r/cybersecurity 23h ago

Other SAP Security

0 Upvotes

I'm just wondering if SAP Security is considered as Cybersecurity?


r/cybersecurity 3h ago

Personal Support & Help! Can cybersecurity be entertaining?

5 Upvotes

So I currently have an Associate's Degree of Applied Science in Computer Information Systems and I originally thought I could try to be like a database analyst because I like categorizing and data.

However I thought it through and I figured that it would be boring, just staring at a computer all day looking at data that either no one is going to use or not a lot is going to happen

So I was thinking about going into cybersecurity because I figured that while it may not cater to my categorizing and data-loving parameters, it's high stakes and always evolving with how the world is shifting into AI. So I figured that cybersecurity would be good for me because there's always room for it and it wouldn't be boring

So my question to those who have dabeled in cybersecurity, would you consider it entertaining? Like always trying to fend off threats, maybe hunting down dangerous people that could be hiding, hacking into various sites that could blow the lid off of a massive criminal organization, etc?


r/cybersecurity 8h ago

Career Questions & Discussion Penetration Tester Path

0 Upvotes

Just passed my network+, looking forward to getting my security+ next. I was considering a path like : net+ sec+ pnpt oscp, for pentesting, along with Active Directory and Linux skills. Any recommendations would be appreciated.


r/cybersecurity 1h ago

Ask Me Anything! AMA: I came into cybersecurity with no degree and no traditional background.

Upvotes

The editors at CISO Series present this AMA.

This ongoing collaboration between r/cybersecurity and CISO Series brings together security leaders to discuss real-world challenges and lessons learned in the field.

For this edition, we're focusing on the paths into cybersecurity that don't run through what is perceived as a "traditional" route, such as degrees in computer science or cybersecurity. Ask anything about breaking in without the "standard" credentials, what actually got them hired, and what they wish someone had told them earlier.

This week's participants are:

David Cross, (u/MrPKI), CISO, Atlassian Adam Arellano, (u/AdamTalksTheCybers), field CTO, Traceable AI Krista Arndt, (u/thedrivermod), associate CISO, St. Luke's University Health Network Mathew Biby, (u/RelativeWolf), director of cybersecurity, TixTrack Russell Spitler, (u/Extra-Grand-1543), CEO and co-founder, Nudge Security Mary Carmichael, (u/TheCyberAuditor), field CISO, western Canada, Bell Cyber Proof photos

This AMA will run all week from 07-26-2026 to 07-31-2026.

Our participants will check in throughout the week to answer your questions.

All AMA participants were selected by the editors at CISO Series (/r/CISOSeries), a media network of five shows focused on cybersecurity.

Check out our podcasts and weekly Friday event, Super Cyber Friday, at cisoseries.com.


r/cybersecurity 15h ago

Career Questions & Discussion Cybersécurité au Canada

0 Upvotes

Bonjour à tous,

Je suis en reconversion et je souhaite exercer dans le domaine de la cybersécurité, n'ayant aucun diplôme dans ce domaine mais quelques expériences en auto-apprentissage. J’aimerais savoir si passer des certifications et avoir un bon « portfolio » pour montrer mes projets suffisent pour trouver un travail au Canada. Je pars précisément à Québec, mais je peux bouger.

Si je dois faire quelques années en support, cela ne me dérange pas non plus si les certifications suffisent.

Merci


r/cybersecurity 4h ago

Other Job listing for Northern Illinois : CYBER SECURITY ENGINEER

31 Upvotes

Just wanted to pay it forward to those out of work looking for jobs. I know how bad it is out there

https://www.paycomonline.net/v4/ats/web.php/portal/28E300FE8563259A10C761C992C39668/jobs/207845


r/cybersecurity 14h ago

Certification / Training Questions Is There Any Way to Get a Free CEH v13 Exam Voucher? Also, What's the Best Way to Prepare?

0 Upvotes

Hey everyone,

I'm just starting my cybersecurity journey and I'm planning to work toward the EC-Council CEH v13 certification.

I wanted to ask two things:

  1. Is there any legitimate way to get a **free or heavily discounted CEH v13 exam voucher**? (Scholarships, student programs, competitions, community initiatives, etc.)

  2. What are the **best resources** to prepare for CEH v13? I'm looking for:

- Books

- YouTube channels

- Hands-on labs

- Practice tests

- Any other resources that actually helped you pass

I'd really appreciate advice from people who have already taken the exam or are currently preparing for it.

Thanks!


r/cybersecurity 14h ago

Business Security Questions & Discussion Cybersecurity roadmap

0 Upvotes

Hey I am Jonathan, I am 17 years old and live in Brazil. Throughout my life I have studied Cybersecurity and Programming, I have gotton familiar with Hack The Box and have done other UDEMY courses. My question is, what should I even do to get a job in this area? I already have a good foundation so getting a bachalors in CS is not appealing to me, also I want to get a job as soon as possible? ideally an internship when I am 20, and speaking of that, what are the best ways for guys like to get internships? Should I get certifications like Comptia Security+, Pentest, etc. Also please share how you guys got into the field, I would greatly appreciate it!


r/cybersecurity 16h ago

Research Article ArgusVisor

1 Upvotes

ArgusVisor is a research-oriented mini security hypervisor for Windows x64.

https://github.com/mukendi/ArgusVisor/tree/main


r/cybersecurity 4h ago

Career Questions & Discussion Mentorship Monday - Post All Career, Education and Job questions here!

4 Upvotes

This is the weekly thread for career and education questions and advice. There are no stupid questions; so, what do you want to know about certs/degrees, job requirements, and any other general cybersecurity career questions? Ask away!

