Activity
Mon
Wed
Fri
Sun
Jan
Feb
Mar
Apr
May
Jun
Jul
Aug
Sep
Oct
Nov
What is this?
Less
More

Memberships

Cyber Guard Academy

60 members • Free

6 contributions to Cyber Guard Academy
What’s your biggest frustration with your job search so far?
- Are you struggling with the lack of responses, confusing job requirements, or constant rejections that don’t give real feedback? - Do you feel like the hiring process has become messy, slow, or flat-out inconsistent? - What’s one thing you wish companies would fix to make the process fair and actually useful for candidates? Drop your answer below. Someone else in the group is dealing with the same thing, and your perspective might help them.
1 like • 1d
It would be GREAT if any job was based on merit. As we all know, networking is key when it comes to getting a job, and there are a lot of people in positions based on who they know not what they know and are capable of. All of the above. I feel that the hiring process has become slow and flat. I agree with Nick, there is no way to respond and find out what you're missing or not missing.
What’s the toughest cybersecurity interview question you’ve ever been hit with?
For me, the one that really made me pause was: “Tell me about the worst incident you handled. Walk me through what you did from the moment it started until it was resolved.” It wasn’t about theory. They wanted to see how I actually think when things get messy, how I break down an investigation, and where my real hands on experience shows up. Now I’m curious! - What question caught you off guard or made you stop and think? Drop yours below.
1 like • 1d
Here is a good one... well, it was something like this: “You’re the only analyst on shift. EDR just flagged possible ransomware on a critical file server that supports patient care. Walk through exactly what you do in the first 15 minutes. What do you touch, what do you NOT touch, who do you call, and what tradeoffs are you considering?” There was another variable regarding having to leave work on time too, it was thick. I think I sustained a TIA during the question.
Have You Ever Built a Home SOC Lab? What Tools Did You Use?
I’m curious how everyone here puts their labs together. Some people keep it simple, others go all-in with a full mini-SOC at home. If you’ve built a SOC lab before, what did you use? - What SIEM did you go with? - Any EDR tools you liked? - Local VMs or cloud? - Any open-source tools you swear by? - Screenshots or setups you want to show off? Share whatever you’ve got. It helps the whole group see different approaches and maybe pick up a few new ideas.
1 like • 6d
I am going to be building one this weekend. I will let you know what I used and how it went!
2 likes • 4d
So, I was trying to use Wazah; however, there was something wrong with my VM. Nevertheless, I will be re-attempting this in the near future. If anyone is interested, please check out https://haxcamp.com as he has a lot of great home labs!
Phishing Scams Are Getting Smarter. Have You Seen Any New Tactics Recently?
Attackers are not using the same obvious scams anymore. They are getting cleverer. Their tactics are more personalized and more convincing. Some of the new attempts look nearly identical to real vendor emails, MFA prompts, or internal notifications. I want to know what you are observing. Share the strange ones, the convincing ones, and the scams that nearly caught you or your team. Just remember to remove any sensitive information before posting. - Fake MFA push floods - AI-generated emails that sound very real - Spoofed HR or payroll updates - Fake password-reset notifications - QR code phishing - Deepfake voice or video attempts - Any new method attackers are using The goal is to help everyone stay informed about what is really happening. If you’ve noticed something new or surprising, please share it below. Quiz for today? - I posted two email screenshots. One is real. One is a phishing attempt. - Your job is simple. Tell me which one is legitimate and which one is fake, and explain why you think so. Drop your answer below. Let’s see who can spot the red flags fastest.
Phishing Scams Are Getting Smarter. Have You Seen Any New Tactics Recently?
1 like • 12d
What about deep fakes?! I get so many spam phone calls daily. In fact, my Norton has been doing a pretty good job intercepting those!
1 like • 11d
Excellent, looking forward to it!
What’s the Best Entry-Level Cybersecurity Cert to Start With in 2025?
This debate never ends, so let’s discuss it here and hear everyone’s opinions. People keep asking where to begin in cybersecurity. Some people swear by Security+, while others say ISC2 CC is the new choice. Then there are Google Cybersecurity, CySA+, cloud certs, and a variety of vendor training. Everyone has a different path. So, let’s speak honestly. If someone is starting fresh in 2025, what cert should they take first, and why? Here are some points to consider: • Security+. The classic. HR loves it. It provides a solid foundation. • ISC2 CC. Affordable. Quick. Some say it’s the new "starter cert." • Google Cybersecurity. Hands-on. Good for those who dislike dry theory. • CySA+. More advanced. Some suggest skipping Sec+ and starting here. • Cloud AZ-900 / AWS Cloud Practitioner. Cloud skills are now essential. • EDR vendor training (CrowdStrike, Sentinel One, Defender). Real tools you will actually use in a SOC. What would you recommend to a beginner in 2025, and what led you to choose your path?
1 like • 20d
You know what would be interesting to do is populate all of the certifications and rank them based on popularity and importance as there are so many.
1 like • 14d
Which post?
1-6 of 6
Jon Brendese
2
7points to level up
@jon-brendese-9615
Passionate cyber grad with a specialty in Cyber Ops. Skilled in Tenable, QRadar, Splunk, SentinelOne, AWS, Proofpoint, Python, Kali, Wireshark.

Active 2h ago
Joined Nov 9, 2025
Albany, NY