SlideShare a Scribd company logo
1 of 17
Blue Team
Guide for
Fresh Eyes
Presented by
Christine Le
whoami
➔ Security & Tools Engineer
➔ Twitter: @sopooped
Agenda
➔ Challenges
➔ Tackle the Challenges
➔ Mindset to Have
Early Career Challenges
Lack of
experience
Minimal
security
knowledge
Little
industry
exposure
Challenges as a
Security Engineer
Priorities
compete for
attention
Organizations
have technical
debt
Best practices
aren’t always
followed
It’s okay.
Protip
Developing a caffeine
addiction is frowned
upon by those who care
about about your health
and/or are not addicted
to caffeine.
Tackle the Challenges
Plan and
execute
Develop
baseline
knowledge
Stay current
with
technology
trends
Plan
➔ “Success does not happen
overnight”
➔ Plan for failure
➔ It’s more important to deliver
than to bite off more than you can
chew and miss deadlines
Protip
It is not a waste of
time to put in the extra
effort to make an
existing solution
better, nor is it with
learning something
new.
Develop Baseline
Knowledge
➔ Figure out what is being expected
◆ Each shop and role has
different requirements
➔ Determine weaknesses
◆ Understand core security
principles
◆ Get familiar with needed
toolset and tools’ associated
lingo
Protip
Do not run away
from something
just because you
are “not good” at it.
Build Upon Baseline
Knowledge
➔ Consider making the current
solution
◆ Cleaner
◆ Faster
◆ More robust
➔ Automate when possible
◆ Speed up manual tasks
◆ Ensure repeatable steps
➔ Expand comfort zone
Protip
It is not a waste of
time to put in the extra
effort to make an
existing solution
better, nor is it with
learning something
new.
Technology Trends
➔ What are the shiny new toys?
➔ Why is there appeal?
➔ What are the limitations / concerns?
Execute
➔ Run with it
➔ It’s better to deliver late than to
never deliver at all
Keep a Positive Mindset
Remain
calm & be
humble
“It’s never
no. It’s let’s
find a way.”
Have the
appetite to
learn
Keep a Positive Mindset
“It’s never
no. It’s let’s
find a way.”
➔ Can be interpreted differently based on
the context
➔ Business needs to flow, compromise is
needed
➔ You need to grow, don’t give in
Keep a Positive Mindset
Have the
appetite to
learn
➔ Be an independent learner but also reach
out to those more senior than you
➔ Don’t get comfortable
➔ Stay the “dumbest” person in the room for
as long as possible
➔ Things may seem on fire
➔ It will be okay
➔ Don’t forget who helped you
Keep a Positive Mindset
Remain
calm & be
humble
End.
Q & A

More Related Content

What's hot

Ken Sandy, UC Berkeley. 10 Steps to Lead Through Influence
Ken Sandy, UC Berkeley. 10 Steps to Lead Through InfluenceKen Sandy, UC Berkeley. 10 Steps to Lead Through Influence
Ken Sandy, UC Berkeley. 10 Steps to Lead Through InfluenceIT Arena
 
Successful Project Management
Successful Project ManagementSuccessful Project Management
Successful Project ManagementHussein Hallak
 
Agent of Change
Agent of ChangeAgent of Change
Agent of Changemfrost503
 
65 Actual Business Capstone Project Ideas in 2019
65 Actual Business Capstone Project Ideas in 201965 Actual Business Capstone Project Ideas in 2019
65 Actual Business Capstone Project Ideas in 2019Capstone Paper
 
12 Practical Tips To Avoid Procrastination
12 Practical Tips To Avoid Procrastination12 Practical Tips To Avoid Procrastination
12 Practical Tips To Avoid ProcrastinationMill For Business
 
Set Yourself Up For Success in Meeting Deadlines
Set Yourself Up For Success in Meeting DeadlinesSet Yourself Up For Success in Meeting Deadlines
Set Yourself Up For Success in Meeting DeadlinesVirtual Assistant Israel
 
How do you control anticipatory anxiety
How do you control anticipatory anxietyHow do you control anticipatory anxiety
How do you control anticipatory anxietyackerkri
 
Learnings from startups
Learnings from startupsLearnings from startups
Learnings from startupsTopi Järvinen
 
What is everything you know about change was wrong?
What is everything you know about change was wrong?What is everything you know about change was wrong?
What is everything you know about change was wrong?Oscar Trimboli
 
