Is a SOC analyst an entry-level cyber security role? | What is Vulnerability Management?

Sdílet
Vložit
  • čas přidán 26. 08. 2024
  • Get into cybersecurity with Leveld Careers and use my code TechTual10 to get 10%off your course.
    ⬇️ www.leveldcare...
    Have you wondered if you can work in a SOC with 0 experience? In this snippet Destini breaks down how it feels to work in a SOC with ) cyber security experience. She also talks about what is vulnerability management and why it is necessary in any environment. #socanalyst #cybersecurity #vulnerabilitymanagement
    Watch full episode here: • She Quit Claims Adjust...
    ➡️ Need help getting into Cybersecurity for a low price?
    Check out Josh Madakor's Cybersecurity course at Leveld Careers and use my code TechTual10 to get 10%off your course.
    ⬇️
    www.leveldcare...
    ➡️ Need a new resume done or need coaching from me⬇️
    techualconsult...
    ➡️ Want to land your first IT Job?
    Then check out the IT course from Course careers use my link and code Techtual50 to get $50 off your course ⬇️
    account.course...
    ➡️Looking to start your career in the cloud? If so check out the link below: ⬇️
    Levelupintech.c...
    ➡️ Donate to the channel here: paypal.me/tech...
    Subscribe to my mailing list: forms.wix.com/...
    ➡️ Check out The TechTual Talk Podcast: thetechtualtal...
    ➡️ Follow me on social media:
    Instagram: / techtualchatter
    TIkTok: / techtualchatter
    Twitter: / techtualchatter
    LinkedIn: / henri-davis
    -----------------------------------------------
    FTC Legal Disclaimer - Some links found in the description box of my videos may be affiliate links, meaning I will make a commission on sales you make through my link. This is at no extra cost to you to use my links/codes, it's just one more way to support me and my channel! :)

Komentáře • 149

  • @TechTualChatter
    @TechTualChatter  Před 10 měsíci +8

    ➡ Need help getting into Cybersecurity for a low price?
    Check out Josh Madakor's Cybersecurity course at Leveld Careers and use my code TechTual10 to get 10%off your course.

    www.leveldcareers.com/a/2147530874/RuqjrBGj
    ➡ Want to land your first IT Job?
    Then check out the IT course from Course careers use my link and code Techtual50 to get $50 off your course ⬇
    account.coursecareers.com/ref/50932/
    ➡Looking to start your career in the cloud? If so check out the link below: ⬇
    levelupintech.lpages.co/level-up-in-tech-book-a-call-tech/
    ➡ Donate to the channel here: paypal.me/techtualconsulting?country.x=US&locale.x=en_US

  • @actingbarber
    @actingbarber Před 9 měsíci +63

    She is right when it comes to vulnerability management. You must have good communication skills to motivate the team to the sense of urgency having workstation and servers patched.

    • @ShadowAssault
      @ShadowAssault Před 9 měsíci +4

      I tell them the volunerability and what they need todo to remediate it. If they dying listen that's on them. We force assets into quarantine after grace period.. Then they scramble because it now affects their productivity. Shouoda listened.

    • @JeffCaplan313
      @JeffCaplan313 Před 9 měsíci

      ​@ShadowAssault Is your quarantine threshold properly documented?
      Do you have an exception management process?

  • @mauriceandrewsjr5929
    @mauriceandrewsjr5929 Před 10 měsíci +55

    2:51 One of the best pieces of advice you can ever give. This could be applicable to other fields, but in cybersecurity, there are so many aspects to learn. If you can help, then help that person understand that issue or principle. People gatekeep information to not work any harder than they have to or to claim "job security." It's wild out here in cybersecurity. 🤣😆

    • @TechTualChatter
      @TechTualChatter  Před 10 měsíci +5

      Extremely wild man 😂😂

    • @dmoney23935
      @dmoney23935 Před 9 měsíci +5

      As someone who has spent their first year in a SOC, this is wildly accurate 😭 it is definitely the wild Wild West.

