SlideShare ist ein Scribd-Unternehmen logo
1 von 26
Downloaden Sie, um offline zu lesen
Breaking Into Information Security
Learning The Ropes 101
(Attempt 2; Steelcon Edition)
I’m Scottish, certain words are commas
in real life
Thanks For Being Here
• You made it to Steelcon, Welcome!
• <Remember to Insert track 1 & track 3
talk title & Don’t forget the kids>
• <insert witty comment>
This Isn’t Going to be your Run of the mill HOW TO GET A JOB sort
of talk, more it will be a life lesson on why coming to hear me talk
is worth coming to Steelcon for alone…
Something Something Profit Right?!
Works 50% of the time Everytime
The Peaks & Troughs of Life - @PwnDexter
Who is This Guy?
• Andy Gill – Penetration Tester
• I Break Stuff & Write Bad Ass
Reports.
I Own A Blue Car, It makes vroom vroom noises
Look at This Guy Kicking the Sun
In Case You Don’t Know Who I am, this is me with longer hair
I Write stuff on the Internet
90% of the time I do this Stuff:
Talk Plan
• How I Got to where I am today(Work Wise, Not My
Travel…Or Travel if you’re interested?!)
• How The Book Came To Be – 5Ws + H
• Different Areas of Industry – Useful for both those
learning and those already stuck in the industry
• Different Paths into Industry
• Important Things about Working In Industry
• New Project: Making Security Accessible
• Questions Maybe if you’re not bored to death by then?
How Did I Get Into The Industry?
Fucked Up School
Went to College, studied Networking
Summer Internship in TIR
Studied Security with Longest Degree
Title in Prospectus!
Summer Internship in Pentesting –
Learning The Ropes
TL;DR
A Lysdexic Wrote a Book?
Hax Confirmed…
Different Areas of Information Security
– Blue, Red, Purple, Rainbow Team!
Hax Confirmed…
Blue Team –What do they do? But Why
are they important?
Hax Confirmed…
The Red Team
Hax Confirmed…
WTF is Purple Team?
A Penetration Tester’s Top Tips
For Getting In…
…To the Security Industry
Different Paths – Following Traditional
Different Paths – Career Change
Different Paths – Self Taught
Different Paths – Fuck It I want to learn?
Important Things about Working In Industry
Have An Open Mind
Have An Escape
No Two Days Will Be The Same
Keep Learning –
Make Every Day A School Day
New Project Plan
Making Tech more accessible –
teaching the average Jane or Joe about security
and expanding their horizons
@ZephrFish on Most Things – Active on
Twitter Most
My Blog: https://blog.zsec.uk
My Book: https://leanpub.com/ltr101-
breaking-into-infosec
Finding Me Online
Question{s}?
Best Question Wins a Book
<Show Ze Book>

Weitere ähnliche Inhalte

Ähnlich wie SteelCon 2018 Breaking Into Information Security by Andy Gill

Edtechposium 2017 - Keynote
Edtechposium 2017 - KeynoteEdtechposium 2017 - Keynote
Edtechposium 2017 - KeynoteDr Graeme Salter
 
Kaitlyn ford final project agro 100
Kaitlyn ford  final project agro 100Kaitlyn ford  final project agro 100
Kaitlyn ford final project agro 100KaitlynFord2
 
Pellissippi State AITP Meeting November 2014
Pellissippi State AITP Meeting November 2014Pellissippi State AITP Meeting November 2014
Pellissippi State AITP Meeting November 2014Adrian Carr
 
5 lessons to help you transition into Product Management
5 lessons to help you transition into Product Management5 lessons to help you transition into Product Management
5 lessons to help you transition into Product ManagementJonathan Lai
 
Designing The Problem
Designing The Problem Designing The Problem
Designing The Problem Steve Portigal
 
Retrospective Toolbox - HCMC Scrum Breakfast - 30/11/2019
Retrospective Toolbox - HCMC Scrum Breakfast - 30/11/2019Retrospective Toolbox - HCMC Scrum Breakfast - 30/11/2019
Retrospective Toolbox - HCMC Scrum Breakfast - 30/11/2019Scrum Breakfast Vietnam
 
So, you wanna be a pen tester ctsc2017
So, you wanna be a pen tester   ctsc2017So, you wanna be a pen tester   ctsc2017
So, you wanna be a pen tester ctsc2017Adrien de Beaupre
 
