3 ms·
> "Cyber Security is one of the most expensive fields, You are required to do a number of exams and certification. Unlike Software Development, These certificat
by radditone 6y ago
> "Cyber Security is one of the most expensive fields, You are required to do a number of exams and certification. Unlike Software Development, These certifications are very crucial, They are more or less like a "Get out of jail free" Card."
This is terrible advice. You don't need lots of BS certs to get into security.
The only cert here worth doing is OSCP, and even that has lost respect/value in recent years to rampant cheating and answer sharing.
- intern4tional 6y agoAgreed, and I have a variety of these (certifications). Most of the top tier people that I know in cyber security are not certified professionals, but rather people that have deep knowledge in their area of expertise with the ability to apply security knowledge to it. The list of certifications is bad because: - it only focuses on offensive security work, which is a small part of the actual field (there is the entire blue side as an example) - it focuses heavily on the software side of the house which is once again not the entire field (more than a few places have been popped due to infrastructure misconfigurations and issues) - it ignores many common enterprise environments that use things like Active Directory, Otka, EUA, SSO, etc. These are things that you will encounter and must know how to work with or secure if you are a generalist in the field (if you're specialized you may never touch these things at all). In short, this is good if you want to be a consultant doing generic penetration testing but not much more than that. They may also serve as HR checkboxes for recruiters that do not understand the job requirements.
- mettamage 6y agoI agree with this. FWIW, IMO, the best form of proof is showing how hard you can pwn boxes :)
- deleted 6y ago[deleted]