    • @JeffCaplan313
      @JeffCaplan313 Před 9 měsíci +2

      When everyone wants to be a gatekeeper, it pays to be Cerberus. 🐺

  • @willabeez3106
    @willabeez3106 Před 9 měsíci +9

    Shes right about vuln mgmt done it for 5 years and its not sexy but it gives you so much experience on different technologies and you gotta know how to finesse basically.

  • @whatchyagonnado
    @whatchyagonnado Před 9 měsíci +20

    I love that question, "Is that something I should've known?"
    I know someone in the field that complained about being payed less than the new guys he was training because he didn't have the same degree. He switched companies and got a huge pay raise lol.

  • @jimmygunnz5651
    @jimmygunnz5651 Před 9 měsíci +5

    I like that you guys started with telling people to be helpful to new comers because I actually switched from
    networking to Software dev because when I got to my first MSP which was small and family owned….I came across rude and unhelpful coworkers. I believe they did not want another person in their three man team so they barely spoke to me and showed obvious hesitation when I would ask for help even knowing I had no experience except for self taught knowledge. It was a nightmare. So much so that I went back to truck driving and self taught myself a coding language. I still have dreams of eventually getting into cybersecurity but I will spend some time as a backend dev using python and SQL.

  • @TheWizardjones
    @TheWizardjones Před 9 měsíci +13

    Man, I am gonna simp a little, but you have some of the finest nerdy ladies on your show. Why don’t they exist around where I live? 😅

  • @alonzosmith6189
    @alonzosmith6189 Před 10 měsíci +10

    Yes, sharing the knowledge is key, build relationships

  •  Před 9 měsíci +46

    As a black woman currently pivoting into the Cyberspace/Cybersecurity world, you have gained a new subscriber

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci +2

      Thank you ❤️

    • @joice2871
      @joice2871 Před 9 měsíci +7

      “As a black women” always using the race card

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci +9

      @@joice2871 stupid comment of the day goes to ypu

    • @joice2871
      @joice2871 Před 9 měsíci +2

      @@TechTualChatter says the person that can’t spell “you”

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci +4

      @@joice2871 auto correct 🤷🏾

  • @isaiahrouse4173
    @isaiahrouse4173 Před 9 měsíci +6

    Good interview. Honesty and transparency. Imposter syndrome can be real but keep learning and find a good team that will help you grow. Very important in this field.

  • @batserke6006
    @batserke6006 Před 9 měsíci +11

    I will never leave SOC engineering for analyst, people wanting to get into SOC analyst have no idea about the stress waiting for them.

    • @domt1625
      @domt1625 Před 9 měsíci +5

      In what way? I am starting in learning to be an information security analyst so I'm curious.

    • @batserke6006
      @batserke6006 Před 9 měsíci +1

      ​@@domt1625 Well, basically you are the last line of defence, so if there is a real security issue you will have to resolve it fast.
      Also, the work is super repetative and you will go through a lot of false positives.
      So besides stress/burnout you also have boreout factors.

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci +1

      @batserke6006 first line of defense not last

    • @batserke6006
      @batserke6006 Před 9 měsíci

      @@TechTualChatterFirst line of defense are the FWs and other defenses in place. You can argue that there is also csirt teams after analysts, but that’s beside the point I wanted to make regarding stress and boreout. Hierarchy is different in each company anyway.

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci +1

      Yup but burnout only happens when the environment is not tuned correctly

  • @ojimakasu2008
    @ojimakasu2008 Před 9 měsíci +22

    One of the most frustrating things about being in infosec is dealing with leadership that thinks compliance is security.

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci +15

      It is security though…

    • @joelrobert4053
      @joelrobert4053 Před 9 měsíci +4

      what do you mean by that?

    • @securityfolk
      @securityfolk Před 9 měsíci +6

      @@joelrobert4053he's prob meaning that some C-levels do security by compliance, not to actually enhance the company security.

    • @JeffCaplan313
      @JeffCaplan313 Před 9 měsíci +6

      Compliance must be complied with! 😂😂😂

    • @extoxico277
      @extoxico277 Před 9 měsíci +3

      ​@@JeffCaplan313right or you get fined 😂

  • @joshdickson6938
    @joshdickson6938 Před 9 měsíci +11

    "absolutely not for entry level people" Then paid promotion into, Become a cyber security professional! No degrees or certs required!! $113k average annual salary!!

