Brandon brings the heat. I'm actually carving up another video from that interview for a part 2.0. He I had talked for over 3.5 hours during this session. It was epic.
Gerald, I have been watching, stopping, and researching based upon this video...it is The Blueprint for not only preparing for the field but also preparing a potential SOC Analyst to research companies to target and interview. Breath of fresh air, solid!
After a few minutes, I put on popcorn for this one. A sobering, candid, rose-colored glasses off, entertaining eye opening interview in SOC work environments.
SOC analyst is where I want to get a starting point. It seems easy getting to know a lot because of the amount of videos there are on it, but because of the plethora of videos, it's hard to know a true starting point. This video seems like the best starting point for me. Love it. I have pretty basic IT experience between work/school. I actually work where I went to school lol. I'm pretty much the grunt, but it's great because I'm tagging along with the hardware support, network support, and the dude maintaining the wifi, firewalls,etc. I even got word from my boss that he'll be getting me more involved with security tasks!
He hit the nail on the head when he said sometime they have SOC structured like helpdesk. Playbooks should not be step by step because they end up hindering an analyst more than it helps them. They should be very basic in nature to provide a guideline on how to handle certain alerts. I’ve been seeing your content on LinkedIn and didn’t know I wasn’t subscribed yet
Thanks for the sub. Not sure if you saw but last week I had brandon on again w two other experts for a panel on soc skills. May be of interest. ruclips.net/video/le0hXgZmn1U/видео.html
I don't think I ever left a comment, but this is one of the videos that introduced me to Simply Cyber. I appreciate it even more after so many months getting to learn about the field.
Dude reminds me of John Strand. I found some other videos with him on your channel and elsewhere but I cannot get enough. You really need to have him on again.
As someone wanting to move into SOC from SysAdmin I really really enjoyed this. I just freaking love your content so much Gerald, thank you honestly :)
I would jumping from sysadmin is leap. It will definitely help you but keep in mind what motivates you, if you are someone that needs to fix things then the SOC is not going to work out. Hired a few sysadmins that didn't realized the Soc would never configure the customer's equipment and left after giving it a try for about 6 months. Answer that question about what you are looking for and maybe the SOC life might line be for you.
Thank you for this great insight! I'm new and I'm trying to avoid the common mistakes. At the end of the day we have to remember that IT/Security/Compliance is a cost center, and our job is to help the business function and balance risks... without the business, we don't get a paycheck
I'm glad you agreed. He dropped a lot. This whole conversation happened because we were filming for something else (Lima Charlie EDR), and the app hung and we were just kind of chatting killing time and I was like 'WOW this is great stuff', Carved it out and made it its own video. What was the most interesting thing you got from the video?
@@SimplyCyber That's super convenient. I would say the way he described the whole tiered vs free flow soc was great. The pro's and con's were well thought of and how there's different type of SOCKS. I feel like you could even say the same for NOC's.
Dudes thanks for this interview definitely helps with routing a career into SOC. Was already thinking about doing help desk for 2 years after school, now I know that is probably the best way forward in order to understand things, hands on, and be able to develop into a SOC analyst.
Invest your time into building a good portfolio, continuing to do practical labs (document them into your portfolio), and reach out to companies/recruiters. If you follow this plan for long enough, you are going to get hired. Prove that you are passionate to the right people. Don't give up hope!
Question then I passed my CNA I think it was 2015 maybe 16 I was going to go take it again but with the new Cisco I didn’t think it was really necessary so I kind of went through studied a little bit of the information and moved on finishing up some Linux studies right now but I was going to jump into some stuff on him off SOC should I go back and actually get a cc NASA the latest one or an NP maybe or just keep plugging away and security right now I manage a real lot large telecommunication system
Hi Gerald, they offered me a work as MSS Operator (managed security services operator). I think i did not understood what they really do, they were a bit cold in giving info (maybe for security reasons? ). What i know is that the company is well known in the cyber security enviromnent where i live. Do you have any idea about what a mss operator could do? Thank you so much for your help!
I'm thinking of a career change from a more of a physical security role (law enforcement w/Bachelor's in Pre-Law) into cybersecurity. I was looking at Penn State's online cybersecurity program. The kicker is I am 41 years old, and would be graduating at roughly 43 years old. My question is, am I too old to attempt this career change & enter the world of cybersecurity? Thank you in advance for your response - it is greatly appreciated!
You are not too old. You may have to realign expectations as you may have a reduction in salary, but we are in need of cyber talent. If you can do the job great!,
@@crowbar9566 I think soc is an excellent place to start but there is alert fatigue and mental heath challenges soc analyst face. Check out the “all things soc analyst” video on the channel w Eric Capuano, another great explainer vid on what the soc analyst role is. 2nd most viewed video on the channel
I agree its longer format than most of my vids, but it was so much content I cut it down as best i could. The SOC life piece was about 1.5 hours before I started cutting it back. Maybe I should release a directors cut version with no edits. LOL.
