• not_amm@lemmy.ml
    link
    fedilink
    arrow-up
    3
    ·
    5 days ago

    And they certainly look like losers lol

    Hmm, I’m liking it very much. I’ve been self-hosting as part of my learning journey so I can understand better the things I learn and apply them. Right now I’m concerned with people replacing security roles with AI, but it’s México and we’re so behind in cybersecurity I think I can worry later. I want to go into GRC or auditing, any tips?

    I like a lot of different areas, I’m thinking about following one of my teachers ideas and also offer freelance monitoring solutions. I try to learn a bit of everything so I can stay ready :)

    BTW, if you know any software that’s very used so I can start checking out, I’d be glad to hear about it. I know the FOSS alternatives are not that common and that’s what I have to use rn

    • duhbasser@lemm.ee
      link
      fedilink
      English
      arrow-up
      1
      ·
      3 days ago

      Self hosting is the way to go. I’d suggest looking into open source projects for something you might be passionate about. Like, if you like gardening you could set up a time to turn gardening lights on, water systems, ect…those types of projects, when using open source apps, REALLY speed up you’re understanding of how systems communicate with each other.

      I work for a company that has offices in Spain (estoy aprendiendo español para mi trabajo) and Spain has a lot of jobs in tech, if you wanted to explore other areas.

      GRC tools, I’ve only used ZenGRC but that was for a short time and I don’t focus on that, so I’m not the best resource for that. I do work with Data Governance tools that will usually work closely with GRC type tools, if that’ll help.

      • not_amm@lemmy.ml
        link
        fedilink
        arrow-up
        1
        ·
        13 hours ago

        I want to do things like that, but I first require more space and time, I just bought and ESP32, but I still need some other components heh

        ¡Buena suerte aprendiendo español!, it can be hard because of all the conjugations and times we use. I’m trying to learn German 🤓

        I’ll check it out, thanks! Have you used a lot of VMWare software, for example? We have networking classes with software/hardware from Cisco, but barely touch any other tools.

        • duhbasser@lemm.ee
          link
          fedilink
          English
          arrow-up
          1
          ·
          4 hours ago

          Gracias! Yo sé alemán un poco también pero español es más divertido.

          I’ve used VMware and Cisco products before, and you’re heading down the right path. I used the Cisco WAP at this one startup and those WAP’s were the best I’ve ever used, it’s been awhile though so it could’ve changed.

          If you’re looking at Networking type of protections I’d focus on understand network traffic and how it flows in and out of internal systems. I currently use Akamai as our CDN but I’m not sure if they offer a free or community version. Wireshark is a good open source tool with plenty of docs and step by step guidance for analyzing traffic (it’s a bitch to learn up front but you’ll be good for like 90% of traffic tools).

          That said, what we’re talking about is very different from the GRC stuff you had initially mentioned. What I’m getting at is you probably don’t have to focus on networking things if you’re dealing with compliance and regulatory GRC things.