Shitposting and dogs. Application security person, software developer, corgi dad, solar warlock, gamer, and general nerd. He/him. @vidmaster.net on bloo site
Tomorrow we have @Vidmaster teaching us how to teach our engineers to SOAR, automating security response via threat modeling.
@DJsDugout (777 N 114th)!
Mar, 12 6PM CT
@kangadac@medus4_cdc My favorite thing at conferences has always been going to the occasional private vendor dinner where they just let you chat with the other interesting folks they’ve invited. I despise screaming over each other in a noisy crowded bar!
@AlyssaM_InfoSec But for real why would anyone even think wearing some kind of headset while controlling a one ton death box hurtling down the road at 70 MPH is a remotely good idea?
@UK_Daniel_Card I think when we build our processes and controls we should always steal the best part of zero trust - assume compromise! People are going to do dumb shit, and that’s fine because we’re all people over here in the ivory tower of infosec too.
@d0rkph0enix And my hot take here is that cybersecurity is such a huge field that there is not a single technical skill that everyone must have to do valuable work in the field. You can even do valuable GRC work and not even touch a computer!
@d0rkph0enix As an application security engineer with an expectation to be hands on, I code relatively often. In my last AppSec role I never wrote a single line of code.
Like every single one of the other infinite number of infosec skills, it can be useful but not everyone needs it.