Enjoy your channel, learning so much and a-lot of my questions are being answered 🙌🏼🙏🏼. I am new to cyber security, And 💯 interested in Digital Forensics, my classes start in November( National University) Do you have a book that you would recommend? And my favorite Burbon Knob Creek & Cooper lol
Thanks and good bourbon choice. I have Real Digital Forensics by Beitjlich and Jones but its a bit dated (2007) it is good text though. I'd suggest engaging some DfiR folks on LinkedIn about what books they think could be good. its tricky, because DF gets very specific very quick. Like do you want to just know high level, or understand how to image boxes, how to dead disk imaging, how to do chain of custody, how to make your own DF tools, how to do live imaging, etc. I have a video on the channel from Erik Venema around digital forensics. Its more geared toward law enforcement officers transitioning into digital forensics as a 2nd career, but hes easily the most focused professional on DF ive had on the channel. May want to check out that video, and Erik provides his email address in it and asks anyone to contact him with questions. Could be another avenue to pursue. Best wishes Michelle.
great video amazing what do you think is it good idea to start career in GRC audit as fresher what i have heard from most of guys in cyber audit nobody hires fresher and what skills or certification must for get into cyber audit having ISO 27001 helps or CEH along with ISO 27001 is good idea.
Im confused by your post, specifically what you mean by 'fresher', but i will say if you want to get into audit get familiar with standards like ISO 27001 or (and Id say start here) NIST CSF. Lot of orgs are adopting CSF so it will need auditting. Also CISA is the cert to go for if you want to go audit. Thanks for watching.
@@nitindubey5472 ok gotcha. Sec+ is a solid start Cert to open doors. Really getting familiar with frameworks or learning regulations that would apply. I.E HIPAA for healthcare, NIST CSF, PCI (for credit card handling companies). etc. You basically need to understand the standards so when you audit you know the scope. Also a solid understanding of IT concepts is important so when you are checking if a control is in place or not, you dont get misled by a response from an engineer during interviews on control implementation.
@@SimplyCyber it would be great if you could recommend some good source for audit GRC because of youtube and google also most of things are related with VPAT side or SOC related . does interview expect having ISO 27001 certificate must like spending 500dollar for ISO is good option .
@@nitindubey5472 in the US iso 27001 isnt very prevalent. CHeck this out; this is guidance on how to build an assessment plan for a fisma audit; its basically a step-by-step guide on executing a cybersecurity audit (against NIST 800-53), but the steps transfer across any standard: csrc.nist.gov/publications/detail/sp/800-53a/rev-4/final
@@SimplyCyber well asking during the interview for the retention rate after one year ^^ also asking for career plans during the interview, for moving from soc1 to soc2 and soc3... or people looking down at soc analysts :(
@@SimplyCyber Definitely found value, the most surprising one was when he mentions- SOC analysts are like Help Desks of Cyber security. I was like oops hehhehe, ...and a whole lots of good ones he shared as being limited and not doing much in roles like some Help Desks
Brandon mentioned different good and bad SOC positions with diff companies. What good companies does he recommend for entry level (or any entry level job)?
Just get a job, continue to practice and study and then move companies as you move up. You really shouldn't stay in one specific SOC longer than 5 years. If that's you, you haven't grown.
I love the aspects of a SOC Analyst as a starting point for myself. My passion is for security infrastructure though. Do you think a SOC Analyst can effectively transfer to a Security Engineer and then to Security Architect? Or possibly SOC Analyst directly to Security Architect?
Absolutely. A SOC analyst will develop a realization of how data flows around network and where endpoints are with respect to segmentation, and all the challenges associated with storing, enriching, de-duplicating, and coorelating logs. Its a solid path into architect.
do you guys have any videos on imposter syndrome? ive looked around and didnt see anything. i have been working with a mentor for the last year with 3 hours a day 5 days a week and 6-8 hours on my off days (i take days off when i get brain dead) prepping for this xfer from store side to a SOC as an analyst. even after all that tailored training my mentor had to push me into a resume because i still don't think im ready. i slept 3 hours last night because im crash coursing hard for an interview next week. ive worked help desk, i have my own lab that i even remote into from work im pretty much always pentesting something and i still feel like an idiot that doesnt know anything. it sucks. anyone else like me?
