SOC2 is the best-known infosec certification
LOL. I've stop reading right there.
HN user
SOC2 is the best-known infosec certification
LOL. I've stop reading right there.
The problem is real and it's not the only one in this space. I was surprised to see so many words and so little substance. If feels like Troy didn't really try about this one.
I use Hugo. Lots of free themes here: https://themes.gohugo.io/
You can write your content in Markdown, keep everything in a repo, and only push static files to the hosting of your preference.
Here's what to do in the first few weeks:
1. Require not 1, but 2 people, for hire, right now. It will take a long time until it gets approved, HR does their thing, and you (or someone else) hire people to help you.
2. Document, as fast as you can, all of the assets in your environment. Don't waste time on looking for software. Plain text or spreadsheet will do for start.
3. Identify the most important assets (servers, network devices, etc) - and try to understand what are your priorities for each. For example, availability for your frontend servers. Confidentiality and integrity for your server storing PII. Based on this, you'll understand what are your biggest risks. Would it be a business disaster if your website is down for few hours? Likely not. What about if the PII is compromised and you get huge fines and be in the news? More likely.
4. Find out who has the access to the most important assets, and cut off anyone who doesn't really need it.
5. Establish some sort of monitoring for the most important assets.
By following the basics of ISO27K1, for example:
Good infosec teams keep inventory of all the software used in the org. If they see that the org already pays a vendor for software doing X, a question should be raised, why we need another one for doing the same thing.
Also, each new vendor or software provider needs go get a "security clearance", after the infosec teams checks their state of security.
These kinds of practices would probably discover the shady intents.
The only thing I wonder about here is how it's possible that the infosec/GRC team didn't notice this.
Here's a better source: https://www.theverge.com/2021/1/28/22255245/google-deleting-...
The learning never stops :)
Totally. I wrote a book on it, and I still keep learning :)
Is this how SnipMate, UltiSnip etc work under the hood?
No idea, I don't use these. I'm generally trying to use as few plugins as possible.
They could have blocked the user in Iran. It's without sense to block the organization's account.
Thank you, I mostly agree :)
And finally I have a good name for those people I discuss with on a regular basis - the "checklist experts" :D
More and more companies get compromised by a "highly sophisticated" actors.
And somehow, these companies immediately "know" that it was a nation-state actor. Same case here. There are only claims, but no facts, no evidence.
And lately, it's always "the russians" :) I'm just noticing the pattern.
Lastly, what I really can't understand is - how in the world these "highly sophisticated attackers" are so bad at covering their tracks. :)
The homepage is old, hence there are no samples. But here's the one, for example: https://medium.com/@jovica/the-power-of-recursive-macros-in-...
Mastering Vim Quickly: From WTF to OMG in no time
https://jovicailic.org/mastering-vim-quickly/
109 pages.
Adjust | Junior Platform Engineer/DevOps | Berlin, Germany | Full-Time | ONSITE | VISA & RELOCATION | https://www.adjust.com/
As a member of our Platform Engineering team, you will be working closely together with our development and marketing teams to address their needs, and help design and scale out the infrastructure of our massive attribution pipeline and related technologies.
Our system is built upon a 500+ bare metal machines running Gentoo Linux to satisfy our needs for a highly customized and specialized environment. We process a few petabytes of incoming data every month, with an increasing rate of growth.
You will help us wrap up the decentralization of our infrastructure over various locations and continuously scale it, making sure that our servers run smoothly and at their highest efficiency.
You will be proactively looking for improvements, offering your help, taking over shifts for on call duties and executing solutions following your automation drive.
Your profile:
- Hands-on experience with Linux, preferably in a sysadmin/devops role
- Experience debugging and fixing code in various languages (Go, C, Perl preferred, but not mandatory)
- A desire to automate things away so that you can focus on less repetitive tasks
- More info on Platform Engineer role: https://boards.greenhouse.io/adjust/jobs/4268048002
Interested? Let's have a chat. My email: jovica@adjust.com
Our careers page: https://www.adjust.com/company/careers/
Adjust | Junior/Senior Platform Engineer | Berlin, Germany | Full-Time | ONSITE | VISA & RELOCATION | https://www.adjust.com/
As a member of our Platform Engineering team, you will be working closely together with our development and marketing teams to address their needs, and help design and scale out the infrastructure of our massive attribution pipeline and related technologies.
Our system is built upon a 500+ bare metal machines running Gentoo Linux to satisfy our needs for a highly customized and specialized environment. We process a few petabytes of incoming data every month, with an increasing rate of growth.
You will help us wrap up the decentralization of our infrastructure over various locations and continuously scale it, making sure that our servers run smoothly and at their highest efficiency.
You will be proactively looking for improvements, offering your help, taking over shifts for on call duties and executing solutions following your automation drive.
