As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
The Cyber Security Body of Knowledge
11–20 of 20 posts
Re: The Cyber Security Body of Knowledge
#12As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
Re: The Cyber Security Body of Knowledge
#13As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
Sounds like a workplace one should avoid. It seems quite petty that one would consider a harmless and a completely acceptable word to be a reason to look at a potential candidate with a negative bias.
Maybe I should start including the word "cyber" in my resume going forward to filter out petty employers like yours.
Re: The Cyber Security Body of Knowledge
#14As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
>I have to say that by the time anyone has infosec written down and categorized it is obsolete
It's a worthy goal for CyBoK to try to write this down, but having skimmed over the AppSec one it immediately feels like it's something that will get finished one day, and then people will get round to reading it one day by which point it will be little more than an academic curiosity.
My first impression is that it is broadly an academic exercise and not a practical one. This type of knowledge needs to be documented in more dynamic format if it is to stand any chance of being relevant, let alone remaining relevant. It needs the funding and the community support, but on top of academics cogitating over it, it needs real-world, real-time input, maintenance, and updates.
Re: The Cyber Security Body of Knowledge
#15As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
Also, there are hardly any novel new attack techniques, its all just old basic concepts applied to new technologies. Being in the industry for 15 years should allow to put things into perspective.
Re: The Cyber Security Body of Knowledge
#16As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
Re: The Cyber Security Body of Knowledge
#17As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
Re: The Cyber Security Body of Knowledge
#18As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
> Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very few such people with "cyber" on their resumes are hired where I work. Sounds like a workplace one should avoid. It seems quite petty that one would consider a harmless and a completely acceptable word to be a reason to look at a potential candidate with a negative bias. Maybe I should start…
Re: The Cyber Security Body of Knowledge
#19As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
You said the word! Take a shot!
Re: The Cyber Security Body of Knowledge
#20As someone who has been in this game for 15 years, I have to say that by the time anyone has infosec written down and categorized it is obsolete. The CISSP, for example, bombards you with questions about thoroughly obsolete attacks. I let mine expire and allow my resume to speak for itself. Furthermore, after a couple hundred interviews over the course of my career, use of the term "cyber" is a huge red flag. Very fe…
I'm not Internet famous like some of the security guys around here, but I'm good enough to get a job nearly anywhere I want. I wouldn't want to work for a place that harbors illogical grudges against benign words that over time have become used by almost everyone working in the industry. It makes me wonder what other petty things the company would be needlessly elitist and toxic about. I've only been conducting inter…