You are putting in the hours and I bet you have lots of lessons learned, assumptions proven wrong (that you learned from), accomplishments to share, etc. you’re good. I’ve been in the industry 18 years, have a PhD in cyber operations and there’s a ton i don’t know about. The field is huge my friend, just work hard and try to deliver value to your business and you’ll be great. Dominate the next interview
@@SimplyCyber thank you. i woke up at 4 this morning prepping for market open and to brush up on some interview questions. i also had some lab time with my mentor sunday and he assured that they hire entry level for attitude and drive over skills. i was also told told it would be months before they got me up to speed on their system(s) anyway. so i feel a lot better about it.
Nobody knows everything. You got this! Continuous education is key. Many people who have "made it" stop studying. They don't "make it" very long after that. It's a life-long learning process. Again, nobody knows everything.
I really dislike it when SOC analysts asks the question - tell me what this attack does....and what that attack does.....should we start memorizing the MITRE ATT&CK framework techniques? I decided not to answer that question when it is asked, instead I reply why don't you ask me how I should approach a particular attack.
One major issue I found whilst working in a SOC environment is the fact that you never feel like you completed something. I you are a person that would like to have goals to complete, SOC unfortunately is not for you. I found myself getting quite depressed because there isn't really a reward based system like other jobs were you get a deadline to complete something and then having the satisfaction of completing it. It is kinda a continuous state of uncertainty. I do not know if this is the case with all SOCs but it was the case for me.
Yup. They were running a solarwinds briefing I believe. I always have another Cybersecurity RUclips channel running in my videos. I try to reference them for socializing them, but sometimes forget. Theres so many great folks out there sharing cybersecurity education/knowledge I like to make sure they get shared. :)
The issue with the IT is and because it's such a big and dynamic field, there is no proper path to master it and therefore it became a f..... Wild-Wild-West. See all the certifications existing today. So u then almost always end up with people coming from university with zero to none practical or even theoretical experience but a Master degree, because the company likes it as it elevates their reputation and therefore hires them. This people will then get some higher IT positions such as SOC Analyst, and start to make decisions. And as we all know, where is no knowledge, there is place for arrogance to grow. Therefore I think in today's world, IT suffers pretty much from wrong educated people being hired for the wrong positions, just because CEO's and HR people doesn't want to know it better.
Why do you expect a tier 1 soc analyst to be giving you recommendations as a system admin or network admin ? That is not his job , do your job ! , your are basically asking a tier 1 whose main job is triage to do your system and network admin job , then what are you being paid for ? And If for some reason they give you recommendations and you decide not to apply them because it is worth the risk, that is your problem, they did their job if an incident happens you will just have to explain alone to your bosses how it was a risk worth having.
I was thinking the same, yeah he’s correct but what’s good I’m new trying to do my job and I’m here not saying I know everything, if this guy is looking down on me like that. Time to move on to a better working environment.
@@garcand Having done both now, I’d have to disagree with this statement. The SOC paid quite a bit more and I make even more now that I’ve gained time. The pay scale for Network Engineers compared to what I make now is no where close.
@@TK-le8wd and i would have to disagree with you. There are a lot of elements for answering this question. In my experience Network Engineering and Programming backgrounds have landed me in Tier 3 SOC Roles . Which ultimately landed me in roles for Red Team Penetration Testing. It was the Networking background that got me the job over all of them. In addition, it always depends on the location for work, interview questions, the employer , who you know, what you prefer, and your overall tech experience. Having experience in both fields will increase salary but i have learned that Networking and Programming are the foundations for cyber security. I guess everyone's entitled to their opinons but thats how my 6 figure journey started JS. Hopefully, the reader can extract the context . Best of luck .
@@garcand@ ag Ok, I misunderstood what you were trying to say with the first statement. I apologize, as I thought you meant to stay as a Network Engineer vs. going into Cyber. So, yes, the Network Engineer role is essential, as we both know. Networking is a fundamental skill of Cyber. So I apologize for misunderstanding your first statement. I also have a background inin both of the things you mentioned and sys admin roles.
That room is a mess and that is because this guy doesn't have the time to clean it and keep it in order. That is a HUGE red flag about the SOC analyst life!
Unfortunately, I find this guy obnoxious. Most of what he said, especially about the penetration test experience, makes it seems like he thinks he's a know-it-all and probably even exaggerates a bit. The pen tester told him the vulnerability. He gave a suggestion, but ultimately, it is up to the company what they want to do with the report that was given. Also, his comments about where to start are completely biased. Like he even admitted, there weren't SOCs when many of the so-called security experts started. They started as something else, meaning they started as a know-nothing help desk. That's basically what he said tier 1 SOC analyst is. So basically it's the same start. The difference is, now there are SOCs, and many of them need tier 1 analyst. If they don't give you support with further education, you can do it yourself. That's exactly what you would have had to do on the help desk. Personally, I wouldn't want to work with him, because he sounds a bit toxic himself. There are plenty of teams out there where you can start with your certs and do well. But the key is continuous education. Stay the course. Don't let people discourage you. The video got better toward the end when they started talking about slowing down.
