Cyber Work
Download on the App Store

Cyber Work episodes

  • Cybersecurity project management: Your career starts here | Cyber Work Live

    Are you great with details? Do you like juggling multiple projects at once? Is your organization system the topic of awed discussion between your co-workers? Or are you just interested in getting into cybersecurity from a different angle? If so, you might already be a top-notch project manager and not even know it!

    Join a panel of past Cyber Work Podcast guests as they discuss their tips to become a project management all-star:
    – Jackie Olshack, Senior Program Manager, Dell Technologies
    – Ginny Morton, Advisory Manager, Identity Access Management, Deloitte Risk & Financial Advisory

    If you’re interested in project management as a long-term career, Jackie and Ginny will discuss their career histories and tips for breaking into the field. If you plan to use project management as a way to learn more about other cybersecurity career paths, we’ll also cover how to leverage those skills to transition into roles.

    This episode was recorded live on December 15, 2021. Want to join the next Cyber Work Live and get your career questions answered? See upcoming events here: https://www.infosecinstitute.com/events/

    – Want to earn your PMP certification? Learn more here: https://www.infosecinstitute.com/courses/pmp-boot-camp-training/
    – Start learning cybersecurity for free: https://www.infosecinstitute.com/free
    – View Cyber Work Podcast transcripts and additional episodes: https://www.infosecinstitute.com/podcast

    The topics covered include:
    0:00 - Intro
    0:51 - Meet the panel
    3:12 - Why we're talking project management
    6:27 - Agenda for this discussion
    6:55 - Part 1: Break into cybersecurity project management
    7:45 - Resume recommendations for project managers
    12:35 - Interview mistakes for project managers
    19:22 - Creating your elevator pitch
    23:10 - Importance of your LinkedIn page
    25:05 - What certifications should I get?
    30:38 - Do I need to be technical to be successful?
    34:20 - How to build cybersecurity project management skills
    38:28 - Part 2: Doing the work of project management
    40:47 - Getting team members to lead themselves
    44:50 - Dealing with customer ambiguity
    47:30 - Part 3: Pivoting out of project management
    47:48 - How do I change roles in an organization
    51:50 - What's the next step after cybersecurity project manager?
    53:43 - How to move from PMing security teams into leading them?
    59:05 - Outro

    About Infosec
    Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It’s our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.

    1 hr 2 min
  • What does a SOC analyst do? | Cybersecurity Career Series

    Security operations center (SOC) analysts are responsible for analyzing and monitoring network traffic, threats and vulnerabilities within an organization’s IT infrastructure. This includes monitoring, investigating and reporting security events and incidents from security information and event management (SIEM) systems. SOC analysts also monitor firewall, email, web and DNS logs to identify and mitigate intrusion attempts.

    – Start learning cybersecurity for free: https://www.infosecinstitute.com/free
    – Learn more about the SOC analyst role: https://www.infosecinstitute.com/role-soc-analyst/.

    0:00 Intro 
    1:20 - What is a SOC analyst? 
    1:58 - Levels of SOC analyst
    2:24 - How to become a SOC analyst
    2:53 - Certification requirements
    3:29 - Skills needed to succeed
    4:38 - Tools SOC analysts use
    5:32 - Open-source tool familiarity 
    6:05 - Pivoting from a SOC analyst
    6:50 - What can I do right now?
    7:32 - Experience for your resume 
    8:07 - Outro  

    About Infosec
    Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It’s our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.

    8 min
  • Top cybersecurity breaches of 2021 | Guest Keatron Evans

    Infosec’s Principal Security Researcher, instructor and cybersecurity renaissance man Keatron Evans returns to the show for the first in a series of once-quarterly episodes breaking down big stories in the news and cybersecurity trends for the future! We talk Solarwinds, Colonial Access Pipeline, Oldsmar, Keatron’s origin story and why, just like practicing your scales makes you a better musician, master pentesters and security pros got where they did by mastering the art of repetition in learning.

    – Start learning cybersecurity for free: https://www.infosecinstitute.com/free
    – View Cyber Work Podcast transcripts and additional episodes: https://www.infosecinstitute.com/podcast

    0:00 - Intro 
    2:30 - How did you get into cybersecurity? 
    4:00 - What skills did you have early on? 
    6:10 - First interaction with Infosec
    10:34 - Work as a principal security researcher
    13:20 - Machine learning in cybersecurity 
    14:14 - Infosec classes
    17:28 - Equity in cybersecurity 
    20:25 - You don't need a technical background
    21:36 - Major security breaches of 2021
    22:15 - SolarWinds breach
    24:56 - What job roles help stop these breaches?
    27:50 - Water treatment plant breach
    31:42 - Infrastructure security 
    34:30 - President Biden and cybersecurity
    39:22 - Supply chain security 
    43:20 - Security trends for 2022
    49:00 - Projects to keep an eye on
    50:52 - Learn more about Evans
    51:44 - Outro

    52 min
  • What does a security manager do? | Cybersecurity Career Series

    Security managers develop security strategies that align with the organization's goals and objectives. In addition, they direct and monitor security policies, regulations and rules that the technical team implements. Knowledge in areas like information security governance, program development and management, incident response and risk management are important to success in any security management role.