Your profile:
- Hands-on experience with Linux, preferably in a sysadmin/devops role
- Experience debugging and fixing code in various languages (Go, C, Perl preferred, but not mandatory)
- A desire to automate things away so that you can focus on less repetitive tasks
Interesting? Let's have a chat. My email: jovica@adjust.com
Our careers page: https://www.adjust.com/company/careers/
Adjust | Platform Engineer, Site Reliability Engineer | Berlin, Germany | Full-Time | ONSITE | VISA & RELOCATION | https://www.adjust.com/
As a member of our Platform Engineering team, you will be working closely together with our development and marketing teams to address their needs, and help design and scale out the infrastructure of our massive attribution pipeline and related technologies.
Our system is built upon a 500+ bare metal machines running Gentoo Linux to satisfy our needs for a highly customized and specialized environment. We process a few petabytes of incoming data every month, with an increasing rate of growth.
You will help us wrap up the decentralization of our infrastructure over various locations and continuously scale it, making sure that our servers run smoothly and at their highest efficiency.
You will be proactively looking for improvements, offering your help, taking over shifts for on call duties and executing solutions following your automation drive.
Your profile:
- Hands-on experience with Linux, preferably in a sysadmin/devops role
- Experience debugging and fixing code in various languages (Go, C, Perl preferred, but not mandatory)
- A desire to automate things away so that you can focus on less repetitive tasks
As a Site Reliability Engineer, you’ll be shaping, transforming and improving our monitoring infrastructure. The day to day, in this DevOps role, will be researching and testing various ideas, coding & automating the deploy of the best. You’ll then work with the Platform Engineering team to roll them out.
- More info on Platform Engineer role: https://boards.greenhouse.io/adjust/jobs/4213522002
- More info on Site Reliability Engineer role: https://boards.greenhouse.io/adjust/jobs/4210333002
Interested? Let's have a chat. My email: jovica@adjust.com
Our careers page: https://www.adjust.com/company/careers/
Adjust | Platform Engineer, Site Reliability Engineer | Berlin, Germany | Full-Time | ONSITE | VISA & RELOCATION | https://www.adjust.com/
As a member of our Platform Engineering team, you will be working closely together with our development and marketing teams to address their needs, and help design and scale out the infrastructure of our massive attribution pipeline and related technologies.
Our system is built upon a 500+ bare metal machines running Gentoo Linux to satisfy our needs for a highly customized and specialized environment. We process a few petabytes of incoming data every month, with an increasing rate of growth.
You will help us wrap up the decentralization of our infrastructure over various locations and continuously scale it, making sure that our servers run smoothly and at their highest efficiency.
You will be proactively looking for improvements, offering your help, taking over shifts for on call duties and executing solutions following your automation drive.
Your profile:
- Hands-on experience with Linux, preferably in a sysadmin/devops role
- Experience debugging and fixing code in various languages (Go, C, Perl preferred, but not mandatory)
- A desire to automate things away so that you can focus on less repetitive tasks
As a Site Reliability Engineer, you’ll be shaping, transforming and improving our monitoring infrastructure. The day to day, in this DevOps role, will be researching and testing various ideas, coding & automating the deploy of the best. You’ll then work with the Platform Engineering team to roll them out.
- More info on Platform Engineer role: https://boards.greenhouse.io/adjust/jobs/4213522002
- More info on Site Reliability Engineer role: https://boards.greenhouse.io/adjust/jobs/4210333002
Interested? Let's have a chat. My email: jovica@adjust.com
Our careers page: https://www.adjust.com/company/careers/
Adjust | Platform Engineer, Site Reliability Engineer | Berlin, Germany | Full-Time | ONSITE | VISA & RELOCATION | https://www.adjust.com/
As a member of our Platform Engineering team, you will be working closely together with our development and marketing teams to address their needs, and help design and scale out the infrastructure of our massive attribution pipeline and related technologies.
Our system is built upon a 500+ bare metal machines running Gentoo Linux to satisfy our needs for a highly customized and specialized environment. We process a few petabytes of incoming data every month, with an increasing rate of growth.
You will help us wrap up the decentralization of our infrastructure over various locations and continuously scale it, making sure that our servers run smoothly and at their highest efficiency.
You will be proactively looking for improvements, offering your help, taking over shifts for on call duties and executing solutions following your automation drive.
Your profile:
- Hands-on experience with Linux, preferably in a sysadmin/devops role
- Experience debugging and fixing code in various languages (Go, C, Perl preferred, but not mandatory)
- A desire to automate things away so that you can focus on less repetitive tasks
As a Site Reliability Engineer, you’ll be shaping, transforming and improving our monitoring infrastructure. The day to day, in this DevOps role, will be researching and testing various ideas, coding & automating the deploy of the best. You’ll then work with the Platform Engineering team to roll them out.
