HN user

dmhmr

109 karma

Cybersecurity Engineer.

Posts0
Comments30
View on HN
No posts found.

Not to guess why it was not included, but speaking as someone from the infosec realm, it has a reputation for spam and phishing.

I disagree based on my decade+ experience working with Federal employees. I would guess that 50% of GS-13 to GS-15 (heck even SES) are mostly incompetent, 40% get the basic minimum of their job complete, and the final 10% shoulder most of the work accomplished. I have come across many GS staff given busy work roles so they are "out of the way" of leadership's objectives. :edit: For folks downvoting me, this is just my personal opinion based on my experience working within IT and cybersecurity. My observations can easily be (and may actually be) untrue elsewhere (as noted by replies to my comment). Early in my career, I was a GS-13 myself.

Having used Chronicle, it felt like an underwhelming paper thin demo product compared to what the industry offers. May as well scrap it and lean on Mandiant's experience for a replacement.

FireEye was nowhere on the same level as Mandiant and the two companies split and FE was purchased by STG for $1.2 billion.

Logging at Twitter 4 years ago

The blog post just cuts off at the end? "Ultimately, this migration has resulted in increased adoption of centralized logging, including among core application teams and operations and"

Yes Hello 5 years ago

The timestamps, I imagine, are to highlight that waiting for a response before asking is wasting time. The same exchange can be just two lines: The query and response.

you: Hi coworker, I'm working on [something] and I'm trying to do [etc]

coworker: Hi you, Oh, that's [answer]

I switched to the iPhone 13 when it launched and have been giving Apple Maps a chance. I have experienced more frustration with Apple Maps vs Google Maps. It seems to always think I am slightly farther back on the road than I really am, which is a huge negative for any map app.

The past few years have made me feel sour on how many organizations run cybersecurity in general. The industry is full of individuals who do not understand the tech they are protecting, and often they barely understand the security tech they use daily. A lot of places are simply doing compliance check-marking and barely have a shred of technical aptitude. They struggle with basic fundamentals like inventory and patch management. It is an industry that is hard to stay upbeat about if you are looking at anything larger than how it benefits your personal paycheck. If you want to get insight into the reality of how the government operates, just look at GAO reports, they are alarming: https://www.gao.gov/highrisk/ensuring-cybersecurity-nation

I went from IC for a few years to manager for a few years to back to IC. The switch back to IC was only this year for me. I really enjoy both roles and have missed being in either role while occupying the other. They are different sets of work and skills, but the biggest thing I can say is, if you enjoy seeing others succeed and leaving your team for bigger and better things, be the best assistant you can to your team so they can get to the next point in their career. Funny enough, this raises your retention rate when you are actively trying to equip everyone for their next job, and when they do eventually leave, you'll more often than not have a great connection from a grateful person that you can lean on in the future if you ever looking to change jobs or collaborate on a project. Just keep in mind that this can be emotionally exhausting, especially if you are an introvert (I am). Before I switched back to being an IC I was running 4 teams with 24 direct reports. It was an interesting scenario to be in, especially when one team was 24/7. You have to manage competing priorities between the teams, between the ICs, and the regular stakeholder stuff. Learn what metrics make it easy to celebrate your people and your team, and teach your team how to celebrate their victories loudly. Don't let your team set goals that doesn't get them closer to their career goals. Acknowledge from the start that everyone at any moment can leave your team/company and it isn't personal - so make the most of their time while they are there and let them leave as a stronger person. Shield your people from politics, shield them from BS work, shield them from bad apples, establish a kind culture, become best friends with your recruitment team, and enjoy what happens when you celebrate your people and team at every milestone they meet.

I unsubscribed from most of the infosec stuff on Reddit since it has low engagement, low quality posts in most subs. It seems the community thrives outside of reddit in smaller, more niche circles. Majority of my contacts/education comes from natural networking by just doing my job.