[Product Camp 2021] Product Direction
[Product Camp 2021] Product Direction [Product Camp 2021] Product Direction
[Product Camp 2021] Product Direction Product Camp Brasil
 
Speed Dating + TRUE NORTH tool to simplify your challenges
Speed Dating + TRUE NORTH tool to simplify your challengesSpeed Dating + TRUE NORTH tool to simplify your challenges
Speed Dating + TRUE NORTH tool to simplify your challengesBryan Cassady
 
Remote innovation student_program_sept_2020
Remote innovation student_program_sept_2020Remote innovation student_program_sept_2020
Remote innovation student_program_sept_2020Bryan Cassady
 
Sprintz work Fact Sheet
Sprintz work Fact SheetSprintz work Fact Sheet
Sprintz work Fact SheetBryan Cassady
 
Procrastination PowerPoint PPT Content Modern Sample
Procrastination PowerPoint PPT Content Modern SampleProcrastination PowerPoint PPT Content Modern Sample
Procrastination PowerPoint PPT Content Modern SampleAndrew Schwartz
 

What's hot (20)

Creativity
CreativityCreativity
Creativity
 
Ken Sandy, UC Berkeley. 10 Steps to Lead Through Influence
Ken Sandy, UC Berkeley. 10 Steps to Lead Through InfluenceKen Sandy, UC Berkeley. 10 Steps to Lead Through Influence
Ken Sandy, UC Berkeley. 10 Steps to Lead Through Influence
 
Successful Project Management
Successful Project ManagementSuccessful Project Management
Successful Project Management
 
Agent of Change
Agent of ChangeAgent of Change
Agent of Change
 
Expo y failure
Expo y failureExpo y failure
Expo y failure
 
65 Actual Business Capstone Project Ideas in 2019
65 Actual Business Capstone Project Ideas in 201965 Actual Business Capstone Project Ideas in 2019
65 Actual Business Capstone Project Ideas in 2019
 
12 Practical Tips To Avoid Procrastination
12 Practical Tips To Avoid Procrastination12 Practical Tips To Avoid Procrastination
12 Practical Tips To Avoid Procrastination
 
Set Yourself Up For Success in Meeting Deadlines
Set Yourself Up For Success in Meeting DeadlinesSet Yourself Up For Success in Meeting Deadlines
Set Yourself Up For Success in Meeting Deadlines
 
How do you control anticipatory anxiety
How do you control anticipatory anxietyHow do you control anticipatory anxiety
How do you control anticipatory anxiety
 
Learnings from startups
Learnings from startupsLearnings from startups
Learnings from startups
 
Creative problem solving
Creative problem solvingCreative problem solving
Creative problem solving
 
Course Reflection
Course ReflectionCourse Reflection
Course Reflection
 
What is everything you know about change was wrong?
What is everything you know about change was wrong?What is everything you know about change was wrong?
What is everything you know about change was wrong?
 
[Product Camp 2021] Product Direction
[Product Camp 2021] Product Direction [Product Camp 2021] Product Direction
[Product Camp 2021] Product Direction
 
Speed Dating + TRUE NORTH tool to simplify your challenges
Speed Dating + TRUE NORTH tool to simplify your challengesSpeed Dating + TRUE NORTH tool to simplify your challenges
Speed Dating + TRUE NORTH tool to simplify your challenges
 
Agile Values
Agile ValuesAgile Values
Agile Values
 
Remote innovation student_program_sept_2020
Remote innovation student_program_sept_2020Remote innovation student_program_sept_2020
Remote innovation student_program_sept_2020
 
Sprintz work Fact Sheet
Sprintz work Fact SheetSprintz work Fact Sheet
Sprintz work Fact Sheet
 
Start now with your goals
Start now with your goalsStart now with your goals
Start now with your goals
 
Procrastination PowerPoint PPT Content Modern Sample
Procrastination PowerPoint PPT Content Modern SampleProcrastination PowerPoint PPT Content Modern Sample
Procrastination PowerPoint PPT Content Modern Sample
 

Similar to Blue Team Guide for Fresh Eyes

Product decision making when being on fire
Product decision making when being on fireProduct decision making when being on fire
Product decision making when being on fireMichał Krajewski
 
John Griffin, Ford Credit Europe. Normalising failure and making way for succ...
John Griffin, Ford Credit Europe. Normalising failure and making way for succ...John Griffin, Ford Credit Europe. Normalising failure and making way for succ...
John Griffin, Ford Credit Europe. Normalising failure and making way for succ...IT Arena
 
