I’m tired of doing cyber audit, GRC, TOM and strategy type, cyber risk of work within the cyber group at a big 4. Any advice to getting more hands on technical work? I have been upskilling myself by getting multiple Azure certifications and Terrafrom Associate, and networking with SM/Directors in those respective teams. Thank you in advance.

like
Posting as :
works at
You are currently posting as works at

Take a class with Blackhills Info Sec ---> Anti-Syphon training. Their training is incredibly affordable (free to 500 dollars per class).

Then create whatever they teach you in azure (sigh) - make sure its secure -- then automate the deployment of that solution using Terraform.

Then attack it using tools - find the logs - automate your response.

Then (here is the key) - reach out to the Azure Security team at your company and ask them to review your work to see if there is anything that they would improve.

Id have a director review the security architecture and then maybe ask another Senior or Manager to review your detailed design...maybe have them look at your detection rules or automate response.

Then sit back and bask in their requests to have you join their team

likehelpfulfunny

The network forensics courses are what I like.

I took the course with Chris (can't remember the name) - it focused on using zeek to do threat hunting. Awesome

Going to take the Jonathan ham course over Christmas.

helpful

Lmao this sounds more like “how to get staffed in consulting for longer”

funny

Seems like you’re doing the right things. Try to network at conferences and stuff as well.

like

Controls are fun 🙂

funny

Me trying to stay in Strategy and Program Development and not get staffed as SME for audit teams or technical projects 😂

Post Photo

Why is that?

Trade jobs with me

LOL what do you do?

Related Posts

Anyone heard of ECS consulting? Are they any good as an exit op?

Has anyone moved from federal consulting to sales engineering? What was your experience in doing that?

like

Currently a consultant, I have an offer for a trading job that will lead me to x5 times the disposable income I currently have. I am worried about career progression. Should I pivot for the money?

like

I am an Indian CPA and pursuing my level 2 Cfa. I have worked with family office and Swf and have relocated to Vancouver. Any tips on where to begin my job search

What books would you recommend for someone wanting to get better at sales?

like

Trying to get a 45 y/o sibling in to consulting (was an entrepreneur prior in the restaurant industry). No college degree but willing to bust his but to learn. Books/online courses recommended pls

funny

Hi Fishes
Is being a Salesforce developer a desired skill in the IT market ? (Present and 10years from now)

Please tell me as i am deciding to learn b/w Salesforce development and Full Stack Development.

Yoe : 1.3
Current tech stack : SQL, INFORMATICA, Service Now

like

Anyone is here who has recently switched technology to Salesforce?

like

Anyone in mid market PE ops transition roles? What do you like / dislike about it?

like

After you are stealth laid off, other than job search, what do you do? I assume they won’t give you work and even if they do, you can politely decline? How do you feel about you are not progressing anymore and seeing other people progressing in their career? I have no intention to make partner, but still feel a bit stuck not doing that much.

like

Hi ,
Need an advice and thoughts for the below companies too much confused which to join
YEO -5.3
Tech Stack- Java , Microservices
Salary - Almost same
1) HCL TECHNOLOGIES
2) Coforge - HSBC client
3)BMC SOFTWARE - But the tech stack is core java and legacy application
4) Synechron - Client interview will be post onboarding
Last 3 weeks remaining to complete notice period,would be really helpful if you let me your experience in aspects of wlb, job security, future growth & increments

TIA

like

Hi Team,
I have worked in a project for more than 1.5 years now for a non scripting tool. Feel no learning and skill enhancement here.Can I get my project changed. QA Automation. Will there be any consequences if I do so?