Could have not said it better myself, But this is reality and we need to be prepared to be judged and made fun off by small minded people at a toxic working environment. This should make us stronger and better. It’s life survival of the fittest and those who are insecure will treat you like that. It’s reality he’s basically saying know your shit or someone like me could make your working environment a living hell. I would not want to work with him or any of he’s teammates because they are probably the same ,,,, >>unless he tells me that he has cleaned up after himself. 😂. Jokes aside it’s reality I’m glad the interview was done….
bros so mad at new incoming people into security. my bad im a new entry level tier 1 soc and not a 15yr sr network engineer. Also im not familiar but the pen tester out of college found the vulnerability. do pen testers also give solutions and solve for the vulnerability for the company as well? I would hope the more experienced people in the field would help and teach the newcomers than laugh at them and "Take away their credibility" for an entry level position mistake or lack of knowledge. It'd make sense if it was a high level position but its the entry field for cybersecurity
Possibly one of the greatest interviews ever that give the audience a raw insight into the SOC world from a true real life perspective. Gold!
Brandon brings the heat. I'm actually carving up another video from that interview for a part 2.0. He I had talked for over 3.5 hours during this session. It was epic.
Gerald, I have been watching, stopping, and researching based upon this video...it is The Blueprint for not only preparing for the field but also preparing a potential SOC Analyst to research companies to target and interview. Breath of fresh air, solid!
After a few minutes, I put on popcorn for this one. A sobering, candid, rose-colored glasses off, entertaining eye opening interview in SOC work environments.
SOC analyst is where I want to get a starting point. It seems easy getting to know a lot because of the amount of videos there are on it, but because of the plethora of videos, it's hard to know a true starting point. This video seems like the best starting point for me. Love it.
I have pretty basic IT experience between work/school. I actually work where I went to school lol. I'm pretty much the grunt, but it's great because I'm tagging along with the hardware support, network support, and the dude maintaining the wifi, firewalls,etc. I even got word from my boss that he'll be getting me more involved with security tasks!
nice. lean into that and try to leverage every opportunity to 'do' security stuff. great for the resume and finding out what you like and dont'
He hit the nail on the head when he said sometime they have SOC structured like helpdesk. Playbooks should not be step by step because they end up hindering an analyst more than it helps them. They should be very basic in nature to provide a guideline on how to handle certain alerts. I’ve been seeing your content on LinkedIn and didn’t know I wasn’t subscribed yet
Thanks for the sub. Not sure if you saw but last week I had brandon on again w two other experts for a panel on soc skills. May be of interest. ruclips.net/video/le0hXgZmn1U/видео.html
This was locker room talk! I didn't know stuff this raw and real was on youtube. Thanks a mil Mr. Auger and Mr. Poole!
I don't think I ever left a comment, but this is one of the videos that introduced me to Simply Cyber. I appreciate it even more after so many months getting to learn about the field.
This is gold. Thanks for putting together this interview and the whole playlist really.
I would love to see you interview an architect and talk about what it takes to get into that field. Awesome video, as always!
Dude reminds me of John Strand. I found some other videos with him on your channel and elsewhere but I cannot get enough. You really need to have him on again.
Just need to say that the content in this video is absolutely amazing. This is something I have saved for future reference as I progress in my career
Thank you! Brandon is an exceptional ambassador for the soc
As someone wanting to move into SOC from SysAdmin I really really enjoyed this. I just freaking love your content so much Gerald, thank you honestly :)
I would jumping from sysadmin is leap. It will definitely help you but keep in mind what motivates you, if you are someone that needs to fix things then the SOC is not going to work out. Hired a few sysadmins that didn't realized the Soc would never configure the customer's equipment and left after giving it a try for about 6 months. Answer that question about what you are looking for and maybe the SOC life might line be for you.
Wow this hit so many good points especially the struggles of working in MSSP and working in tiered SOCs.
Yeah, the reality is different from the text book (or at least has more dimensions than a text book). Thanks for watching.
Some good questions an analyst should asks on these job interviews
Thank you for this great insight! I'm new and I'm trying to avoid the common mistakes. At the end of the day we have to remember that IT/Security/Compliance is a cost center, and our job is to help the business function and balance risks... without the business, we don't get a paycheck
Glad it was helpful!
My new headline, "I want to get into a SOC." Good information, I can relate to the different types of SOC's and great questions for an interview.
I really enjoyed this so much I'm looking into cybersecurity where I would belong in my first year. I learned so much thank you!
This was honestly so amazing. I learnt so much in such a short span of time
Glad you enjoyed it!
Great interview! thank you for the upload!!
