惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

博客园 - Franky
U
Unit 42
MyScale Blog
MyScale Blog
B
Blog
阮一峰的网络日志
阮一峰的网络日志
量子位
IT之家
IT之家
The GitHub Blog
The GitHub Blog
F
Fortinet All Blogs
Recent Announcements
Recent Announcements
V
Visual Studio Blog
G
Google Developers Blog
Last Week in AI
Last Week in AI
雷峰网
雷峰网
博客园 - 聂微东
博客园 - 叶小钗
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
J
Java Code Geeks
博客园 - 司徒正美
Y
Y Combinator Blog
T
The Blog of Author Tim Ferriss
月光博客
月光博客
aimingoo的专栏
aimingoo的专栏

Black Hills Information Security, Inc.

Bad Habits: An ANTISOC Operation Same Problem, Different Angles: When Red Team and Blue Team Actually Talk to Each Other How to Identify and Exploit New Vulnerabilities Swapper – A Pure Regex Match/Replace Burp Extension A Practical Guide to BloodHound Data Collection Network Engineering Basics Signed, Trusted, and Abused: Proxy Execution via WebView2 Getting Started In Pentesting – Advice From The BHIS Pentest Lead Cloud Security: Tips and Resources for Securing the Cloud Lessons From A Chatbot Incident How to Lead Effective Tabletops Understanding GRC: How to Navigate Risks and Compliance Standards The “P” in PAM is for Persistence: Linux Persistence Technique Malware Analysis: How to Analyze and Understand Malware OSINT: How to Find, Use, and Control Open-Source Intelligence What to Do with Your First Home Lab When the SOC Goes to Deadwood: A Night to Remember Social Engineering and Microsoft SSPR: The Road to Pwnage is Paved with Good Intentions Common Cyber Threats Finding the Right Penetration Testing Company Deceptive-Auditing: An Active Directory Honeypots Tool The Curious Case of the Comburglar How to Set Smart Goals (That Actually Work For You) Inside the BHIS SOC: A Conversation with Hayden Covington Abusing Delegation with Impacket (Part 3): Resource-Based Constrained Delegation Why You Got Hacked – 2025 Super Edition Abusing Delegation with Impacket (Part 2): Constrained Delegation Abusing Delegation with Impacket (Part 1): Unconstrained Delegation GoSpoof – Turning Attacks into Intel Model Context Protocol (MCP)
How to Get a Job in Cybersecurity
BHIS · 2024-09-05 · via Black Hills Information Security, Inc.

, , , , , ,

by Gerald Auger of Simply Cyber // Guest Author

This article was originally published in the InfoSec Survival Guide: Green Book. Find it free online HERE or order your $1.25 physical copy on the Spearphish General Store.

You want to break into cybersecurity? That’s AWESOME. I’ve been in the field for 20 years and I LOVE IT!

But embarking into a cybersecurity career can be overwhelming. There is just SO MUCH out there that parsing through it would be an endless task. This concise “cheat sheet” presents a solid 10-step approach to starting your career journey.

  1. Gain baseline knowledge
    • If you don’t understand how the tech is supposed to wrok, you won’t understand when it’s doing things anomalously. Learn fundamentals of operating systems, networking, and using a command line. You don’t have to be a Linux admin or network engineer to move on to step 2, but get the fundamentals down and keep building your skills while you continue the process.
  2. Build a strong LinkedIn profile
    • This is your digital resume. Many hiring managers will look you up when you are going for an interview. Plus, you can use it to start networking like a boss (step 9). Use Canva.com (for free!) for great, fast graphics for your bio pics, header images, and social posts.
  3. Stay informed about industry trends
  1. Identify your desired role
    • It’s far too much to learn everything, so find the job/role you have passion for and lean into it.
  2. Connect with role-specific communities
    • Network and learn from people doing your desired role already. There are lots of Discord communities for all aspects of cyber.
  3. Acquire role-specific training
    • Practical skills reign supreme for employers hiring, so getting those sweet, sweet, hands-on skills will be valuable.
  4. Tailor your resume to showcase your skills
    • Use free ChatGPT to tune your resume for specific job postings and get all the benefits without the frustration and exhaustion of constantly tweaking your resume.
  5. Consider earning the Security+ certification
    • This is very specific, but most HR will put it on entry-level cyber job requirements, so it can pay dividends.
  6. Network and hunt for job opportunities
    • Fun fact — Many jobs are never advertised because people know people that can do the job, so they get the job. Focus on delivering value, engaging within, and ‘showing up’ for your professional network. Networking is immeasurably valuable.
  7. Ace the job interview
    • You’ve done all the work; this should be the easiest part. If you want a confidence boost, use free ChatGPT to mock interview you, tailored for the job you’re going for and the person doing the interviewing!

You’ve got the blueprint now! Grab it, execute it, grow your skills, contribute to the community, and enjoy the journey.

Additional Resources

Read more in our “Infosec for Beginners” blog series: