Advertisement
If you have a new account but are having problems posting or verifying your account, please email us on hello@boards.ie for help. Thanks :)
Hello all! Please ensure that you are posting a new thread or question in the appropriate forum. The Feedback forum is overwhelmed with questions that are having to be moved elsewhere. If you need help to verify your account contact hello@boards.ie
Hi there,
There is an issue with role permissions that is being worked on at the moment.
If you are having trouble with access or permissions on regional forums please post here to get access: https://www.boards.ie/discussion/2058365403/you-do-not-have-permission-for-that#latest

whats it like working in IT security?

  • 18-05-2014 4:42pm
    #1
    Registered Users, Registered Users 2 Posts: 882 ✭✭✭


    Is it interesting?


Comments

  • Registered Users, Registered Users 2 Posts: 5,112 ✭✭✭Blowfish


    It's a difficult question to answer as InfoSec is broad and is involved not just in every aspect of IT, but in some areas outside of IT also. The jobs are incredibly varied, do you have any idea which aspects you find appealing?

    On a personal level, I do find my own role interesting, though I know it's not for everyone and there are other parts of InfoSec that I wouldn't really be interested in working in.


  • Closed Accounts Posts: 824 ✭✭✭Kinet1c


    A company I worked for had several security teams, as follows:

    1. Security review of code created internally (requires good coding skills)

    2. IT process security along with release management (higher level view, cert like CISSP would suit)

    3. Threat management including malware analysis etc. (more suited to OSCP type stuff or CEH ;) )


  • Registered Users, Registered Users 2 Posts: 203 ✭✭industrialhorse


    Kinet1c wrote: »
    A company I worked for had several security teams, as follows:

    1. Security review of code created internally (requires good coding skills)

    2. IT process security along with release management (higher level view, cert like CISSP would suit)

    3. Threat management including malware analysis etc. (more suited to OSCP type stuff or CEH ;) )

    Dont forget Business Continuity & Disaster Recovery and a hell of a lot of firefighting!!!


  • Registered Users, Registered Users 2 Posts: 1,120 ✭✭✭thomas anderson.


    Its great.

    I stand outside the Comms Room door with a bat and tell people to move along.


  • Registered Users, Registered Users 2 Posts: 4,331 ✭✭✭Keyzer


    Its great.

    I stand outside the Comms Room door with a bat and tell people to move along.

    You hear that Mr. Anderson?... That is the sound of inevitability...


  • Advertisement
  • Closed Accounts Posts: 18,966 ✭✭✭✭syklops


    I work with people who do risk and compliance which to me sounds as dull as dishwater but they love. I do Pen Testing and SIEM deployment, which means I always have my head in a shell, which they can't imagine anything worse which I love.

    Pen testing has its dull days as well. Lots of paper work and lots of customer interaction. Plus most people around you dont really understand what it is you do(including your managers).

    I'd say its on a par with almost any other IT job to be honest.


  • Posts: 0 [Deleted User]


    syklops wrote: »
    Pen testing has its dull days as well. Lots of paper work and lots of customer interaction. Plus most people around you dont really understand what it is you do(including your managers).

    It's funny to hear the conversations about pen testing, vulnerability scanning, incident handling and security auditing... apparently it's all the same ;)


  • Registered Users, Registered Users 2 Posts: 2,626 ✭✭✭timmywex


    It's funny to hear the conversations about pen testing, vulnerability scanning, incident handling and security auditing... apparently it's all the same ;)

    Pen testing and VA are two terms that are used fairly interchangeably really :eek:


  • Closed Accounts Posts: 18,966 ✭✭✭✭syklops


    timmywex wrote: »
    Pen testing and VA are two terms that are used fairly interchangeably really :eek:

    Used interchangeably by them that don't know one end of a mule form the other.


  • Registered Users, Registered Users 2 Posts: 9,957 ✭✭✭trout


    timmywex wrote: »
    Pen testing and VA are two terms that are used fairly interchangeably really :eek:

    not in my earshot ... and not for long


  • Advertisement
  • Registered Users, Registered Users 2 Posts: 2,688 ✭✭✭zweton


    any of ye guys working within the grc field?


  • Registered Users, Registered Users 2 Posts: 5,112 ✭✭✭Blowfish


    zweton wrote: »
    any of ye guys working within the grc field?
    I suppose technically my job (Information Security Analyst) is kind of in GRC, but it's a suprisingly difficult question to answer as InfoSec is just one small part of GRC as a whole and GRC is only one part of my job as a whole.


  • Registered Users, Registered Users 2 Posts: 59 ✭✭Armistice


    Also remember there is another side to IT security which is Networking - Access lists, Firewalls ASA/PIX , intrusion detection, VPN's etc.


Advertisement