One of the best videos that's give you a full understanding as SOC analyst 👍🏾
Billy! That’s a heartwarming comment. Thanks for letting me and community know. Awesome!
This was awesome. Thank you so much for the content you provide to the community. After each video, I always have a bunch of good notes and tools.
Pretty good video. I am a Soc manager at a MSSP and can definitely relate to what was talked about
That was a good ass video. Like damn the info he dropped in that was priceless
I'm glad you agreed. He dropped a lot. This whole conversation happened because we were filming for something else (Lima Charlie EDR), and the app hung and we were just kind of chatting killing time and I was like 'WOW this is great stuff', Carved it out and made it its own video.
What was the most interesting thing you got from the video?
@@SimplyCyber That's super convenient. I would say the way he described the whole tiered vs free flow soc was great. The pro's and con's were well thought of and how there's different type of SOCKS. I feel like you could even say the same for NOC's.
Dudes thanks for this interview definitely helps with routing a career into SOC. Was already thinking about doing help desk for 2 years after school, now I know that is probably the best way forward in order to understand things, hands on, and be able to develop into a SOC analyst.
Great interview, a ton of insight. Branden was giving me Seth Rogen vibes. Great stuff!
Thank you for planting the SOC seed Gerry. I appreciate your guidance and take it to heart
💪🧙♂️⌨️
Completely agree with Brandon at 18 min…treat the interview as two way. Don’t be hesitant to treat it as a conversation.
Exactly what I was waiting!
Thanks Wilber! Hope you find it worth your time and meets your expectations. Let me know what you found most surprising from Brandon.
Great video and channel! You’ve helped me so much. Keep up the great work.
Glad to help! I will! Thanks.
This is solid gold. Well done! Subscribed & Liked!
Welcome aboard! Thanks Jimmy. Brandon is awesome.
Was Waiting for this exact video ❤️
Thans Rayan. I hope you enjoy it and find the same value that I did from Brandon. It was awesome.
Great interview and content!!
Thank you so much Shanna! Brandon was awesome to have on the show.
Not going to lie. I was hoping to finish my Google cyber perfesional certification and land a job. Now I’m worrying it’s not enough.
Invest your time into building a good portfolio, continuing to do practical labs (document them into your portfolio), and reach out to companies/recruiters.
If you follow this plan for long enough, you are going to get hired. Prove that you are passionate to the right people. Don't give up hope!
I've always liked you and your channel Gerald, but now I like you even more. Thanks for this video
Ok, this was really really good! Sometimes the truth hurts, but you gotta hear it. Great insights!
Question then I passed my CNA I think it was 2015 maybe 16 I was going to go take it again but with the new Cisco I didn’t think it was really necessary so I kind of went through studied a little bit of the information and moved on finishing up some Linux studies right now but I was going to jump into some stuff on him off SOC should I go back and actually get a cc NASA the latest one or an NP maybe or just keep plugging away and security right now I manage a real lot large telecommunication system
PREACH! Excellent interview
They don’t know how to think pure gold 💎
awesome vid...learned a LOT.
Brandon is awesome.
This video helped a lot! Thanks for this!
Glad to hear it!
Just got an offer for a SOC position so i needed to see this . Thank you!
Also the guest speaking sounds like Seth Rogan 😂
Congratulations! And Brandon is awesome
Help desk of security 🔥
Super valuable. Thank you, guys. :)
Glad it was helpful!
Great insights
That's pure gold. Thanks!
You bet! Brandon is awesome.
awesome! thank you
Such a great talk!
Wow! This is amazing!
Thanks Danny, Brandon is legit legit
Hi Gerald, they offered me a work as MSS Operator (managed security services operator). I think i did not understood what they really do, they were a bit cold in giving info (maybe for security reasons? ). What i know is that the company is well known in the cyber security enviromnent where i live. Do you have any idea about what a mss operator could do? Thank you so much for your help!
I'm thinking of a career change from a more of a physical security role (law enforcement w/Bachelor's in Pre-Law) into cybersecurity. I was looking at Penn State's online cybersecurity program. The kicker is I am 41 years old, and would be graduating at roughly 43 years old. My question is, am I too old to attempt this career change & enter the world of cybersecurity? Thank you in advance for your response - it is greatly appreciated!
You are not too old. You may have to realign expectations as you may have a reduction in salary, but we are in need of cyber talent. If you can do the job great!,
I dont feel like age is shunned upon in the cyber field as it is in the soft dev field. I think you're fine.
Never too old. If you have the mind and willpower, it can be done
I'm a 44 year old career changer looking to get into InfoSec and who has an interview for a SOC Analyst role. This is seriously putting me off 😂😂😂
Better to find out now then put in the work to get there and find out
@@SimplyCyber I think your guy is being overly negative. A lot of other videos say its a good place to start.
