The Cyber Security Body of Knowledge
cybok.org
The Cyber Security Body of Knowledge
1–10 of 20 posts
Re: The Cyber Security Body of Knowledge
#2Could be a nice 1 pager for highlighting some of the things I do to outsiders. Would be useful to those looking to get into this field (i.e. CS undergrad) too.
Re: The Cyber Security Body of Knowledge
#3Re: The Cyber Security Body of Knowledge
#4Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very few such people with "cyber" on their resumes are hired where I work.
Re: The Cyber Security Body of Knowledge
#5As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
Re: The Cyber Security Body of Knowledge
#6As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
Understanding attacks can be helpful to understand vulnerabilities and wrongly implemented security principles.
Re: The Cyber Security Body of Knowledge
#7As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
I've only been conducting interviews for a few years, but I haven't noticed a correlation between a lack of ability and the use of the term cyber. I don't think its on my resume (haven't had to update in a few years), but I wouldn't make assumptions about anyone that did.
Re: The Cyber Security Body of Knowledge
#8As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
It's like the old debates about the term hacker, eventually things become part of common parlance...
As to old knowledge, I'd say it very much depends. Basic principles from 20 years ago apply very much now. The specific attacks may have changed (although in some cases they're still the same) but the underlying concepts remain.
Re: The Cyber Security Body of Knowledge
#9As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
Whilst I'm not a fan of it, the term "cyber" is part of the lexicon now, and if you want to communicate to people outside the security industry about it, you'll find it easier when using that term.. It's like the old debates about the term hacker, eventually things become part of common parlance... As to old knowledge, I'd say it very much depends. Basic principles from 20 years ago apply very much now. The specific…
Or different usages of the word "hacker" become a shibboleth for showing which of the groups (with very different agendas) you belong to.
Re: The Cyber Security Body of Knowledge
#10As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…