Blog: ittavern.com Feedback is appreciated

  • 6 Posts
  • 42 Comments
Joined 3 years ago
cake
Cake day: June 16th, 2023

help-circle




  • It may be a little late, but do you enjoy cybersecurity? - Chasing ghosts, scrolling through endless lines of logs, fending off threats, responding to incidents in high-stress situations, fighting for budgets, clients and colleagues who just don’t care, being the “bad guy” in meetings, and so on.

    I’ve only been there a few months, but there’s no light at the end of the tunnel. I’m pretty sure it has something to do with my environment, but I can’t see myself doing this for a long time.




  • So, let’s assume that you are in an international company and the first and only security person. What are your first steps and projects? It is like really vague, but I’d assume like a SIEM, inventory of the network and all devices, backup situation, maybe even honeypots?

    What are your high-prio things that every company should have? Is there even a framework for it?

    Feeling kinda lost and I hope you get some guidance in the right direction.
















  • wop@infosec.pubtocybersecurity@infosec.pubInfosec Engineer AMA
    link
    fedilink
    English
    arrow-up
    4
    ·
    edit-2
    3 years ago

    Thank you for the AMA.

    Do you regularly feel overwhelmed? - Keeping up with the sec news and patch accordingly, firewall/ips and endpoint alarms, logs, meetings, and more. It shouldn’t be the case, but it seems that everything in security is prio 1.

    EDIT: and being the party pooper and saying no to everything, bc people do not think about security.