HR Webinar: Unraveling HR Investigations: They don’t have to be a mystery
HR Webinar: Unraveling HR Investigations: They don’t have to be a mysteryHR Webinar: Unraveling HR Investigations: They don’t have to be a mystery
HR Webinar: Unraveling HR Investigations: They don’t have to be a mysteryAscentis
 
Making it Hard to say No
Making it Hard to say NoMaking it Hard to say No
Making it Hard to say Noruthmcdavitt
 
Professional Skills to a Successful Career
Professional Skills to a Successful CareerProfessional Skills to a Successful Career
Professional Skills to a Successful CareerEdward Erasmus
 
Primary Market Research in Emerging Markets
Primary Market Research in Emerging MarketsPrimary Market Research in Emerging Markets
Primary Market Research in Emerging MarketsElaine Chen
 
DATA COLLECTION.pptx
DATA COLLECTION.pptxDATA COLLECTION.pptx
DATA COLLECTION.pptxSuzie De Leon
 
Tutorial 7 - Term 2
Tutorial 7 - Term 2Tutorial 7 - Term 2
Tutorial 7 - Term 2Comm202
 
Can I Use Twitter to Help My Career - TweetCamp San Antonio
Can I Use Twitter to Help My Career - TweetCamp San AntonioCan I Use Twitter to Help My Career - TweetCamp San Antonio
Can I Use Twitter to Help My Career - TweetCamp San AntonioJim Adcock
 
Summer of Code 09 and How to have a kick ass ICT career
Summer of Code 09 and How to have a kick ass ICT careerSummer of Code 09 and How to have a kick ass ICT career
Summer of Code 09 and How to have a kick ass ICT careersummerofcode
 

Ähnlich wie SteelCon 2018 Breaking Into Information Security by Andy Gill (20)

Edtechposium 2017 - Keynote
Edtechposium 2017 - KeynoteEdtechposium 2017 - Keynote
Edtechposium 2017 - Keynote
 
Kaitlyn ford final project agro 100
Kaitlyn ford  final project agro 100Kaitlyn ford  final project agro 100
Kaitlyn ford final project agro 100
 
Apm thought leadership forum
Apm thought leadership forumApm thought leadership forum
Apm thought leadership forum
 
Pellissippi State AITP Meeting November 2014
Pellissippi State AITP Meeting November 2014Pellissippi State AITP Meeting November 2014
Pellissippi State AITP Meeting November 2014
 
5 lessons to help you transition into Product Management
5 lessons to help you transition into Product Management5 lessons to help you transition into Product Management
5 lessons to help you transition into Product Management
 
Designing The Problem
Designing The Problem Designing The Problem
Designing The Problem
 
Retrospective Toolbox - HCMC Scrum Breakfast - 30/11/2019
Retrospective Toolbox - HCMC Scrum Breakfast - 30/11/2019Retrospective Toolbox - HCMC Scrum Breakfast - 30/11/2019
Retrospective Toolbox - HCMC Scrum Breakfast - 30/11/2019
 
So, you wanna be a pen tester ctsc2017
So, you wanna be a pen tester   ctsc2017So, you wanna be a pen tester   ctsc2017
So, you wanna be a pen tester ctsc2017
 
HR Webinar: Unraveling HR Investigations: They don’t have to be a mystery
HR Webinar: Unraveling HR Investigations: They don’t have to be a mysteryHR Webinar: Unraveling HR Investigations: They don’t have to be a mystery
HR Webinar: Unraveling HR Investigations: They don’t have to be a mystery
 
2. colin andrews
2. colin andrews 2. colin andrews
2. colin andrews
 
Making it Hard to say No
Making it Hard to say NoMaking it Hard to say No
Making it Hard to say No
 
Professional Skills to a Successful Career
Professional Skills to a Successful CareerProfessional Skills to a Successful Career
Professional Skills to a Successful Career
 
Primary Market Research in Emerging Markets
Primary Market Research in Emerging MarketsPrimary Market Research in Emerging Markets
Primary Market Research in Emerging Markets
 
Tutorial 8
Tutorial 8Tutorial 8
Tutorial 8
 
DATA COLLECTION.pptx
DATA COLLECTION.pptxDATA COLLECTION.pptx
DATA COLLECTION.pptx
 
