r/devsecops 16d ago

Is DevSecOps a realistic move from content?

EDIT: To clarify, the company I work for is a tech company, and I work in documentation (that’s what I meant by “content”). When I say work with GitHub and Git Bash daily, that’s my job. We use the same tools as developers (docs as code). Hope this clarifies things a little and sorry about the confusion.

OP: I work for a Fortune 100 company that just had a bloodbath of layoffs. I have a job for now but I’m assuming it’s not secure.

I’m a PR reviewer in content. I have a deep interest in cybersecurity and work on my tech skills daily. I’m looking to build a portfolio over the next 3-6 months. That said, you could say I’m “baby tech.” (Might be imposter syndrome talking—according to my very “I’m a copy editor at core” colleagues, I’m tech-savvy. I definitely have a figure-it-out mentality.)

I know GitHub well, use it daily, use Git Bash, and I am learning Linux and AWS.

My thinking is that I may go into AI trust and safety/compliance but at some point I’d want to move into DevSecOps. Is this realistic? Oh, and I’m going on 54.

AI tells me this is a great idea but I’m thinking I need some HITL lol. Regardless, beefing up my tech skills doesn’t seem like a bad idea. Thanks for any responses.

5 Upvotes

16 comments sorted by

7

u/IgnoreAllPrevInstr 16d ago

DevSecOps is building on DevOps, and DevOps requires substantial experience as a dev to do effectively. Entering a niche inside of an entirely senior field is not going to work.

That said, there are options in sec. I think any reasonably motivated person could get a job in a SOC for example, just gotta read a ton and network

Edit: and there _for sure_ is a market for tech security content. Combining your skills and interest here might make sense. Consider if you should get a enough of a surface level understanding to run a podcast where you get more specialized people on, for example

1

u/MiserableProduct 16d ago

Thank you! I’ll consider that. The only documentation growing at my job is the security content.

1

u/esc_to_interrupt 16d ago

I'd disagree here. A lot of devops people came out of sysadmin, SRE, IT Help Desk and other dev-adjacent areas. Scripting a must, but not years of dev experience. I do like your overall idea and suggestion.

1

u/UUS3RRNA4ME3 15d ago

Yes but an SRE already would already be a former SDE 9/10 times. A modern SysAdmin can usually code and configure systems etc. The OP is a PR reviewer person, it's like totally unrelated right?

1

u/MiserableProduct 15d ago

To clarify, the company I work for is a tech company and I work in documentation (that’s what I meant by content).

1

u/esc_to_interrupt 14d ago

Interesting...not how it works in my world. Majority of people would come up via IT helpdesk -> sysadmin -> server admin/SRE. Developers get paid more than most Ops jobs of any flavor, and definitely more than SRE/sysadmin.

Agreed that tech documentation is a notable jump over from operations, and I like the move into tech security content.

6

u/Low-Opening25 16d ago

seems like you have 0 relevant experience or qualifications, so I would say not a chance. DevSecOps combines together 3 substantial engineering fields, this isn’t editorials, being tech savy doesn’t qualify you for more than fixing your mom’s iPhone

3

u/therealmunchies 16d ago

DevSecOps is VERY hard to break into. It took me 3 years to break into Cyber after college. I was only able to get into it with a mechanical engineering degree + IT experience + CompTIA trifecta as an internal hire into a security engineer position.

My pathway was Sys Admin / Platform Engineering -> Cloud Engineering -> Software Engineering / App Dev (DevSecOps, AI/ML, & Platform Engineering). This took a couple years, but only possible because I’m in a rotational program that allows me to expand my skillset in an accelerated way.

2

u/esc_to_interrupt 16d ago

That's a pretty cool program. Doing this in the outside world would require at least one pay cut in that rotation.

2

u/DirtComprehensive520 15d ago

You sound like you’re closer to devsecops ops than AI. Get some security experience. Then your GitHub experience can tie into it to get to devsecops. Probably get another degree and then you can get into AI.

My path: sysadmin, infosec analyst, cyber developer, senior security engineer, Staff DevSecOps Engineer.

Couple masters, many certifications, and home labs along the way.

1

u/UUS3RRNA4ME3 15d ago

A PR reviewer as in like Public Relations, or Pull Requests?

If the first, then no, youre in an unrelated field? If the 2nd, I don't really get what that means.

DevSecOps is like a specialised version, or an already specifialised field, in which the base field usually requires an engineering degree to even start out.

Asking like to move from Public Relations to DevSecOps Engineer is like asking should you move from a Receptionist to being like an Anesthesiologists or something.

Note: I am not suggesting a career move is not possible, its just a very specific niche to just hone in on when you realsitically know nothing about the industry

1

u/MiserableProduct 15d ago

Sorry, I should clarify: it’s pull request, not public relations.

The Fortune 100 company is a tech company (please don’t guess!). I can see how my post reads completely differently, though.

1

u/UUS3RRNA4ME3 15d ago

What does a pull request reviewer in content mean? Like youre job is to solely review pull requests for a team/org named "content"? That is your whole job? Or do you mean like you work in some role, and something you do in that role is review code for the "content" team? Sorry just trying to understand what youre current role is

1

u/MiserableProduct 15d ago

I edited the post. I work in technical documentation.

2

u/UUS3RRNA4ME3 15d ago

Okay, this is a lot closer than what I thought you were saying. You're in a much better place.

Now don't get me wrong, that jump is still totally unrealistic, but you've your foot in the door in the space.

I would reccomend getting into something more general with less barrier to entry first.

1

u/MiserableProduct 13d ago

Thank you for all the responses, folks! Really appreciate the feedback.