Currently stuck in risk but interested in Cyber. Have done one related engagement from a regulatory perspective. But a lot of posts here making me think it’s harder to break into than I expected (non-technical background). If you had a six sigma green belt / supply chain degree/exp., would you still go through the effort of going into Cyber or take easy risk money being offered / easier transition back to supply chain? 2-3 YOE and trying to decide career course, any advice highly appreciated

like
Posting as :
works at
You are currently posting as works at

I see all of that as compliance. I see that one part of the basic skills that I expect people to have.

To get hired by me....you need to be able to convey the detailed design / build instructions you would use to actually harden an application or environment.

You can start doing this on your home network. Lots of my non security friends have built segmented home networks with different virtual lans that have egress and ingress rules. All of that counts as experience for me. I want to hear about that in your interview

like

If you can translate compliance requirements and business needs into security solutions or technical standards for IT, you'll be in demand everywhere.

like

Cyber only appears easy....it's one of the more difficult fields out there. People think it's easy money because for a while you could quote nist 800-53 and run gaps assessments against it....but now our clients have gotten wiser and that is no longer enough

I spend about 30-60 mins a day learning about security x 365 day x year after year. I have home labs....I do deep dives into why projects succeed and fail. I'm constantly improving my skills on the side

If the life style above doesn't interest you...then I'd find something else.

But if what I described above sound exciting....then this field is amazing

likehelpful

At ey1. Grc is a part of cyber. We are all on the same team.

Related Posts

Has anyone made the switch from EY consulting to CBS? Thanks!

like

6th year - over 2000 hours, great review last year, this year they said will not promote me. They will do a mid year review early next year and if still no good, will discuss “transition” plan. HR said I have until next spring. Sounds like I can stay on payroll for another 7-8 months? Is it real? I have a lot of financial obligations so want to know the worst scenario

like

I wanted to see how many of y’all have an MBA and whether it’s worth considering. Does anyone have insights on this?

like

I’m hoping someone might have some ideas about this- I’m currently five years out of law school with a clerkship, a tax LLM, 3 years of experience doing transactional tax work and a few months of EC/VC experience (which I recently switched to from tax). I like the EC/VC work, but I don’t know how long I want to stay in biglaw. Can anyone weigh in on how employers for in-house roles might look at my experience in a year or two?

like

Anyone leave Deloitte for Booz Allen? Thoughts or experiences? Utilization and compliance are absolutely doing my head in.

like

Is anyone part of Toigo? How helpful is/was it in your career search?

like

Hey Salt peeps. I’m curious what kinds of practices you specialize in and how long you’ve been doing it? Would you specialize in something different in tax if you could turn back the clock?

helpfullike

I’m in my 2nd year in audit. I want to pivot into management consulting within a big 4 or MBB. Has anyone seen someone make this lateral movement? I’m not sure how feasible that is and what steps to take. I’m also down to discuss further with whoever is comfortable in connecting.

like

Java vs Nodejs vs GO

Which is best for market opportunities for Backend Developers?

Should someone switch from Java to NodeJs or GO having total 4 years of experience in IT Industry?

like

I want to make the switch to product development or management. I only have experience in a webte agency and would love to explore other roles and companies.

My interests lay with project and product management. Along with development

like

How much programming language is important for a QA Engineer..

Need your inputs, I have experience in Java Automation for past 2 years.. now my yet join company is using Ruby for Automation. Not a big deal in learning about ruby. Only worried about that if I continue here, in process of learning ruby I might have unlearn java. If I need to come out then openings on Automation with ruby in the market is pretty much less I think..

Fellow QA's What are your thoughts on above.

like

Any recommendations for a coach (or even therapist) to help work through some career issues?

like

Got offer from BCG for ECT. Read numerous comments about ECT being not attractive compared to Generalist track. Also heard challenges about billability/utilization. Any views/ guidance appreciated!
I am not super keen to become a partner (selling) and main reason to join will be working with different clients, smart talented people and a good brand. End goal (at the moment atleast) is to stay for few years and return to the industry. 15 YOE

like

want to interview at MBB again. Last year i had started the process but had to stop the process due to severe family emergency. What followed was depression and im doing fairly better now. I am Leaving Big 4 to join a tech focused Bank. But i feel like I should reach out to recruiter and start the process again. Just not sure if it’s the right move since im joining a new company. Feel it’ll look bad trying to join MBB after starting at a new bank. What to do?

like

🐠, need opinions/advice. Persistent recruiter asked me to consider having an exploratory convo with a company for a VP role even though I’m not looking to make a switch. That casual convo has morphed into two interviews this week, one with an SVP and EVP and one with the global head of the practice. It would be a $65k bump in salary. Worth going through with it? Should I mention that I’m not actively looking to leave my current job? Been here 6 months…

like

Thoughts on Prosci or SHRM-SCP certification? Which would be considered more valuable or highly regarded? Currently focused on Change Management but have a HR background (industry experience / area of study in college).

likehelpful

I'm looking to get in to pharma sales and have a sales background but in medical device. Has anyone made this switch? Would you be willing to offer any advice?

like

Which company is better for tech management role - J&J or Amgen ? Looking for comments around WLB, internal growth, compensation etc.

like

Working in Risk Advisory-Internal Audit at EY. Looking to move into valuations. Have knowledge of valuations through FRM and CFA level 2 but no direct valuations experience. Anyone willing to help?

like

Majority of LinkedIn posts I have seen from incoming MBA class at HBS and the likes have been people with 5-10 years experience for class of 2023. Why is that so this year and what happened to the 2-3 years category?

like

More Posts

Anyone with a backyard and over 1500sqft I don't want to hear you can't stay home. Sitting in a 500sqft walkup with three people and I can do it.

