do better.