A lone writer's journey to the startup galaxy
A lone writer's journey to the startup galaxyA lone writer's journey to the startup galaxy
A lone writer's journey to the startup galaxyPriti Gaikwad
 
15 Lessons from 15 Years in the Industry
15 Lessons from 15 Years in the Industry15 Lessons from 15 Years in the Industry
15 Lessons from 15 Years in the IndustryStefan Freimark
 
UXSG2014 Workshop (Day 1) - Lean Startup (Bryan Long)
UXSG2014 Workshop (Day 1) - Lean Startup (Bryan Long)UXSG2014 Workshop (Day 1) - Lean Startup (Bryan Long)
UXSG2014 Workshop (Day 1) - Lean Startup (Bryan Long)ux singapore
 
Growing Early in Your Career as a PM by Microsoft Product Leader
Growing Early in Your Career as a PM by Microsoft Product LeaderGrowing Early in Your Career as a PM by Microsoft Product Leader
Growing Early in Your Career as a PM by Microsoft Product LeaderProduct School
 
Kanbans, Kaizens, and Kata: Demystifying Continuous Improvement
Kanbans, Kaizens, and Kata: Demystifying Continuous Improvement Kanbans, Kaizens, and Kata: Demystifying Continuous Improvement
Kanbans, Kaizens, and Kata: Demystifying Continuous Improvement WiLS
 
Sandbox Learning: How To Transition Your Children Into High School
Sandbox Learning: How To Transition Your Children Into High SchoolSandbox Learning: How To Transition Your Children Into High School
Sandbox Learning: How To Transition Your Children Into High SchoolElizabethNugent8
 
Critical Thinking for Consultants-External
Critical Thinking for Consultants-ExternalCritical Thinking for Consultants-External
Critical Thinking for Consultants-ExternalAsh Winter
 
The Innovation Recipe: Six steps to turn your ideas into results
The Innovation Recipe: Six steps to turn your ideas into resultsThe Innovation Recipe: Six steps to turn your ideas into results
The Innovation Recipe: Six steps to turn your ideas into resultsJenny Vandyke
 
Coaching: Asking the Right Questions
Coaching: Asking the Right QuestionsCoaching: Asking the Right Questions
Coaching: Asking the Right QuestionsTKMG, Inc.
 
When Training Smells
When Training SmellsWhen Training Smells
When Training Smellspquinn1
 
Leadership learnings for success edible oil global leadership meeting
Leadership learnings for success   edible oil global leadership meetingLeadership learnings for success   edible oil global leadership meeting
Leadership learnings for success edible oil global leadership meetingSrinivasan Venkita Padmanabhan
 
Time and Task Management
Time and Task ManagementTime and Task Management
Time and Task ManagementDenisa Jecan
 
Training Methodology in the 21st Century
Training Methodology in the 21st CenturyTraining Methodology in the 21st Century
Training Methodology in the 21st CenturyMirza Yawar Baig
 

Similar to Blue Team Guide for Fresh Eyes (20)

Product decision making when being on fire
Product decision making when being on fireProduct decision making when being on fire
Product decision making when being on fire
 
John Griffin, Ford Credit Europe. Normalising failure and making way for succ...
John Griffin, Ford Credit Europe. Normalising failure and making way for succ...John Griffin, Ford Credit Europe. Normalising failure and making way for succ...
John Griffin, Ford Credit Europe. Normalising failure and making way for succ...
 
A lone writer's journey to the startup galaxy
A lone writer's journey to the startup galaxyA lone writer's journey to the startup galaxy
A lone writer's journey to the startup galaxy
 
15 Lessons from 15 Years in the Industry
15 Lessons from 15 Years in the Industry15 Lessons from 15 Years in the Industry
15 Lessons from 15 Years in the Industry
 
UXSG2014 Workshop (Day 1) - Lean Startup (Bryan Long)
UXSG2014 Workshop (Day 1) - Lean Startup (Bryan Long)UXSG2014 Workshop (Day 1) - Lean Startup (Bryan Long)
UXSG2014 Workshop (Day 1) - Lean Startup (Bryan Long)
 
Growing Early in Your Career as a PM by Microsoft Product Leader
Growing Early in Your Career as a PM by Microsoft Product LeaderGrowing Early in Your Career as a PM by Microsoft Product Leader
Growing Early in Your Career as a PM by Microsoft Product Leader
 