@@crowbar9566 I think soc is an excellent place to start but there is alert fatigue and mental heath challenges soc analyst face. Check out the “all things soc analyst” video on the channel w Eric Capuano, another great explainer vid on what the soc analyst role is. 2nd most viewed video on the channel
@@SimplyCyber I'll take a look, thanks Gerald. Love the channel btw.
This is a really really good video about a SOC. It is long, but worth to watch multiple times.
I agree its longer format than most of my vids, but it was so much content I cut it down as best i could. The SOC life piece was about 1.5 hours before I started cutting it back. Maybe I should release a directors cut version with no edits. LOL.
Gerald Auger - Simply Cyber would definitely be inferested on watching the whole thing!
This was a great video.
Enjoy your channel, learning so much and a-lot of my questions are being answered 🙌🏼🙏🏼. I am new to cyber security, And 💯 interested in Digital Forensics, my classes start in November( National University) Do you have a book that you would recommend? And my favorite Burbon Knob Creek & Cooper lol
Thanks and good bourbon choice. I have Real Digital Forensics by Beitjlich and Jones but its a bit dated (2007) it is good text though. I'd suggest engaging some DfiR folks on LinkedIn about what books they think could be good.
its tricky, because DF gets very specific very quick. Like do you want to just know high level, or understand how to image boxes, how to dead disk imaging, how to do chain of custody, how to make your own DF tools, how to do live imaging, etc.
I have a video on the channel from Erik Venema around digital forensics. Its more geared toward law enforcement officers transitioning into digital forensics as a 2nd career, but hes easily the most focused professional on DF ive had on the channel. May want to check out that video, and Erik provides his email address in it and asks anyone to contact him with questions. Could be another avenue to pursue. Best wishes Michelle.
Thank You for this
You're welcome! Brandon brought it this episode. It was actually part of a much larger Lima Charlie EDR video series that will be coming out.
Mr. Poole likes to rip a bong or two from time to time.
Thanks for the upload....
You're welcome; Thanks for being part of the community.
great video amazing what do you think is it good idea to start career in GRC audit as fresher what i have heard from most of guys in cyber audit nobody hires fresher and what skills or certification must for get into cyber audit having ISO 27001 helps or CEH along with ISO 27001 is good idea.
Im confused by your post, specifically what you mean by 'fresher', but i will say if you want to get into audit get familiar with standards like ISO 27001 or (and Id say start here) NIST CSF. Lot of orgs are adopting CSF so it will need auditting. Also CISA is the cert to go for if you want to go audit. Thanks for watching.
@@SimplyCyber fresher who is just starting career in cyber field CISA is for 5 years of experience guys.
@@nitindubey5472 ok gotcha. Sec+ is a solid start Cert to open doors. Really getting familiar with frameworks or learning regulations that would apply. I.E HIPAA for healthcare, NIST CSF, PCI (for credit card handling companies). etc. You basically need to understand the standards so when you audit you know the scope. Also a solid understanding of IT concepts is important so when you are checking if a control is in place or not, you dont get misled by a response from an engineer during interviews on control implementation.
@@SimplyCyber it would be great if you could recommend some good source for audit GRC because of youtube and google also most of things are related with VPAT side or SOC related .
does interview expect having ISO 27001 certificate must like spending 500dollar for ISO is good option .
@@nitindubey5472 in the US iso 27001 isnt very prevalent. CHeck this out; this is guidance on how to build an assessment plan for a fisma audit; its basically a step-by-step guide on executing a cybersecurity audit (against NIST 800-53), but the steps transfer across any standard: csrc.nist.gov/publications/detail/sp/800-53a/rev-4/final
I learned a lot on this vid..thanks!
Glad it was helpful! What was the most surprising thing you took away Marvin?
What they said. The Boys Season 3,now. Great series
this was so good!
I loved the frank conversation with Brandon.
Thanks Jose. He tells it how it is. What was your favorite part?
@@SimplyCyber well asking during the interview for the retention rate after one year ^^
also asking for career plans during the interview, for moving from soc1 to soc2 and soc3... or people looking down at soc analysts :(
@@vak21 Those were both great points. The retention rate one can't be sugarcoated either.
Which cert gives you knowledge to start as SOC Analyst
I’ve heard Cysa+ is good for that, but doing labs like RangeForce and blueteamlabs.online are going to go a long way for practical skill development
Look at that lovely background video you have there! ;)
Black Hills Infosec is always bringing the heat. Be sure to check them out --> ruclips.net/channel/UCJ2U9Dq9NckqHMbcUupgF0A
DEBBBBBB 💪🏾💪🏾💪🏾BHIS IS MY RELIGION
So much venting, I do not know if Brandon needs a holiday or if he is really passionate about his job 😄
Both :p
Thank you❤️❤️❤️
You are so welcome. Hope you found value. What was the most surprising thing Brandon shared with you?
@@SimplyCyber Definitely found value, the most surprising one was when he mentions- SOC analysts are like Help Desks of Cyber security. I was like oops hehhehe, ...and a whole lots of good ones he shared as being limited and not doing much in roles like some Help Desks
Informative 👍
Thanks 🙂
Brandon mentioned different good and bad SOC positions with diff companies. What good companies does he recommend for entry level (or any entry level job)?
I'll have to ask him. He works in that space and may not want to call out a company by name as good/bad.
Just get a job, continue to practice and study and then move companies as you move up. You really shouldn't stay in one specific SOC longer than 5 years. If that's you, you haven't grown.
I love the aspects of a SOC Analyst as a starting point for myself. My passion is for security infrastructure though. Do you think a SOC Analyst can effectively transfer to a Security Engineer and then to Security Architect? Or possibly SOC Analyst directly to Security Architect?
Absolutely. A SOC analyst will develop a realization of how data flows around network and where endpoints are with respect to segmentation, and all the challenges associated with storing, enriching, de-duplicating, and coorelating logs. Its a solid path into architect.
@@SimplyCyber I greatly appreciate your response and time. Especially knowing that you actually are a Security Architect.
What are the good positions in soc?
Depends on your interest. Detection engineer seems like a lot of fun. Forensics if you like to go heads down on intricate projects.
Awesome
do you guys have any videos on imposter syndrome? ive looked around and didnt see anything. i have been working with a mentor for the last year with 3 hours a day 5 days a week and 6-8 hours on my off days (i take days off when i get brain dead) prepping for this xfer from store side to a SOC as an analyst. even after all that tailored training my mentor had to push me into a resume because i still don't think im ready. i slept 3 hours last night because im crash coursing hard for an interview next week. ive worked help desk, i have my own lab that i even remote into from work im pretty much always pentesting something and i still feel like an idiot that doesnt know anything. it sucks. anyone else like me?
You are putting in the hours and I bet you have lots of lessons learned, assumptions proven wrong (that you learned from), accomplishments to share, etc. you’re good.
I’ve been in the industry 18 years, have a PhD in cyber operations and there’s a ton i don’t know about. The field is huge my friend, just work hard and try to deliver value to your business and you’ll be great. Dominate the next interview
@@SimplyCyber thank you. i woke up at 4 this morning prepping for market open and to brush up on some interview questions. i also had some lab time with my mentor sunday and he assured that they hire entry level for attitude and drive over skills. i was also told told it would be months before they got me up to speed on their system(s) anyway. so i feel a lot better about it.
Nobody knows everything. You got this! Continuous education is key. Many people who have "made it" stop studying. They don't "make it" very long after that. It's a life-long learning process. Again, nobody knows everything.
So good.
I really dislike it when SOC analysts asks the question - tell me what this attack does....and what that attack does.....should we start memorizing the MITRE ATT&CK framework techniques? I decided not to answer that question when it is asked, instead I reply why don't you ask me how I should approach a particular attack.
One major issue I found whilst working in a SOC environment is the fact that you never feel like you completed something. I you are a person that would like to have goals to complete, SOC unfortunately is not for you. I found myself getting quite depressed because there isn't really a reward based system like other jobs were you get a deadline to complete something and then having the satisfaction of completing it. It is kinda a continuous state of uncertainty. I do not know if this is the case with all SOCs but it was the case for me.
You have Jason Blanchard and other WWHF folks on your screen at the end :D
Yup. They were running a solarwinds briefing I believe. I always have another Cybersecurity RUclips channel running in my videos. I try to reference them for socializing them, but sometimes forget. Theres so many great folks out there sharing cybersecurity education/knowledge I like to make sure they get shared. :)
Mr Poole needs to learn the magic of shampoo !!!
Those 6-9 month boot camps have lead to better hires than those cyber degrees of late
practical skills are gold right now. the trick is weeding out legit bootcamps vs. cash grab mills
@@SimplyCyber please can you recommend some legit boot camps?
The issue with the IT is and because it's such a big and dynamic field, there is no proper path to master it and therefore it became a f..... Wild-Wild-West. See all the certifications existing today. So u then almost always end up with people coming from university with zero to none practical or even theoretical experience but a Master degree, because the company likes it as it elevates their reputation and therefore hires them. This people will then get some higher IT positions such as SOC Analyst, and start to make decisions. And as we all know, where is no knowledge, there is place for arrogance to grow. Therefore I think in today's world, IT suffers pretty much from wrong educated people being hired for the wrong positions, just because CEO's and HR people doesn't want to know it better.