What can I be doing in my current entry level tech consulting job to make me a great candidate for promotions/raises or changing jobs in the next year or 2?

like

Do any strategy arms of Big 4 or MBB do pre-MBA internships?

like

My manager basically gave me an unlimited budget to get whatever certifications I want. My career profile is similar to a Solution Architect- what should I get? I am thinking about Okta (I do some SAML work), Domo, ITIL, Six Sigma, Certified Scrum Product Owner, Six Sigma, anything else? I have AWS Cloud Practitioner already. I am hoping to pivot to Product Management or Data Science.

like

Hello, in my previous organisation I worked in development domain (Oracle IAM Tool and Java)and my post was software Engineer, i joined Wipro as project Engineer in April 2022 and was assigned non technical project as an analyst.

I fought my way hard to get released from the project. However my designation is changed as Analyst. Should I ask for change in designation as I know that analyst is non-technical profile? Would my designation impact my future role as well?

like
like

What are some common exit opps for strategy (MBB) consultants in London?

like

How long does it takes for you to feel confident on what you are doing at FDD? Essentially I am not trying to stay at FDD forever but want to make sure that I learn all the necessary skills before I go.

like

Need some advice: I currently do corp dev and FP&A for a smaller company and just got an offer for about double my salary at a F200 company. The catch is I would no longer be doing corp dev, just FP&A. My goal is eventually to crack into ib, do you think I should take the job and the pay bump or stay at my current role and try to lateral in to ib.

like

More Posts

How's Games24x7 wlb, culture and HR
policies? What is the average compensation
for someone with 6.5 yoe? How's the
appraisal and bonus policy?
#salary #help #wlb #gaming

like

When you ask the intern to take meeting notes

Post Photo
likefunny

Hi ,
I have got sodexo card activated today. I found there is Meal Pass card, Meal benefit pass card and Cafeteria card

Which one we get money loaded ? Will that only usable in Bofa cafeteria!

like

What you should do when dealing with a very toxic worker that keep on sending passive aggressive messages to you as well as in group chat and email.
Things like when you answer his question he respond: I know that
Or when he keeps on saying my change requests were just minor in group meeting but actually not.
And keep on saying how hard he works when he clearly wasn’t and already underperformed compared to an intern level.

How to not let this toxic co-worker not poison me any further?

like

Everyone: Excel is a smart app
Excel:

Post Photo
likefunny

Question for my 401k focused advisors out there--what programs are you using that is instrumental to your 401k practice that you simply can't do without? I'm being pitched on Envestnet & im not sold.

like

What is your engineering field and how do you see it changing over the next 5 years?

like

What should be the salary expectations? If someone is doing first switch? Yoe - 4.6?

like

Orl, Fl males where you @. 32F here

like

Iam having 4.6 years of experience. Initial 3 yrs as .Net full stack dev & remaining as power apps dev.
What should be the CTC as per the market standards

like

Hello Fishes and Shark, For Murex roles is it better to go for foreign banks as a BA or PWC as BA?
Honest opinions would matter a lot. Thanks.

like
like

I’ve done PI work my entire career for over 10 years. I’ve worked in state and federal courts and I’ve traveled around the country doing MDL work and bellwether trials. I’ve had a lot of success making the idiots I’ve worked for wealthy, but I’m still waiting for a moment where I enjoy what I’m doing. I feel stuck working in dysfunctional plaintiff firms/cultures. I hate this profession/career more and more each year. Has anybody been successful breaking off on their own in recent years? Advice?

like

What’s the difference between product marketing and product management at Facebook? Or any company? And product strategy …. So confused!

like

Wanted to highlight Prudential Financial’s hiring practices. They rescinded my offer once I attempted to negotiate the salary. The official reason given was that I didn’t “sound excited enough”.
They then admittedly gave the offer to someone who was less qualified. There were other red flags throughout the job offer process that the HR team should overall be ashamed of.

like

Kudos to the man on the train next to me who has his ticket around his neck, his glasses in his hand and a full sleeping mask on. 😴

like

How soon you can change project in bny Mellon technology? Whom to contact for project change?

Hi Fishes,
Accenture offering 20 LPA( 16 fixed + 4 Variable).
YOE : 9.5 yrs
Role : Application development specialist

my questions:
1. Is it a good deal?
2. what is the role of Application development specialist in accenture? will there be any team under me? or I'll have to do task alone?
3. how is the WLB in accenture?
4. Will they revise offer letter if I'll get counter offers?