Tutorial 7 - Term 2
Tutorial 7 - Term 2Tutorial 7 - Term 2
Tutorial 7 - Term 2
 
Can I Use Twitter to Help My Career - TweetCamp San Antonio
Can I Use Twitter to Help My Career - TweetCamp San AntonioCan I Use Twitter to Help My Career - TweetCamp San Antonio
Can I Use Twitter to Help My Career - TweetCamp San Antonio
 
Summer of Code 09 and How to have a kick ass ICT career
Summer of Code 09 and How to have a kick ass ICT careerSummer of Code 09 and How to have a kick ass ICT career
Summer of Code 09 and How to have a kick ass ICT career
 
disha_workshop_slides.pdf
disha_workshop_slides.pdfdisha_workshop_slides.pdf
disha_workshop_slides.pdf
 
Think epic be epic
Think epic be epicThink epic be epic
Think epic be epic
 

Kürzlich hochgeladen

Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processorsdebabhi2
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUK Journal
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonAnna Loughnan Colquhoun
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptxHampshireHUG
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherRemote DBA Services
 
Tech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdfTech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdfhans926745
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)wesley chun
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Igalia
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking MenDelhi Call girls
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfEnterprise Knowledge
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘RTylerCroy
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdflior mazor
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?Antenna Manufacturer Coco
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024The Digital Insurer
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsEnterprise Knowledge
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Miguel Araújo
 

Kürzlich hochgeladen (20)

Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Tech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdfTech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdf
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 

SteelCon 2018 Breaking Into Information Security by Andy Gill

  • 1. Breaking Into Information Security Learning The Ropes 101 (Attempt 2; Steelcon Edition)
  • 2. I’m Scottish, certain words are commas in real life
  • 3. Thanks For Being Here • You made it to Steelcon, Welcome! • <Remember to Insert track 1 & track 3 talk title & Don’t forget the kids> • <insert witty comment>
  • 4. This Isn’t Going to be your Run of the mill HOW TO GET A JOB sort of talk, more it will be a life lesson on why coming to hear me talk is worth coming to Steelcon for alone… Something Something Profit Right?! Works 50% of the time Everytime The Peaks & Troughs of Life - @PwnDexter
  • 5. Who is This Guy? • Andy Gill – Penetration Tester • I Break Stuff & Write Bad Ass Reports.
  • 6. I Own A Blue Car, It makes vroom vroom noises
  • 7. Look at This Guy Kicking the Sun
  • 8. In Case You Don’t Know Who I am, this is me with longer hair
  • 9. I Write stuff on the Internet
  • 10. 90% of the time I do this Stuff:
  • 11. Talk Plan • How I Got to where I am today(Work Wise, Not My Travel…Or Travel if you’re interested?!) • How The Book Came To Be – 5Ws + H • Different Areas of Industry – Useful for both those learning and those already stuck in the industry • Different Paths into Industry • Important Things about Working In Industry • New Project: Making Security Accessible • Questions Maybe if you’re not bored to death by then?
  • 12. How Did I Get Into The Industry? Fucked Up School Went to College, studied Networking Summer Internship in TIR Studied Security with Longest Degree Title in Prospectus! Summer Internship in Pentesting – Learning The Ropes
  • 14. Hax Confirmed… Different Areas of Information Security – Blue, Red, Purple, Rainbow Team!
  • 15. Hax Confirmed… Blue Team –What do they do? But Why are they important?
  • 17. Hax Confirmed… WTF is Purple Team?
  • 18. A Penetration Tester’s Top Tips For Getting In… …To the Security Industry
  • 19. Different Paths – Following Traditional
  • 20. Different Paths – Career Change
  • 21. Different Paths – Self Taught
  • 22. Different Paths – Fuck It I want to learn?
  • 23. Important Things about Working In Industry Have An Open Mind Have An Escape No Two Days Will Be The Same Keep Learning – Make Every Day A School Day
  • 24. New Project Plan Making Tech more accessible – teaching the average Jane or Joe about security and expanding their horizons
  • 25. @ZephrFish on Most Things – Active on Twitter Most My Blog: https://blog.zsec.uk My Book: https://leanpub.com/ltr101- breaking-into-infosec Finding Me Online
  • 26. Question{s}? Best Question Wins a Book <Show Ze Book>