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci +5

      Every role is not a soc role in cybersecurity lol

  • @joesph9748
    @joesph9748 Před 9 měsíci +2

    Great advice on how to work with others and build competence. What a cool job and seemingly very complex.

  • @GreenKC
    @GreenKC Před 10 měsíci +15

    I was recently hired as an associate SOC Analyst and I’m very nervous about how I’ll fit in when I start

    • @TechTualChatter
      @TechTualChatter  Před 10 měsíci +6

      Just ask good questions and research documentation at work( if there is any) it’ll help out alot

    • @coulsonjackson
      @coulsonjackson Před 9 měsíci +6

      What experience and certs do you have?

    • @JeffCaplan313
      @JeffCaplan313 Před 9 měsíci +3

      Ask questions. Document.
      That's all there is to it.

  • @brandieddy5012
    @brandieddy5012 Před 7 měsíci

    I'm so happy I found this podcast. I'm currently working on my certification. I'm so glad you're here.

    • @TechTualChatter
      @TechTualChatter  Před 7 měsíci

      Appreciate you! What did you take away from this episode

  • @unickshenry4047
    @unickshenry4047 Před 9 měsíci +2

    I just got my google cyber security certification, and IT Administration certification. I’m looking for an opportunity

  • @Trihope
    @Trihope Před 9 měsíci +3

    Energy as you call it is key in life. 3:56

  • @ibrahimYODA-qk1ng
    @ibrahimYODA-qk1ng Před 9 měsíci +2

    I just got through my qualys training ! it was worth it

  • @trblmkr5139
    @trblmkr5139 Před 9 měsíci +5

    ok im scared. mission accomplished

  • @joanebaptiste-cummins3207
    @joanebaptiste-cummins3207 Před 3 měsíci

    How does one create a homelab? Is it cost prohibitive if you're not working?

  • @cyberwave1
    @cyberwave1 Před 9 měsíci +2

    One day I'm going to be a guest on your show. Keep up the great content!

  • @NeekRusher
    @NeekRusher Před 9 měsíci

    Wow you mentioned Wanna Cry virus. I work for NYCT. I had to go into the subway tunnel in one of the heating rooms and remediate a computer that got hit with wanna cry.

  • @JeffCaplan313
    @JeffCaplan313 Před 9 měsíci +3

    Great guest and great interview. 👍

  • @natking1u1z99
    @natking1u1z99 Před 9 měsíci +1

    For the first time in 10 years I had my first bad co-worker experiance. The guy was a jealous jerk, he didn't want to train the new onboards on certain processes and I was one of those onboards what pissed him off about me is that I hit the ground running as they like to say in tech. I was taking ownership and closing tickets in my first week I'm experianced what did they expect? Anyhow, we didn't get along he picked at me for one last time and i let him know about himself. He had a relationship the manager so she kept him and I lost my job even though there were people who had my back.

  • @M.W.777
    @M.W.777 Před 6 měsíci

    Noice...this was great to wake up to with a coffee! Appreciate the experience advice! Take care!!

  • @blackamericanlesbianprofes4357
    @blackamericanlesbianprofes4357 Před 9 měsíci +7

    Would you please give the interviewee in the video more time to chat about their experiences? You keep talking about your experiences as the host. 02nov23

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci

      Watch the whole episode,…

    • @blackamericanlesbianprofes4357
      @blackamericanlesbianprofes4357 Před 9 měsíci +1

      @@TechTualChatter If you're talking about this video, I did watch the whole thing while I am at work. Hints why I gave my comment. The title intrigued me but you hardly allowed the interviewee to explain.

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci

      @@blackamericanlesbianprofes4357 im talking about the full episode. This segment wasn’t long they explained what they could

    • @blackamericanlesbianprofes4357
      @blackamericanlesbianprofes4357 Před 9 měsíci

      @@TechTualChatter I will look for the complete interview video when I have time.