Thanks in advance

like

EYers what’s the salary band for GPS Advisory Managers?

like

Additional Posts in Cyber Security Bowl

Does Krebs have any credibility left?

like

Anyone working in Pharma industry?

like

Tell me it’s not true.

Post Photo
funnylike

Anyone here able to provide insight into company culture and WLB at SentinelOne? Please share your salary/position as well if you are currently working there or previously did.

like

Anyone at Protiviti in their Cybersecurity consulting practice willing to chat? Looking to inquire about pay, culture, etc. Thanks!

like

Looking for experienced threat intel /CTI folks to help lead a growing team. We have great support from leadership and the right focus, tooling, and culture.

like

Any EY PPMD 🐠 willing to chat/connect? Interested in learning more about the cyber practice. I’m a new campus hire in the Hoboken office. Thanks in advance!

like

Laterals to Deloitte Cyber from other B4: Can you describe your interview process and what each one entailed? TIA!

like

At what point do you walk away when bosses or team values do not align with your personal values? Boss told me I’m too soft and I should be prepared to burn bridges if it’s a good outcome for company.

Thinking of moving from Big4 cyber to Accenture cyber. Any major differences (other than no channel restrictions).

like

Currently stuck in risk but interested in Cyber. Have done one related engagement from a regulatory perspective. But a lot of posts here making me think it’s harder to break into than I expected (non-technical background). If you had a six sigma green belt / supply chain degree/exp., would you still go through the effort of going into Cyber or take easy risk money being offered / easier transition back to supply chain? 2-3 YOE and trying to decide career course, any advice highly appreciated

like

I’m a recent graduate in a cyber analytics consulting role with a traditional business background, is Security+ a must have certification? Would you consider Network+ a critical prerequisite?

Hi everyone, any opinions on working for McAfee? I’ve been looking to break into the cyber security industry, and I have an interview with the company this week. I know they’ve had a debatable reputation over the years, but I feel like it could be a good opportunity to gain experience in the industry? Thanks for your input.

likehelpful

Anyone here do post-breach data mining? Being pursued to start a practice line doing this and trying to understand market value.

like

Today I passed CIPP/US, and earned Security+ in early August. Interviewing for a cybersecurity role at Deloitte tomorrow! Super excited! Interested to connect with fish at Deloitte, especially Deloitte Global. Thanks!

like

Any tips or tricks for CSX certification?

like

Any recommended study material for CIPP and/or CIPM (still debating the two)?

Thinking about getting the AWS Cloud Practitioner certification. Does EY have any amazon resources or training materials that they provide? Any advise from people who have taken it before? Thanks!

like

Accenture or Deloitte for cyber security strategy? Who’s on top?

like

Can anyone recommend a good book/materials to prep for the CIPP/CIPM? 🙏🏽

New to Fishbowl?

Download the Fishbowl app to
unlock all discussions on Fishbowl.
That was just a preview…
Sign Up to see all discussions
  • Discover what it’s like to work at companies from real professionals
  • Get candid advice from people in your field in a safe space
  • Chat and network with other professionals in your field
Sign up in seconds to unlock all discussions on Fishbowl.

Already a user?
Login here

Share

Embed this post

Copy and paste embed code on your site

Preview

Download the
Fishbowl app

See what’s happening in your industry
from the palm of your hand.

A phone with Fishbowl app

Scan your QR code to download
Fishbowl app on your mobile

Download app

Sign up for free to view this conversation on Fishbowl

By continuing you agree to Terms of Use and Privacy Policy

Already have an account? Log in

Sign up for free to continue using Fishbowl

By continuing you agree to Terms of Use(New) and Privacy Policy(New)
Messaging rates may apply

Already have an account? Log in

For account settings, visit Fishbowl on Desktop Browser or

General

Legal