Why do you expect a tier 1 soc analyst to be giving you recommendations as a system admin or network admin ? That is not his job , do your job ! , your are basically asking a tier 1 whose main job is triage to do your system and network admin job , then what are you being paid for ? And If for some reason they give you recommendations and you decide not to apply them because it is worth the risk, that is your problem, they did their job if an incident happens you will just have to explain alone to your bosses how it was a risk worth having.
I was thinking the same, yeah he’s correct but what’s good I’m new trying to do my job and I’m here not saying I know everything, if this guy is looking down on me like that. Time to move on to a better working environment.
Can I work with you guys?
soteria.io/careers/
So, is taking a SOC job as your first Cyber job, a bad move for your future security career?
I think its a great move. You will see A LOT.
A network engineer role is better
@@garcand Having done both now, I’d have to disagree with this statement. The SOC paid quite a bit more and I make even more now that I’ve gained time. The pay scale for Network Engineers compared to what I make now is no where close.
@@TK-le8wd and i would have to disagree with you. There are a lot of elements for answering this question. In my experience Network Engineering and Programming backgrounds have landed me in Tier 3 SOC Roles . Which ultimately landed me in roles for Red Team Penetration Testing. It was the Networking background that got me the job over all of them. In addition, it always depends on the location for work, interview questions, the employer , who you know, what you prefer, and your overall tech experience. Having experience in both fields will increase salary but i have learned that Networking and Programming are the foundations for cyber security. I guess everyone's entitled to their opinons but thats how my 6 figure journey started JS. Hopefully, the reader can extract the context . Best of luck .
@@garcand@ ag Ok, I misunderstood what you were trying to say with the first statement. I apologize, as I thought you meant to stay as a Network Engineer vs. going into Cyber. So, yes, the Network Engineer role is essential, as we both know. Networking is a fundamental skill of Cyber. So I apologize for misunderstanding your first statement. I also have a background inin both of the things you mentioned and sys admin roles.
I could not help but think "Seth Rogan vibes" throughout this entire segment
That room is a mess and that is because this guy doesn't have the time to clean it and keep it in order. That is a HUGE red flag about the SOC analyst life!
Unfortunately, I find this guy obnoxious. Most of what he said, especially about the penetration test experience, makes it seems like he thinks he's a know-it-all and probably even exaggerates a bit. The pen tester told him the vulnerability. He gave a suggestion, but ultimately, it is up to the company what they want to do with the report that was given. Also, his comments about where to start are completely biased. Like he even admitted, there weren't SOCs when many of the so-called security experts started. They started as something else, meaning they started as a know-nothing help desk. That's basically what he said tier 1 SOC analyst is. So basically it's the same start. The difference is, now there are SOCs, and many of them need tier 1 analyst. If they don't give you support with further education, you can do it yourself. That's exactly what you would have had to do on the help desk. Personally, I wouldn't want to work with him, because he sounds a bit toxic himself. There are plenty of teams out there where you can start with your certs and do well. But the key is continuous education. Stay the course. Don't let people discourage you.
The video got better toward the end when they started talking about slowing down.
Could have not said it better myself, But this is reality and we need to be prepared to be judged and made fun off by small minded people at a toxic working environment. This should make us stronger and better. It’s life survival of the fittest and those who are insecure will treat you like that. It’s reality he’s basically saying know your shit or someone like me could make your working environment a living hell. I would not want to work with him or any of he’s teammates because they are probably the same ,,,, >>unless he tells me that he has cleaned up after himself. 😂. Jokes aside it’s reality I’m glad the interview was done….
#SOCLIFE
bros so mad at new incoming people into security. my bad im a new entry level tier 1 soc and not a 15yr sr network engineer. Also im not familiar but the pen tester out of college found the vulnerability. do pen testers also give solutions and solve for the vulnerability for the company as well? I would hope the more experienced people in the field would help and teach the newcomers than laugh at them and "Take away their credibility" for an entry level position mistake or lack of knowledge. It'd make sense if it was a high level position but its the entry field for cybersecurity
23:07 Geralds radar has detected a whale crying for help near the coast of Japan : ))
BRANDON:
"We need a *Threat Intelligence Team* as well...!!!!"
- some golfing CSO
ME: LOLz
LOL
Hahahaha
Lets go Brandon, I mean you gotta clean that room
Lots of bad career crushing SOCs... not refreshing...lol
Brandon is a chubby version of john strand
"Toxic work environment" laughs in FPL.
Went from analysis to pure gatekeeping. The older generation sucks.
Maybe I missed it when I watched, but what part was gatekeeping?
This guy looking like Seth Rogen its just hard to me take him serious... lol
RGE lol lol 😂😂😂😂😂😂
This guu should realy clean up befor taking a video call WTF ?