I am interested in transitioning out of corporate cybersecurity. When I entered the field, I anticipated combating threats and adding value to the field (I can’t fight this battle alone). While I have engaged in some exciting projects in a SOC, a significant portion of my career has revolved around documentation and dealing with upper management who do not touch keyboards and are more concerned with keeping budget low. What options exist for cybersecurity professionals seeking career changes?

like
Posting as :
works at
You are currently posting as works at

Working for public companies and regulated companies require a level of precision with respect to documentation. I was going to tell you to join the military, but then I realized that probably requires more documentation than private industry. Not trying to give you a snarky answer, but rather a realistic one. Why not understand why upper management is asking you for what they are. Understand regulations like sarbanes oxley, pci, ccpa and others that require this. Yes. The folks that don’t touch the keyboards at one time did, and then advanced into management to helm the ship.

like

Consider:
NSA if you want to fight foreign threats
Antivirus / EDR tooling
IR response consulting

like

Head this advise. Be careful getting into consulting. There are two types of consulting in security. Functional and technical. Often the functional side will sell itself to perspectives ad technical. In reality all you will end up doing is IT Audit writing policy and procedures and compliance paperwork. Be sure to look at your future bosses linked in because if you take that role that is the direction it is geared towards. If they aren't asking for technical certs or at a very minimum not asking you technical questions in interview it is most likely a functional job. Also many times consulting firms will tell you we will bring you in as functional (IT Audit does this) and you can transition over to technical security within a year. From my experience this is rarely ever the case.

like

Your perspective is valid and I understand it. However, relying solely on documentation will not prevent security threats. There appears to be an excessive focus on documentation as a way to cover our backs when instead, we should prioritize preventing/ fighting threats and training our script kiddies to fix the current knowledge gaps in the field.

like

That means my friend, that you are being managed wrong. If you were working for me (and I am a CISO now ) I would demand that you think about and act on threats 24x7. Of course I’d still need you to document

like

Have you considered IR as a consultant? I previously worked for a F50 company and moved to DFIR consulting. So much better in terms of variety in my day to day.

like

Digital forensics and incident response

Software engineering or data science

Yeah, because the software engineers are never forced to document anything lol

Consulting! Check out GH and DM if you want to chat

Related Posts

USI Producer Job, how is it? Currently an Account Manager and looking at this opportunity. Also, really any advice from service to a sales transition is much appreciated!

like

I have just got an options trader job at a prop trading firm. But I knew nothing about options/trading/finance. The firms said they’ll be officially training us once we start. But in the meantime, what are some books/resources that you would recommend to start learning first?

like

Got an offer to work at a smaller consulting firm doing the same thing I’m doing now (software dev work) with a 40% pay bump. Is it worth staying in big 4 for the sake of being in big 4?

like

Do any of the top consulting firms hire into the Engagement Manager level after an M7 (if they had manager experience elsewhere)? I know MBB probably doesn’t but what about other tier 2 firms after that - and asking for US or Canada

likehelpfulfunny

Any other second city improv students/grads here? Wondering if you found it valuable to your career. ( I’m talking base classes, not “failed to make snl I so went into advertising “ ☺️)

like

I am CA FINAL student, i have done most of my internship into audit but post qualification i want to start my career into taxation( direct & international). Any suggestions or recommendation on whether any big 4 will take a fresher.

I am working hard on my theoretical knowledge before interview.

Also preparing for Enrolled Agent USA, IRS

like

Considering a jump from FTE back to consulting. I have roughly 8 IT YOE, CSPO, CSM, and my MBA. I'm considering a Sr Product Owner role with the mind set of moving to Product Management within the next 1-2 years. With that background and currently being in a candidate's market, roughly what should I target as my salary?

Right now, I'm at 100k with 5% bonus as a BA.

like

I feel silly asking this question: is there a meaningful difference in pay progression or exits between M, B, and B? Just signed with one and it seems my inferiority complex has evolved

funny

Any professional engineers turned professors here? What drove you to make that switch and did it work out how you thought it would?

like

Move from SAP practice to Ivalua ? Good or bad career move (7 years experience in SAP )

Anyone have experience in raising capital out of the Middle East (Jordan, Kuwait, SA)? Any experience in delivering solutions in that area? I am trying to figure out if a pursuit in that area is to much of a risk. Any insight is appreciated.

like

I've an offer from Ericsson as Senior Tech lead and am expecting an offer from VMware as Senior member of Technical staff. Which company is the best in terms of Job security, Career Growth and work life balance ? Which company should I join.

like

Good companies for .net developer having 8 yeo ??
In terms of project growth and wlb ??
Thanks in advance

like

Hi all, looking for advice.

I'm a technical writer with background in the hardware and healthcare industry. What would be a better option for me, pivoting into software tech writing or project management.

Which one pays better/is better (any advice appreciated, must be fully remote role)

If software tech writing, does anyone have advice on how to break into a role or learn what it takes to become one?

For PM, I got a cert (not PMP) and am trying to decide which of these two I go with.

like

Bit of a niche topic: I’ve been in TS/SCI processing for a Science/Tech/Weapons analyst position with the CIA for 3 yrs since I finished grad school in chemistry, but CIA positions are sort of set it and forget it since they can take so long. I’ve since been focused on a Patent Attorney track and am with a firm that will support me taking the patent bar/law school. If I get through processing and go to the CIA for some time, do you think would I be accepted back into patent law later on?

like

What are some post-clerkship paths other than big law?

like

Any advice for someone looking to transition into a full HR Generalist role from Recruiting. I’m currently a Campus Recruiter with about 5 years of HR experience (Coordinator- Higher Ed). I received my PHR certification in September 2020 and sitting for my SHRM-CP in two weeks. I’m having a hard time transitioning into a full Generalist position.

like

West Monroe Fishes, how is your hierarchy? Analyst - Manager - Sr Manager - Partner? I have been contacted for a Senior Manager role so want to check if it's worth exploring?

like

Hi all- My SO is currently at a Big4 & was initially preparing for S&O roles at GCP but given the high number of ex MBB consultants hired, they believe its just more competition to get the offer & to eventually get promoted over time.

Instead, they have decided to pursue program manager or cloud consultant roles, which they feel might have a lower barrier to entry from an assessment standpoint. Not sure if the bowl agrees but would like to get your thoughts, thanks!

like

Want to start going back to leetcode for more exit opp. Getting stumped on very simple questions. Any resources to help with algorithm? My data structure funds should be good enough. TIA!

like

More Posts

What is the average salary for an Employee Benefits Account Manager? I’ve been in the industry 6 years.

likehelpful

If anyone absconded from a company what legal action company can take?

What are some nomad options in NY if you don’t want to sign a lease?

like

13 LPA fixed for Package Specialist. Is it good for a 3.2 years exp candidate? How much can we expect in hand?

like

Hello! I’ve previously only dated white guys. While in quarantine I’ve gone on dil mil and made an effort with brown guys on apps. Surprised to find that many live at home or visit home often in mid 20s, are not financially independent, cannot cook for themselves etc. Is this typical? Or maybe it’s just the area I live in. Sorry if this came off as offensive, it just seems to be a pattern I noticed

like

Who can relate?

College: Adderall
Year 1 (staff): Gives up Adderall
Year 5 (senior): Starts to drink coffee (or heavily increases)
Year 10 (Senior Manager): Restarts Adderall
Year 16(PPD): TBD

likefunny

Any Sales Leaders doing any of the following with their sales teams?

- Entering a new market.
- Entering an old market with a new product.
- Trying to focus sales efforts onto one objective.

I’m putting together a beta program that was successful for my current company and I want to see if it will help other leaders.

Let me know if this interests you below. Thanks!

like

What is the Protiviti senior consultant 1 salary? Also thoughts on Protiviti vs West Monroe?

like

How strict is Google about returning into the office? New York based

like

I have 3 YOE as a Software Developer. I currently work as a React/Node developer making 87k per year (I know that is pretty low, my manager will admit it) He has made it clear that I am the most skilled developer on the team, and I am getting promoted to Senior Dev. I would like to know what I should be shooting to make? I really like my job and ideally don't want to move companies, but would like some realistic expectations for what I should be earning.

like

Planning a one-week summer vacation to Yellowstone Park area. Family unit of 6, so need to rent a single, large SUV. Just looked at prices and the cheapest car available for 6 people with unlimited mileage is $3,500+. Makes the vacation almost not worth it. Anyone have any recommendations on how to get a better deal? Any discount codes? Thank you in advance!!

like

Any weekend or online excel course recommendations?

like

Had an encounter with a younger gal (early 20s) last night and I actually enjoyed it.