    – Start learning cybersecurity for free: https://www.infosecinstitute.com/free
    – Learn more the security manager role: https://www.infosecinstitute.com/role-security-manager/

    0:00 - Intro 
    0:26 - What does a security manager do? 
    3:15 - How do you become a security manager?
    4:54 - What education is required for security managers?
    5:55 - What certificates are required for security managers?
    7:23 - What skills does a security manager need to have?
    9:58 - Common tools security managers use
    11:48 - Where do security managers work?
    13:45 - How well do security managers pivot into other roles?
    15:36 - What step can someone take now to become a security manager?
    17:27 - Outro 

    About Infosec
    Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It’s our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.

    18 min
  • Predictions for cybersecurity in 2022 | Guest Andrew Howard

    Andrew Howard, CEO of Kudelski Security, returns to give us his cybersecurity predictions for 2022! How will cybersecurity protect the supply chain, why is quantum computing on all of his clients' minds, and how would Andrew rewrite security from the ground up if a genie granted him three wishes?

    – Start learning cybersecurity for free: https://www.infosecinstitute.com/free
    – View Cyber Work Podcast transcripts and additional episodes: https://www.infosecinstitute.com/podcast

    0:00 - Intro 
    3:00 - Getting into cybersecurity
    4:00 - How has the cloud evolved?
    6:46 - The past year in cybersecurity
    8:20 - The next cybersecurity innovation 
    8:57 - Where quantum computing is going
    10:15 - Concerns about encryption data
    10:54 - The state of ransomware
    12:57 - Cybersecurity supply chain issues. 
    16:18 - Hybrid work cybersecurity
    18:42 - The year of cyber insurance
    20:35 - DOD directive to close security gaps
    22:15 - What would you change in cybersecurity?
    25:45 - What would put phishing out of mind? 
    28:10 - Advice to 2022 cybersecurity students 
    29:37 - Kudelski Security 
    30:58 - Blockchain security in 2022
    31:57 - Learn more about Kudelski
    32:10 - Outro   

    About Infosec
    Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It’s our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.

    33 min
  • What does a penetration tester do? | Cybersecurity Career Series

    Penetration testers, or ethical hackers, are responsible for planning and performing authorized, simulated attacks within an organization’s information systems, networks, applications and infrastructure to identify vulnerabilities and weaknesses. Findings are documented in reports to advise clients on how to lower or mitigate risk. Penetration testers often specialize in a number of areas such as networks and infrastructures, Windows, Linux and Mac operating systems, embedded computer systems, web/mobile applications, supervisory control data acquisition (SCADA) control systems, cloud systems and internet of things (IoT) devices.

    – Start learning cybersecurity for free: https://www.infosecinstitute.com/free
    – Learn more about the role of penetration tester: https://www.infosecinstitute.com/role-penetration-tester/

    0:00 - Intro 
    0:26 - What does a penetration tester do? 
    1:10 - Levels of penetration testers
    1:50 - How to become a penetration tester
    3:08 - Education needed to be a pentester
    3:50 - Skills needed to pentest
    4:24 - Common tools of the pentester
    5:07 - Training with the tools
    5:42 - Job options for pentesters
    6:36 - Work duty expectations
    7:45 - Can you move to a different role?
    9:09 - What can I do to become a pentester?
    9:54 - Outro 

    About Infosec
    Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It’s our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.

    11 min
  • Security risks facing streamers on Twitch and YouTube | Guest Roderick Jones

    Roderick Jones of Concentric talks about security risks facing content creators, influencers, gamers and streamers on Twitch, YouTube and elsewhere. Online harassment is often seen as “part of the package” if you’re going to work in a public-facing streamer community, but Jones knows that this isn’t inevitable, and it is fixable. A future without a shrug-shoulders approach to online abuse?

