• 0 Posts
  • 24 Comments
Joined 1 year ago
cake
Cake day: June 15th, 2023

help-circle






  • A little late, but here is what I usually do when a ticket like that comes in:

    1. Check monitoring. It’s quick and easy to check so I’ll look before even asking any clarifying questions. If there is a real network problem at a site, 95% of the time its going to show up on our monitoring dashboard. Everything from ISP outages to device failures show up here.
    2. Ask for more details about what they are trying to do. What is the goal? What are you doing? What is happening? What should be happening? When was the last time it worked?
    3. Based on those details, I can usually put together a good guess as to what might be going on, so i’ll test that theory out and see if i’m right.


  • I just started my first official cybersecurity position at a medium size company in an industry that is currently being heavily targeted with ransomware.

    I’m starting pretty much from scratch as they have not had a dedicated security role in over a year and my predecessor didn’t make much progress. So far i’ve been focused on inventory lists, policies, and procedures for hardware, software, and data. I think we’re doing okay with minimizing stuff thats internet facing and patching is in a good place (well, at least with the devices and os’s that are still supported).

    Any suggestions on where to go from there or what to prioritize?






  • Really depends on your scale and needs, but when we were in the process of transitioning from Ivanti to Intune we had a gap between them. I set up a FOG project server and a couple remote nodes and that worked really well as an interim solution. I actually started using it at home even though I don’t really need imaging too often.





  • Hey, I have a career question this week! I’ve been a sysadmin for the last 1.5 years (It’s a small shop so everything security related is currently my responsibility). I’ll soon be graduating with a BS in Cybersecurity & Information Assurance. I’m SSCP, CySA+, and PenTest+ certified. I want to end up in a penetration testing role. Once I graduate, should I start looking for pen testing gigs immediately or do you think I ought to get some experience directly in the security industry first? Would getting OSCP help my chances of moving directly to pen testing?


  • I disagree, i’ve found pretty adequate for my needs. I agree the UI isn’t great, it reminds me of how Blender used to be, but I use it for all my parametric modelling for 3d printing stuff around the house. Fusion 360 is a better experience overall but to say FreeCAD is garbage seems extreme. If you need hobbyist software and care about your freedoms at all it’s worth the slight inconvenience to use FreeCAD instead.