like

Team is already talking about eating hours. My utilization is down cause I was in unassigned for a month in Dec/Jan. What's worse pissing off the partner or having a low utilization? -staff 1

like

I’m still trying to process seeing an agency exec well known for dismissing and ignoring POC held up as an exemplary diversity champion for women at the 3% Conference.

likesmart

I have an informational interview with a director of a consulting firm. I’m currently in banking. It’s just been 6 months at this job for me. It’s too slow for me. How do I tell this director why I want to work with him and justify why I want to leave my current firm just after 6 months? I’m an analyst and the role I’m targeting is also analyst level role

like

What’s the appraisal cycle in citi ? If I join in last week of Aug , would I be eligible for next year appraisal ?

like

Why people choose ibm when it does nothing for its employees?

like

Currently in risk consulting but seconding at an international bank for internal audit on trade related scopes. Recently got offered to join them at a higher level position. Need advice on career path of IA at bank if it's worth, because they pay would be gradually higher than consulting in the later years when reaching VP level and coming in from different industry, the new scopes are interesting. But what would I be missing out on if I stayed in consulting?

like

Any idea on what I industry senior risk analysts are making?

like

Is 90k base salary plus 10k bonus a normal offer for a Senior Associate (602) CB F&BM position in Plano, Texas?

like

I exited to FAANG from big4 and part of me is seriously thinking about getting an mba to go to mbb. Does that make any sense?

like

Which firm hires the dumbest people?

like

Hi i am supposed to join capgemini tomorrow. Got an email to submit documents as part of virtual onboarding. I have submitted the same and then i got another email stating "ON SUCCESSFUL COMPLETION YOU WILL RECEIVE READY RECKONER EMAIL". any recent joinees who can help me with what this is?

like

Anyone new to this area and interested to meet up over the next few weeks? I moved here from Boston in March and would like to make some friends

like

Hi all, what salary range would be good for Head of Content (UX writing+ content strategy + direct reports) who reports to VP of Product at a series B, fully remote fintech company?
(MBA, 5+ years experience)

What could be the in hand salary with the below Annexure pls let me know ….

Post Photo

Any idea how much tax consultant pay band is in EY?

I feel defeated in crypto - invested 200k in last 2 year and current value is $160k.
If I would have invested in index funds of stocks, I would have made atleast 50%.

I don't plan fo sell crypto, but feel bad for betting all my savings into crypto

likefunnyhelpful

Can I just consider stablecoin staking / interest accounts (Anchor protocol, BlockFi) as my “savings account”? 7% of my liquid NW is in cash and 10% is in stables (rest is equities and other crypto). Hoping this is enough to pay expenses + tactically and periodically deploy into equities and crypto.

like

Additional Posts in Cyber Security Bowl

What are exit ops for Big 4 Cybersecurity Consultants that are non technical (Strategy/Risk)?

like

Tell me it’s not true.

Post Photo
funnylike

Anyone had success with CISSP audiobooks to study? I got a long commute!

Anyone ever heard of or worked for Sygnia?

like

How long does Deloitte take to issue an offer. I interview for a DevSecOps position and was told I was getting an offer extended to me. I have barely heard back in almost 2 weeks from anyone about the offer and need to make a decision on other offers. What do I do? Could they be rescinding my offer?

like

Views on carbon black as a product?

helpful

We’re hiring across the board at KPMG for cyber / cyber risk work - shoot me a DM if interested. (Pays well!)

likehelpful

Message me if you need a referral to PwC cybersecurity, financial crimes, or regulations. Please no noobs. Only experienced professionals with at least 1 YOE

likefunny

Any tips or tricks for CSX certification?

like

Anyone here do post-breach data mining? Being pursued to start a practice line doing this and trying to understand market value.

like

For those who have passed the CIPM exam, what is it like (and how does it compare to the CIPP/US exam)?

Anyone else at CyberArk Impact this week? Anything exciting going on?

CCSP (cloud security certification) is it worth to do ?

like

Laterals to Deloitte Cyber from other B4: Can you describe your interview process and what each one entailed? TIA!

like

Anyone know what kind of experience or certifications I should be aiming to get if I'm trying to break into a pentest role? I just graduated last year and have about a year of sysadmin experience and am trying to get into it asap. So, I'm already applying/job hunting and probably won't get much replies but. Should I be looking at more security analyst/admin roles first? Going for certs? Getting a masters? Wondering what I can do to improve my chances. TIA

like

Accenture or Deloitte for cyber security strategy? Who’s on top?

like

Anyone here able to provide insight into company culture and WLB at SentinelOne? Please share your salary/position as well if you are currently working there or previously did.

like

Is there a demand for privacy professionals? Been seeing this discussed more and more recently

like

Anyone currently enrolled or will be enrolled in the online masters cyber degree at Georgia Tech?

like
like

New to Fishbowl?

Download the Fishbowl app to
unlock all discussions on Fishbowl.
That was just a preview…
Sign Up to see all discussions
  • Discover what it’s like to work at companies from real professionals
  • Get candid advice from people in your field in a safe space
  • Chat and network with other professionals in your field
Sign up in seconds to unlock all discussions on Fishbowl.

Already a user?
Login here

Share

Embed this post

Copy and paste embed code on your site

Preview

Download the
Fishbowl app

See what’s happening in your industry
from the palm of your hand.

A phone with Fishbowl app

Scan your QR code to download
Fishbowl app on your mobile

Download app

Sign up for free to view this conversation on Fishbowl

By continuing you agree to Terms of Use and Privacy Policy

Already have an account? Log in

Sign up for free to continue using Fishbowl

By continuing you agree to Terms of Use(New) and Privacy Policy(New)
Messaging rates may apply

Already have an account? Log in

For account settings, visit Fishbowl on Desktop Browser or

General

Legal