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci

      @@blackamericanlesbianprofes4357 no worries the link is in the description
      To sum it up the episode is about her transition from insurance to cybersecurity specifically working in the cloud

  • @AssurahOdinga
    @AssurahOdinga Před 9 měsíci

    M trying to get my hands on every small content that goes about Cyberspace

  • @dennisreynolds9202
    @dennisreynolds9202 Před 9 měsíci +1

    Got a question what is CompTIA’s Healthcare IT?

  • @RayAlejandroGaviriaAlegria
    @RayAlejandroGaviriaAlegria Před 3 měsíci

    i need be soc analyst, where i found a job. are important the idiom ?

  • @ShadowAssault
    @ShadowAssault Před 9 měsíci

    I tell them the volunerability and what they need todo to remediate it. If they dying listen that's on them. We force assets into quarantine after grace period.. Then they scramble because it now affects their productivity. Shouoda listened.

  • @bolajibankole8079
    @bolajibankole8079 Před 9 měsíci +1

    This is very informative , Thanks

  • @QR5-cyber-exp
    @QR5-cyber-exp Před 3 měsíci

    Great conversation - keeping it real!!

  • @TimCummingsFatLoss
    @TimCummingsFatLoss Před 4 měsíci

    6:20 vulnerability management

  • @Ricocase
    @Ricocase Před 2 měsíci

    I hoped cybersecurity was more of meritocracy. Sad to hear about those typical 'isms' within cyber.

  • @devinphillips1212
    @devinphillips1212 Před 9 měsíci +1

    I’ll be booking a consultation with you in a few months!!😁

  • @damonaniton
    @damonaniton Před 9 měsíci +4

    I try to tell people all the time that a SOC, or security in general, is not an entry level place.

  • @waz1167
    @waz1167 Před 6 měsíci

    Thanks for the great video. I'm currently studying for the Cisco CyberOps Associates to help me land an entry level position so this video helped a lot in knowing a little bit about what to expect in a SOC position. In your opinion, will I have a better chance of landing a job in help desk or as a Jr. SOC analyst? Thanks

    • @TechTualChatter
      @TechTualChatter  Před 6 měsíci

      I don’t know your background so it’s hard to tell

    • @waz1167
      @waz1167 Před 6 měsíci

      I have zero experience in IT field. I've taught myself some HTML and CSS code over the years but I'm coming from construction and trying to change careers so I'm starting from the ground up. I do have an associates in general studies. Thanks@@TechTualChatter

  • @TheMCTVShow
    @TheMCTVShow Před 9 měsíci

    As a financial analyst, is their an equivalent within the tech sphere where I could learn tech applicable skills?

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci +1

      Yes there is. There is a space called governance risk and compliance

  • @dvldog414
    @dvldog414 Před 9 měsíci

    Very informative for a new SOC Analyst

  • @thekingslayer8463
    @thekingslayer8463 Před 9 měsíci

    Wish I could get into IT. Too bad it’s too late.

  • @Pk223-r1t
    @Pk223-r1t Před měsícem

    Cybersecurity in general is not entry level. How can protect a system without understanding how that system works?

    • @TechTualChatter
      @TechTualChatter  Před měsícem

      @@Pk223-r1t easy by learning how to protect it…

    • @Pk223-r1t
      @Pk223-r1t Před měsícem +1

      @@TechTualChatter Right, so you're going to learn how to protect a network without learning how a network works - Don't you claim to have a cybersec background? I understand you need to use click-bait to get your channel going but that's misleading to a lot of people.
      A good application pen tester generally understands how applications work. Even the lowest, most brainless feeder roles in cyber like SOC analyst demand a general IT understanding. A simple role like a Security Engineer requires Networking knowledge. You can't really work with a Firewall without understanding Networking. It is inherent to the technology you're trying to protect.
      Most people compare Entry level IT jobs (Helpdesk) with Entry level Cyber jobs (SOC analyst, Security engineer), which is wrong, the Entry level cyber roles expect you to have the help-desk knowledge at a minimum.

