Danielm7 wrote: » Well I'm still on the fence about pen testing, I've never done it, so I really don't know. I grabbed a book on the CEH and I'm looking into the details for the OSCP to see if it is something I really want to dig deep into. Moving isn't really an option right now with a family, but there are openings around here, I'm not out in the middle of nowhere either so that's OK. I agree with you on the Cisco stuff, I wouldn't even have taken the CCNA security if it wasn't part of the required curriculum for my degree, I would have focused on a different area. My issue is more that I've done some of the parts of the job, but since I haven't been a purely security role yet I seem to be getting passed by. Most of them list a whole pile of different logging, event tracking sort of software, which I'm sure I could learn quickly, but I haven't used. I should try to see if there is a way to set some of that up in a VM and simulate it so at least I can talk about it that way.
Danielm7 wrote: » My issue is more that I've done some of the parts of the job, but since I haven't been a purely security role yet I seem to be getting passed by. Most of them list a whole pile of different logging, event tracking sort of software, which I'm sure I could learn quickly, but I haven't used. I should try to see if there is a way to set some of that up in a VM and simulate it so at least I can talk about it that way.
SephStorm wrote: » Yep, go grab security onion, start using snort, and all 10 of the SEIM's on that OS. Once you get comfortable you can add IDS analysis using XYZ to your resume. If its not a "insert specific tool administrator" position, you have a shot.