Nightmare on PMO Street
Nightmare on PMO StreetNightmare on PMO Street
Nightmare on PMO Street
 
The ZapStitch Culture
The ZapStitch CultureThe ZapStitch Culture
The ZapStitch Culture
 
Kanbans, Kaizens, and Kata: Demystifying Continuous Improvement
Kanbans, Kaizens, and Kata: Demystifying Continuous Improvement Kanbans, Kaizens, and Kata: Demystifying Continuous Improvement
Kanbans, Kaizens, and Kata: Demystifying Continuous Improvement
 
Finding What's Next
Finding What's NextFinding What's Next
Finding What's Next
 
Sandbox Learning: How To Transition Your Children Into High School
Sandbox Learning: How To Transition Your Children Into High SchoolSandbox Learning: How To Transition Your Children Into High School
Sandbox Learning: How To Transition Your Children Into High School
 
Critical Thinking for Consultants-External
Critical Thinking for Consultants-ExternalCritical Thinking for Consultants-External
Critical Thinking for Consultants-External
 
The Innovation Recipe: Six steps to turn your ideas into results
The Innovation Recipe: Six steps to turn your ideas into resultsThe Innovation Recipe: Six steps to turn your ideas into results
The Innovation Recipe: Six steps to turn your ideas into results
 
Coaching: Asking the Right Questions
Coaching: Asking the Right QuestionsCoaching: Asking the Right Questions
Coaching: Asking the Right Questions
 
When Training Smells
When Training SmellsWhen Training Smells
When Training Smells
 
Workshop presentation
Workshop presentationWorkshop presentation
Workshop presentation
 
Leadership learnings for success edible oil global leadership meeting
Leadership learnings for success   edible oil global leadership meetingLeadership learnings for success   edible oil global leadership meeting
Leadership learnings for success edible oil global leadership meeting
 
Time and Task Management
Time and Task ManagementTime and Task Management
Time and Task Management
 
Training Methodology in the 21st Century
Training Methodology in the 21st CenturyTraining Methodology in the 21st Century
Training Methodology in the 21st Century
 
Kaizen
KaizenKaizen
Kaizen
 

Recently uploaded

Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Wonjun Hwang
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfAlex Barbosa Coqueiro
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024Lorenzo Miniero
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsRizwan Syed
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Mattias Andersson
 
Story boards and shot lists for my a level piece
Story boards and shot lists for my a level pieceStory boards and shot lists for my a level piece
Story boards and shot lists for my a level piececharlottematthew16
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Commit University
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationRidwan Fadjar
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 3652toLead Limited
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machinePadma Pradeep
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsMemoori
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024Scott Keck-Warren
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsSergiu Bodiu
 
Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsMiki Katsuragi
 
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr LapshynFwdays
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 
Commit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyCommit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyAlfredo García Lavilla
 

Recently uploaded (20)

Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdf
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL Certs
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?
 
Story boards and shot lists for my a level piece
Story boards and shot lists for my a level pieceStory boards and shot lists for my a level piece
Story boards and shot lists for my a level piece
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 Presentation
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machine
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial Buildings
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platforms
 
Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering Tips
 
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 
Commit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyCommit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easy
 