    • @TechTualChatter
      @TechTualChatter  Před měsícem

      @@Pk223-r1t do you want a cookie ?
      because you clearly haven’t watched the full episode 🤣

    • @Pk223-r1t
      @Pk223-r1t Před měsícem

      @@TechTualChatter Well that much is true at least, I'll go and finish watching it. :D

    • @JacuzziFlats
      @JacuzziFlats Před měsícem

      ⁠ attest to this. As I went through the various hardening standards I’d basically pivot to a google search of xyz setting. NOW be careful not to go crazy and spend hours looking into one term. This may not be the best advice but understand the general idea and pivot back to the hardening content.
      CIS has free accounts and I think they’ll offer preconfigured images (fact check me on that tho)

  • @actingbarber
    @actingbarber Před 9 měsíci +9

    She is attractive, she is going to get the help need, unless she works around some females

  • @Jae_hoffa
    @Jae_hoffa Před 9 měsíci

    Great interview 🙌🏾💯💯💯

  • @tamerajames5590
    @tamerajames5590 Před 9 měsíci +1

    She is so pretty!!! Love to see a successful black girl in tech

  • @Sci-Fi_Fan296
    @Sci-Fi_Fan296 Před 10 měsíci +1

    ty

  • @joshuadavis5823
    @joshuadavis5823 Před 10 měsíci +3

    What’s her name?

  • @user-vu9gd8ed1h
    @user-vu9gd8ed1h Před 9 měsíci +1

    Try to spell out what acronyms mean for newcomers to your channel that might not know.

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci

      That wouldn’t have made for a good tittle

    • @JeffCaplan313
      @JeffCaplan313 Před 9 měsíci

      Nonono! Security through obscurity (STO!) Use all the TLAs!

  • @floridaman7
    @floridaman7 Před 9 měsíci +2

    Its not worth it working in a soc.

  • @chrisb1906
    @chrisb1906 Před 4 měsíci

    Took my security + and failed

    • @TechTualChatter
      @TechTualChatter  Před 4 měsíci +1

      Focused on the areas you are bad in and retake it

    • @chrisb1906
      @chrisb1906 Před 4 měsíci

      @TechTualChatter brother I plan on it. I'm trying to install Ubuntu on my VM Box to get a better understanding and for whatever reason, I can't get that to work properly. Worst month of my life

    • @TechTualChatter
      @TechTualChatter  Před 4 měsíci

      @@chrisb1906 using Mac or windows?

    • @chrisb1906
      @chrisb1906 Před 4 měsíci

      @@TechTualChatter windows

    • @chrisb1906
      @chrisb1906 Před 4 měsíci

      @@TechTualChatter windows 10

  • @MyCreativeOasis
    @MyCreativeOasis Před měsícem

    Not to be that person but how are you saying your not about the "become cybersecurity professional in three months with no experience" bull but your accepting sponsorships from such people and organisations? That's being a hypocrite

  • @Death_User666
    @Death_User666 Před 9 měsíci +1

    Its not a hard role if you have skills lol

  • @ruslanbedoev9264
    @ruslanbedoev9264 Před 7 měsíci

    oh yeah try working construction on high rises that we'll talk 😂😂😂

  • @kimberleenicole1
    @kimberleenicole1 Před 4 měsíci

    The interviews literally feels like interrogation.

    • @TechTualChatter
      @TechTualChatter  Před 4 měsíci

      This snippet is chopped up the full version isn’t

  • @ABShinobi
    @ABShinobi Před 9 měsíci

    JEALOUSY smh

  • @amjads8971
    @amjads8971 Před 9 měsíci +1

    lol what a joke. Seriously it makes me laugh to see how It security folks do nothing and relies on tools. Everything is well documented and standards are in place . Easiest work

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci +7

      Man shut up cause it’s definitely not always documented 😂

    • @JeffCaplan313
      @JeffCaplan313 Před 9 měsíci

      "RTFM"
      And if it's NOT documented but you still figure it out, welcome to the world of reverse engineering! 🤓

  • @TheGuillotineKing
    @TheGuillotineKing Před 9 měsíci

    Fun Fact this job won't exist in three years AI will replace her and him

    • @TechTualChatter
      @TechTualChatter  Před 9 měsíci +6

      False 😂😂
      Ai can’t be used everywhere just yet

    • @femmy3163
      @femmy3163 Před 6 měsíci

      Look at AI as a tool and not a competitor.