    – Create your free Infosec Skills account: https://infosecinstitute.com/free
    – View Cyber Work Podcast transcripts and additional episodes: https://www.infosecinstitute.com/podcast

    0:00 - Intro 
    3:37 - How did you get into cybersecurity?
    5:30 - Were you scouted for your role? 
    6:44 - How did the landscape change?
    8:40 - Security intelligence to private sector
    11:50 - Daily work at Concentric 
    13:25 - Staying up on trends
    15:09 - Gaming, streaming and security issues
    21:31 - Desentization and online personalities 
    25:42 - The future of online access
    27:37 - How to protect streamers
    31:40 - Censoring on streaming platforms with AI
    35:06 - Safeguards streams should have in place
    40:06 - Cybersecurity jobs related to streaming security 
    41:58 - Being courteous online 
    42:43 - More about Concentric
    43:58 - Learn more about Jones
    44:35 - Outro

    About Infosec
    Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It’s our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.

    45 min
  • High-tech hacking tools and how to defend against them | Guest Bentsi Ben-Atar

    Bentsi Ben-Atar of Sepio Systems talks about some truly scary high-tech hacking weapons and techniques, from Raspberry Pis in your mouse or keyboard to charging cables that can exfiltrate data from a mile away. What do we do? How do we prepare?

    – Start learning cybersecurity for free: https://www.infosecinstitute.com/free
    – View Cyber Work Podcast transcripts and additional episodes: https://www.infosecinstitute.com/podcast

    0:00 - Intro 
    3:18 - Getting into cybersecurity
    4:30 - Career highlights 
    5:50 - Co-founding two companies 
    7:22 - Typical work day at CTO and CMO
    11:29 - New stealthy hacking tools
    13:08 - Hacking a smart copy machine
    17:46 - Stealing data with a Raspberry Pi
    26:01 - The ninja cable 
    32:11 - Security awareness while traveling 
    35:20 - How to work battling high-tech cybercrime
    36:35 - Exploring cybersecurity 
    37:47 - More about Bentsi’s companies
    39:31 - Find more about Bentsi 
    39:57 - Outro

    About Infosec
    Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It’s our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.

    41 min
  • How to work in cloud security | Guest Menachem Shafran

    On today’s podcast, Menachem Shafran of XM Cyber talks about cloud security. Menachem tells us about the work of project manager and product manager, how the haste to migrate to the cloud can unnecessarily leave vulnerabilities wide open and why a cloud security expert also needs to be a good storyteller.

    – Start learning cybersecurity for free: https://www.infosecinstitute.com/free
    – View Cyber Work Podcast transcripts and additional episodes: https://www.infosecinstitute.com/podcast

    0:00 - Intro 
    2:40 - Getting into cybersecurity
    5:47 - Project manager in cybersecurity
    9:12 - Identifying pain points
    10:24 - Working as a VP of product
    14:09 - Data breaches
    16:30 - Critical versus non-critical data breaches
    18:19 - Attacker’s market 
    19:38 - How do we secure the cloud?
    22:45 - A safer cycle of teams
    24:40 - How to implement cybersecurity changes
    28:50 - How to work in cloud security
    30:48 - A good cloud security resume 
    33:02 - Work from home and cloud security
    34:30 - XM Cyber’s services 
    37:21 - Learn more about Menachem
    38:00 - Outro

    About Infosec
    Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It’s our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.

    38 min
  • How to get started with bug bounties and finding vulnerabilities | Guest Casey Ellis

    On this week’s Cyber Work Podcast, BugCrowd and disclose.io! founder Casey Ellis discusses how to think like a cybercriminal, the crucial need for transparent vulnerability disclosure, the origins of BugCrowd and why mentorship is a gift that goes in both directions.

    – Start learning cybersecurity for free: https://www.infosecinstitute.com/free
    – View Cyber Work Podcast transcripts and additional episodes: https://www.infosecinstitute.com/podcast

    0:00 - Intro 
    3:15 - Getting into cybersecurity
    4:30 - Criminal mindset in cybersecurity
    5:49 - Ellis’s career to date 
    9:10 - Healthcare cybersecurity
    11:47 - Mentoring others 
    13:52 - Mentorship as a two-way street
    16:12 - Bugcrowd and bug bounty
    19:18 - Vulnerability disclosure project
    21:30 - Bug bounty popularity 
    24:52 - U.S. sanctions on hacking groups
    26:52 - Hiring hackers 
    31:52 - Pursue specialization 
    33:51 - Cyber threats flying under the radar
    39:17 - Working from home safely
    40:48 - How to get into bug bounties
    42:18 - How to report vulnerabilities
    44:04 - Advice to begin ethical hacking 
    45:23 - Learn more about Ellis 
    45:56 - Outro

    About Infosec
    Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It’s our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.

    46 min

About Cyber Work

From the publisher's feed

Learn how to break into cybersecurity, build new skills and move up the career ladder. Each week on the Cyber Work Podcast, host Chris Sienko sits down with thought leaders from Carbon Black, IBM,…