Blue Team Guide for Fresh Eyes

  • 1. Blue Team Guide for Fresh Eyes Presented by Christine Le
  • 2. whoami ➔ Security & Tools Engineer ➔ Twitter: @sopooped
  • 3. Agenda ➔ Challenges ➔ Tackle the Challenges ➔ Mindset to Have
  • 4. Early Career Challenges Lack of experience Minimal security knowledge Little industry exposure
  • 5. Challenges as a Security Engineer Priorities compete for attention Organizations have technical debt Best practices aren’t always followed
  • 6. It’s okay. Protip Developing a caffeine addiction is frowned upon by those who care about about your health and/or are not addicted to caffeine.
  • 7. Tackle the Challenges Plan and execute Develop baseline knowledge Stay current with technology trends
  • 8. Plan ➔ “Success does not happen overnight” ➔ Plan for failure ➔ It’s more important to deliver than to bite off more than you can chew and miss deadlines Protip It is not a waste of time to put in the extra effort to make an existing solution better, nor is it with learning something new.
  • 9. Develop Baseline Knowledge ➔ Figure out what is being expected ◆ Each shop and role has different requirements ➔ Determine weaknesses ◆ Understand core security principles ◆ Get familiar with needed toolset and tools’ associated lingo Protip Do not run away from something just because you are “not good” at it.
  • 10. Build Upon Baseline Knowledge ➔ Consider making the current solution ◆ Cleaner ◆ Faster ◆ More robust ➔ Automate when possible ◆ Speed up manual tasks ◆ Ensure repeatable steps ➔ Expand comfort zone Protip It is not a waste of time to put in the extra effort to make an existing solution better, nor is it with learning something new.
  • 11. Technology Trends ➔ What are the shiny new toys? ➔ Why is there appeal? ➔ What are the limitations / concerns?
  • 12. Execute ➔ Run with it ➔ It’s better to deliver late than to never deliver at all
  • 13. Keep a Positive Mindset Remain calm & be humble “It’s never no. It’s let’s find a way.” Have the appetite to learn
  • 14. Keep a Positive Mindset “It’s never no. It’s let’s find a way.” ➔ Can be interpreted differently based on the context ➔ Business needs to flow, compromise is needed ➔ You need to grow, don’t give in
  • 15. Keep a Positive Mindset Have the appetite to learn ➔ Be an independent learner but also reach out to those more senior than you ➔ Don’t get comfortable ➔ Stay the “dumbest” person in the room for as long as possible
  • 16. ➔ Things may seem on fire ➔ It will be okay ➔ Don’t forget who helped you Keep a Positive Mindset Remain calm & be humble

Editor's Notes

  1. I started out as an intern, automating detection processes, deploying infrastructure for the team’s tools, and learning how to write playbooks. For the most part, I was sheltered by the intern bubble. Then about a year ago, I transitioned to my current role, and my responsibilities grew. I now do even more of what I did as an intern, and I get to review and improve upon the organization’s security in the cloud. I’ve learned A LOT this year, but there were challenges everywhere along the way.
  2. So this talk covers the big challenges that I noticed would be common to those new to the defensive world, lessons learned, and protips to help navigate the way to success!
  3. There are always early career challenges, and they’re pretty similar across the board. When I first started, the “real world” security knowledge stemmed from a security 101 college course and attending Defcon and BSides. I had very little exposure to working in industry overall. And although I was willing to bang on the pipes, I didn’t know which pipes to bang on.
  4. There are a lot of moving parts. It gets stressful. You’re going to play catch up. There are stipulations to this statement.
  5. Getting familiar means doing your homework. Do not just read the description of what a tool or API call does, but actually read the documentation page. DO NOT MAKE ASSUMPTIONS. I don’t know how many times I learned this the hard way: Goes to deploy add-on to Splunk heavy forwarder. Learns that it’s controlled by the deployment master. “go get” where does the package come from? How is it validated? DID I GET IT FROM RUSSIA OR CHINA? Changes configuration on S3 bucket. Breaks entire team’s production service.
  6. I’m someone who doesn’t like to settle for “good enough.” And I wouldn’t recommend to anyone looking to really pursue a career that requires constant learning. After establishing the foundational knowledge, keep doing and you’ll get better. Sure, experience is key in growth, but what if you can expedite that growth? This is basically “extra credit.”
  7. Figuring out what needs to be worked upon and addressing those areas are big steps towards advancing your career. But how do you stay current to make sure you’re continuing to move in the right direction? By paying attention to technology trends. There are new frameworks, models, services, and tools released all the time. Staying up-to-date will help you make decisions as to which tools to bring into your security environment and how to advise non-security teams within the organization. Building on to the importance of staying up-to-date with trends, attackers follow technology trends to exploit them. You do not want to be caught off guard. For example, how many of you use docker and kubernetes? Containerizing things and controlling entire fleets has taken engineering developments to a different level. However, according to Mitre’s CVE listings, there are about 20 CVEs related to docker and almost another 20 related to kubernetes in the past year. Your security team might not use docker and kubernetes, but understanding how the mechanics of how they work and how they’re being used within your organization will help with either patching or remediation when the time comes.
  8. Stay the dumbest person in the room for as long as possible. Things will be on fire. Don’t get comfortable. Don’t forget who helped you-- whether it be your mentor, the person who called you out on your bullshit, or the IT staff who unlocked your account because you can’t seem to type your password correctly.
  9. If there’s a will, there’s a way Security assessments Defining a meaningful solution
  10. Whether it be your mentor, the person who called you out on your bullshit, or the IT staff who unlocked your account because you can’t seem to type your password correctly.