Is this a sign that I'm getting old?

Attached: post I made last week for reference on what I normally prefer

Post Photo
like

Is there an official promotion list out on ACN portal somewhere?

like

Hi fishes. I am having 4 years of experience in Rpa UiPath. Coforge is paying me 21 lpa and 1.05 lpa variable and Ey GDS is paying 17 lpa fixed. Which one is better?

Does anyone mind looking over my resume and giving some feedback?

like

Have been looking for accounting advisory jobs and can’t seem to find any. Are firms hiring again?

like

Pretty dead on this bowl central Florida 🐠 is anyone going to Gainesville today for the UF-LSU game?

like

Anyone using a good independent housekeeper that they would recommend?

Just finished Fuqua Global EMBA and Columbia/LBS EMBA-Global Americas & Europe applications. Yale, Booth, Wharton, Sloan, and Darden left. I’m already feeling completely drained. How to go on?

like

Additional Posts in Cyber Security Bowl

Is there a demand for privacy professionals? Been seeing this discussed more and more recently

like

Deloitte Cyber, how long did it take you to receive an offer after final interview?

like

Georgia Tech Cybersecurity masters or the analytics masters? Currently in a cyber role at Deloitte. I was thinking it might be better to do the analytics master and get a CISSP. I feel like there is more value in the cissp than a MS cybersecurity

like

New to the U.S., is the Healthcare Industry (via HIPAA), the only industry in the U.S. that legally mandates having a designated Privacy Officer? So for example, although GLBA has obvious privacy requirements, unlike with healthcare, financial institutions in the U.S. are not mandated by law to have a designated Privacy Officer?

like

Wondering if anyone here got "provisional" CISSP --obtaining the cert before five years in the industry. Have Security+ and CIPP/US and aiming for BISO role in Fortune 100. Pivoted from consulting. 15+ YOE. Masters degree Management experience. Advice? Thanks.

like

Joining a group that specializes in incident response. Any recommendations on things I can do this summer to prepare on fundamentals/certs?

like
like

Tired of your job and want to come to KPMG Cyber Services? Drop me a burner here.

likefunny

How much does Deloitte pay for cybersecurity or devops senior Deloitte roles

like

We’re hiring across the board at KPMG for cyber / cyber risk work - shoot me a DM if interested. (Pays well!)

likehelpful

Can anyone recommend a good book/materials to prep for the CIPP/CIPM? 🙏🏽

What does a senior cyber consultant make at EY or other b4 firms Chicago if that makes a difference

like

Anyone ever heard of or worked for Sygnia?

like

Privacy fish - Anyone taken the CIPM and can share what the exam is like?

Content outline seems like application of standard consulting approach, so how do they test it on an exam?

Anyone got insights on IBM Security? Areas of expertise? QoL? Pay, etc.

Would you expense a speeding ticket on your way to an IR?

funnylike

How is Booz Allen cyber strategy and risk management consulting? Got a recruiter inquiry

like

Views on carbon black as a product?

helpful

AWS Cloud question- what the difference between an SCP and IAM? Thanks in advance

like

New to Fishbowl?

Download the Fishbowl app to
unlock all discussions on Fishbowl.
That was just a preview…
Sign Up to see all discussions
  • Discover what it’s like to work at companies from real professionals
  • Get candid advice from people in your field in a safe space
  • Chat and network with other professionals in your field
Sign up in seconds to unlock all discussions on Fishbowl.

Already a user?
Login here

Share

Embed this post

Copy and paste embed code on your site

Preview

Download the
Fishbowl app

See what’s happening in your industry
from the palm of your hand.

A phone with Fishbowl app

Scan your QR code to download
Fishbowl app on your mobile

Download app

Sign up for free to view this conversation on Fishbowl

By continuing you agree to Terms of Use and Privacy Policy

Already have an account? Log in

Sign up for free to continue using Fishbowl

By continuing you agree to Terms of Use(New) and Privacy Policy(New)
Messaging rates may apply

Already have an account? Log in

For account settings, visit Fishbowl on Desktop Browser or

General

Legal