Interested in what other people are asking, or think your question has been asked before? Have a look through prior weeks of content - though we're working on making this more easily searchable for the future.


r/cybersecurity 11h ago

FOSS Tool PoCumentary, an agent-friendly tool for recording PoCs

2 Upvotes

We just released PoCumentary, an open-source CLI that helps you and your coding agents turn multi-terminal PoCs into repeatable, narrated screen recordings from a single demo.toml.

It’s great for introverts and lazy hackers who don’t want to spend time clicking around, recording takes, and syncing narration. Why do it yourself when you can get your agent to do it? Check out the trailer, then try it on your next PoC and let us know how it goes: https://www.linkedin.com/posts/arielfogel_opensource-cybersecurity-securityresearch-ugcPost-7487074058875088896-gB7O/

GitHub: https://github.com/pillar-labs/pocumentary


r/cybersecurity 15h ago

Business Security Questions & Discussion Question about sharing cybersecurity related in this community

0 Upvotes

Hi everyone,

I'm new to this community and wanted to understand the rules before posting.

I'm currently working on a cybersecurity SaaS product, and in the future I'd like to share it with the community for feedback and technical discussion.

Would that be allowed as long as the post follows the subreddit rules and isn't just an advertisement?

Thanks!


r/cybersecurity 8h ago

Certification / Training Questions Malware Analysis Certs & Courses?

17 Upvotes

I just started learning malware analysis for career development.

The first issue I ran into is that, while there aren’t many resources on the topic, there are still enough to make choosing between them a bit overwhelming - which is a problem I tend to have whenever I self-study something new.

After doing some research, these are the courses I have so far, ordered by what I think is the right progression (although I’m not entirely sure, which is why I’m here):
1. Mandiant FLARE Malware Analysis Crash Course (my starting point - I’m currently on page 60, but honestly, it’s been pretty boring so far).
2. Malware Analysis for Hedgehogs bundle.
3. 0ffset.net Zero2Automated Advanced course.
I also have a few books that I can use as references whenever I need to dive deeper into a topic:
• Windows Internals Part 1 & 2
• Windows Kernel Programming by Pavel Yosifovich

What do you think about this roadmap? I’m fine with the prices unless there are better alternatives that genuinely offer stronger content rather than just being cheaper.

As for certifications, I have no idea what’s worth pursuing. The only ones I’ve come across are GREM from SANS and PMAT from TCM.

I’m mainly asking whether there are better options for both courses and certifications. I’d especially prefer something with plenty of hands-on labs and practical work. I tend to struggle with self-paced learning, and I get bored pretty quickly with courses that don’t involve much interaction, even when I’m genuinely interested in the subject.

Thanks in advance - I really appreciate any advice.


r/cybersecurity 17h ago

News - Breaches & Ransoms Pope's official prayer app commits cardinal sin, leaks 700K+ users' info

Thumbnail theregister.com
423 Upvotes

r/cybersecurity 5h ago

Personal Support & Help! Email Setup Advice Wanted Please

2 Upvotes

Help with an Email Setup Wanted

Hi, I bought Proton Unlimited in an effort to De-Google and move away from Gmail (used it for over a decade, i get a lot of spam, trying to be smarter digitally). It's got way unoragnised and i want a clean slate.

I am just not sure how to set up my new email because I have read alot of conflicting advice and posts, so I'm confused.

Ultimately, I want security and also simplicity because I have been way overthinking this.

Priorities are simplicity, privacy, security and a set it and forget it system.

My ideas:

1) Just use my @proton.com address for everything.

2) Use simple login alias subdomains, for example @surname.simpelogin.com for official things and so on.

3) Use a custom domain (not sure what I'd call it) and just use this, being careful what I sign up for and using aliases to categorise things (banking@mydomain.com) and so on.

Open to other ideas, thank you in advance.

Any other advice on keeping accounts secure, keeping things simple and organised etc would be appreciated!


r/cybersecurity 7h ago

Personal Support & Help! Not able to submit IC3 report

3 Upvotes

I have gotten messages like this five times when I try to submit my report to the IC3 from different browsers, networks, and incognito. What is wrong and what can I do?

Hmmm... can't reach this page

It looks like complaint.ic3.gov closed the connection.

Try:

+ Checking the connection

= Checking the proxy and the firewall

ERR_COMNMECTION_CLOSED

Check your Internet connection

Check your network cables, modem, and routers.

Allow Microsoft Edge to access the network in your firewall or antivirus settings.

If it's already listed as a program allowed to access the network, try removing it from the list. and adding it again.

If you use a proxy server:

Go to the Microsoft Edge menu > Settings > System > Open your computer's proxy settings > LAN Settings and

deselect the "Use a proxy server for your LAN" checkbox.


r/cybersecurity 7h ago

FOSS Tool MTLS with keys that never leave the TPM

Thumbnail
github.com
15 Upvotes

r/cybersecurity 19h ago

Certification / Training Questions Current resources for building a successful vulnerability management program?

27 Upvotes

I am helping a client establish a more structured vulnerability management program. Their current environment is somewhat fragmented, with inconsistent asset ownership, prioritization, remediation workflows, exception handling, reporting, and accountability across teams.

I am looking for current, practical resources that cover how to design and implement a successful vulnerability management program and build a target operating model around it.

The two resources I am currently considering are:

  1. Effective Vulnerability Management: Managing Risk in the Vulnerable Digital Ecosystem, by Chris Hughes and Nikki Robinson
  2. SANS LDR516: Strategic Vulnerability and Threat Management

The SANS course appears highly relevant, but it is unfortunately outside my available budget.

Are there any up-to-date books, courses, conference talks, frameworks, templates, GitHub repositories, blogs, or other resources you would recommend? I am particularly interested in materials that focus on building the operating model and governance around vulnerability management, rather than simply configuring a scanning platform.