- More info on Platform Engineer role: https://boards.greenhouse.io/adjust/jobs/4213522002
- More info on Site Reliability Engineer role: https://boards.greenhouse.io/adjust/jobs/4210333002
Interested? Let's have a chat. My email: jovica@adjust.com
Our careers page: https://www.adjust.com/company/careers/
Adjust | Platform Engineer | Berlin, Germany | Full-Time | ONSITE | VISA & RELOCATION | https://www.adjust.com/
As a member of our Platform Engineering team, you will be working closely together with our development and marketing teams to address their needs, and help design and scale out the infrastructure of our massive attribution pipeline and related technologies.
Our system is built upon a 450+ bare metal machines running Gentoo Linux to satisfy our needs for a highly customized and specialized environment. We process a few petabytes of incoming data every month, with an increasing rate of growth.
You will help us wrap up the decentralization of our infrastructure over various locations and continuously scale it, making sure that our servers run smoothly and at their highest efficiency.
You will be proactively looking for improvements, offering your help, taking over shifts for on call duties and executing solutions following your automation drive.
Your profile:
- Hands-on experience with Linux, preferably in a sysadmin/devops role
- Experience debugging and fixing code in various languages (Go, C, Perl preferred, but not mandatory)
- A desire to automate things away so that you can focus on less repetitive tasks
Interesting? Let's have a chat. My email: jovica@adjust.com
Our careers page: https://www.adjust.com/company/careers/
Adjust | Multiple tech roles | Berlin, Germany | onsite | Full time | www.adjust.com | http://jobs.jobvite.com/adjust/
Adjust is one of the leading companies in mobile attribution, which translates into millions of mobile devices talking to our servers daily.
We've been pioneering fraud prevention strategies and are aiming to bring more honesty to the market, see for example:
https://www.adjust.com/blog/announcing-adjusts-coalition-aga...
We're hiring for multiple roles in our tech team, for example:
- System Administrator: http://jobs.jobvite.com/adjust/job/o8uA6fw2
- Frontend Developer: http://jobs.jobvite.com/adjust/job/oEfI6fwr
Adjust | Multiple tech roles | Berlin, Germany | onsite | Full time
www.adjust.com | http://jobs.jobvite.com/adjust/
Adjust is one of the leading companies in mobile attribution, which translates into millions of mobile devices talking to our servers daily.
We've been pioneering fraud prevention strategies and are aiming to bring more honesty to the market, see for example:
https://www.adjust.com/blog/announcing-adjusts-coalition-aga...
We're hiring for multiple roles in our tech team, for example:
- System Administrator: http://jobs.jobvite.com/adjust/job/o8uA6fw2
- Site Reliability Engineer: http://jobs.jobvite.com/adjust/job/omWP7fwY
- Backend Developer: http://jobs.jobvite.com/adjust/job/oG217fwA
You're right, English isn't my first language. Thanks for the tip!
I am writing a book on Vim [1] for a while now, so it's going to be my main side project in the first months of 2017.
[1] A crappy page about the book: http://jovicailic.org/mastering-vim-quickly/
Good question. I put quite a lot of effort to explore available books on the topic, but that would take another (much longer) blog post.
Good luck with your quest! If you need some inspiration for books to read, check out this great list: https://sivers.org/book
No special meaning at all. I recently realized I almost crossed this number, so I thought to share what I learned.
I'm not proud of the number of books I've read. Actually, I would prefer that I've read less books, but that I've read more times the best ones (in my opinion).
This is very true for some types of books. For example, I am not able to read Dostoyevsky or Carlyle fast. For some sort of books, I even feel like I need a nap after 30 mins of reading, as I feel that my brain gets tired :)
After reading ~10 different authors on self-help, you realize they're all saying the same thing. So no, your assumption is not true.
Yes, I did read a lot of light self-help books in the beginning, but their number in total is less than ~40.
It's totally not important how many books you read, but their quality, we agree about that :) That's why I mentioned it's better to read more times the same book, than more books on the same topic once.
I love your thought, and I tend to agree. There's way too much redundant and unnecessary information in typical books.
That's why I think is better to read the best books on the topic more times, than few other average books repeating the same stuff in different words.
True. I should have explained it better, and say that I didn't mean it literally.
As you said, repetition is good to retain ideas. Also, I was able to get different ideas and insights from the same books, just based on my inner personal state, and my life circumstances at that point in time.
Thanks for your comment Paul! Kudos for a book a day, just in my honest opinion, that's an overkill.
I think it's really important to have time to think and make notes about what you read. Even re-reading the same books can often give you different insights, depending on your inner state, life circumstances, etc.
I respect your opinion on your points, and I'll not argue those. I shared my insights, based on my experience, and I wish I knew some of them before much earlier - it would save me a lot of time.
-Jovica