Cyber Security Career Advice

37
CAREER ADVICE FOR A CAREER IN IT AND CYBER SECUERITY

Transcript of Cyber Security Career Advice

CAREER ADVICEFOR A CAREER IN IT AND CYBER SECUERITY

GETTING STARTED IN A NEW CAREER

•Get the lay of the land

•What are some of the best sources

• Trade publications

• Information saturation

•Get as much information as you can

•Different levels, different aspects

•What types of jobs are there

•What is the job market like

•What is the average pay

TOWARD A STABLE CAREER

•Your career rests on 4 legs

•Experience

•Certifications

•Education

• “Who you know”

YOUR CAREER PROFILE7

3

0

10

20

30

40

50

60

70

80

90

100

Overall Career Score

60%40% 50%

30%50%

Education

Certifications

Vendor

Neutral

Vendor

Specific

Experience

SMB Enterprise

60%

CE Degree

YOUR CAREER PROFILE

40% 40%

10%

60%

15%

Education

Certifications

Vendor

Neutral

Vendor

Specific

Experience

SMB Enterprise

5

5

0

10

20

30

40

50

60

70

80

90

100

Overall Career Score

30%

CE Degree

YOUR CAREER PROFILE

10% 10%

60%

Education

Certifications

Vendor

Neutral

Vendor

Specific

Experience

SMB Enterprise

2

5

0

10

20

30

40

50

60

70

80

90

100

Overall Career Score

10%

CE Degree

CERTIFICATIONS

CYBER SECURITY CERTIFICATIONS

CISSP

CISM

CISSP

ISSMP

CAP CISA

GSNA

SSCP

CASP

Security+

CISSP

ISSEP/

ISSAP

CSSLP

Management / Risk Audit

Software Dev

Network / Communicatio

ns

(ISC)2 CERTIFICATIONS

(ISC)2 International Information Systems Security Certification Consortium, Inc.Website: www.isc2.org Certifications

Associate of (ISC)²SSCP: Systems Security Certified PractitionerCAP: Certified Authorization ProfessionalCSSLP: Certified Secure Software Lifecycle ProfessionalCISSP: Certified Information Systems Security ProfessionalCISSP Concentrations: ISSEP, ISSAP, ISSMP

Professional Certification(ISC)2 certifications require ongoing continuing education to maintain certification.

ISACA CERTIFICATIONS

Information Systems and Control Association (ISACA)Certifications

CISA: Certified Information Systems AuditorCISM: Certified Information Systems ManagerCGEIT: Certified in the Governance of Enterprise ITCRISC: Certified in Risk and Information Systems Control

Websitewww.isaca.org

Professional CertificationISACA certifications require ongoing continuing education to maintain certification.

COMPTIA CERTIFICATIONS

CompTIA certificationsWebsite: www.comptia.orgCertifications

A+ - Computer Support TechnicianNetwork+ - Network Support TechnicianSecurity+ - Entry level security certificationCASP - CompTIA Advanced Security Practitioner RFID+ - RFID professionalsCTT+ - Certified Technical TrainerProject+ - IT Project ManagementOthers: Server+, Linux+, CTP+, CDIA+, PDI+

SANS INSTITUTE CERTIFICATIONS

Website: www.giac.orgCertifications

GIAC (Global Information Assurance Certification)GSNA (GIAC Systems and Network Auditor)G7799 (GIAC Certified ISO-17799 Specialist)GCFE (GIAC Certified Forensics Examiner)GCFA (GIAC Certified Forensic Analyst)GREM (GIAC Reverse Engineering Malware)GLEG (GIAC Legal Issues)GISP (GIAC Information Security Professional)GCPM (GIAC Certified Project Manager Certification)GISF (GIAC Information Security Fundamentals)

SANS INSTITUTE CERTIFICATIONS (CONT.)

Website: www.giac.orgCertifications

GIAC (Global Information Assurance Certification)GSEC (GIAC Security Essentials Certification)GWAPT (GIAC Web Application Penetration Tester)GCED (Certified Enterprise Defender)GCFW (GIAC Certified Firewall Analyst)GCIA (GIAC Certified Intrusion Analyst)GCIH (GIAC Certified Incident Handler)GCWN (GIAC Certified Windows Security Administrator)GCUX (GIAC Certified UNIX Security Administrator)GPEN (GIAC Certified Penetration Tester)GAWN (GIAC Assessing Wireless Networks)

DODD 8570

All IA (Information Assurance) jobs require certification.

DODD 8570 (CONT.)

All IA (Information Assurance) jobs require certification.

Level Qualifying Certifications

CND Analyst GCIA, CEH

CND Infrastructure Support

SSCP, CEH

CND Incident Responder GCIH, GSIH, CEH

CND Auditor CISA, CEH, GSNA

CN-SP Manager CISM, CISSP-ISSEP

SECONDARY CERTIFICATIONS

• Project Management Professional – PMP (PMI)

• Project+ (CompTIA)

• ITIL V3 Foundation Certificate in IT Service Management

• Microsoft Operations Framework

• Six Sigma

USING LINKEDIN

DASHBOARD

CERTIFICATIONS

• List your current certifications

• Expired ones if applicable

• Helps with search

SKILLS

• Limited to 50

• Need to endorse other people

• Typically the more you endorse

the more likely you are to be

endorsed

• Don’t endorse skills for people

that don’t have them

• Again this comes up in searches

EDUCATION

• Be as complete as possible

• Add grades is applicable

• Don’t forget dates

• Don’t forget degree

• Add activities and societies if

applicable

• Consider listing classes

LIST COURSES

• You can add course from any

schools you have listed

• You may limit to relevant

classes related to your

profession

• Again may lead to you showing

up in a search

HONORS AND AWARDS

• Think of it as extra credit

• It may or may not help in

selection for interview

• Generally it doesn’t hurt

• Depending on the wording it

may help bring you to the top

of searches

VOLUNTEER

• Always considered a plus for

resumes

• Again betters your chances at

turning up in search results

EXTRA INFORMATION

• Add any professional

organizations you belong

to

• These are extra points in

your behalf

• Additional info, give

yourself a personality,

not just another resume,

a person

RECOMMENDATIONS

• Best way to get them is to give

them

• Again only give them to people

you know

• People that have the skills

• Sometimes applicants are not

allowed to turn in letters of

recommendation

• But you can give them a link to

your LinkedIn profile…

GROUPS

• Join ones related to

your career path

• You can only join 50

• So pick them wisely

• Look for groups with

more activity

GROUP DISCUSSIONS

• Being active in groups

is a good way to be

noticed

• Keep it professional

INTERACT – KEEP IN TOUCH

• Stay in touch with keep

people

• You can say congrats for

work anniversaries

• Keep it professional

UPDATES

• Add value to the community

• Post useful updates

• Again keep it professional

• Track your impact

OTHER STUFF

• LinkedIn often has

suggestions

• Try some of them out

• LION in someone's profile

means they are open to

connecting

IT ALL ADDS UP

UPCOMING EVENTS HTTP://MCTUNDERGROUND.EVENTBRITE.CO

M