התחל במצב לא מקוון עם האפליקציה Player FM !
פודקאסטים ששווה להאזין
בחסות


#13 Hacking Time: Real World Skills They Don't Teach You | Trent Darrow
Manage episode 440546500 series 3583577
Kyser Clark interviews Trent Darrow, a senior penetration tester and cyber protection team crew lead. They discuss Trent's background, certifications, and his role in building a red team. They also touch on ethical dilemmas in the industry, the effectiveness of certifications in preparing for real-world pen testing, and the importance of skills like time management and effective communication. In this conversation, Trent and Kyser discuss time management in cybersecurity exams, the challenges of scanning large networks, the role of a cyber warfare technician, the transition between civilian and military careers, strategies for preparing for the OSCP and OSEP exams, the value of participating in CTFs, and the future of the cybersecurity field.
Connect with Trent Darrow on LinkedIn: https://www.linkedin.com/in/trenton-darrow/
Takeaways:
Trent's background spans help desk, IT specialist roles, network engineering, and cybersecurity contracting, with certifications like OSCP, GCFA, GWAPT, GPEN, and GCPN.
Real-world skills like time management, note-taking, and communication are crucial, differing from those needed for exams or CTFs.
Ethical dilemmas, such as downgrading findings to please clients, can be common in the industry.
Preparing for certifications like OSCP and OSEP requires practice, extensive note-taking, and ensuring tools work properly through a proxy.
AI isn't a threat to cybersecurity jobs, but learning web application security is essential for staying competitive.
Connect
---------------------------------------------------
https://www.KyserClark.com
https://www.KyserClark.com/Newsletter
https://youtube.com/KyserClark
https://www.linkedin.com/in/KyserClark
https://www.twitter.com/KyserClark
https://www.instagram/KyserClark
https://facebook.com/CyberKyser
https://twitch.tv/KyserClark_Cybersecurity
https://www.tiktok.com/@kyserclark
https://discord.gg/ZPQYdBV9YY
Music by Karl Casey @ White Bat Audio
Attention Listeners: This content is strictly for educational purposes, emphasizing ETHICAL and LEGAL hacking only. I do not, and will NEVER, condone the act of illegally hacking into computer systems and networks for any reason. My goal is to foster cybersecurity awareness and responsible digital behavior. Please behave responsibly and adhere to legal and ethical standards in your use of this information.
Opinions are my own and may not represent the positions of my employer.
פרקים
1. Introductions (00:00:00)
2. Rapid Fire Questions (00:06:16)
3. Ethical Dilemmas in Pentesting (00:08:40)
4. Real-World vs. Exam Time Management (00:17:09)
5. Preparing for OSCP and OSEP Certifications (00:27:15)
6. Burnout & AI (00:37:08)
49 פרקים
Manage episode 440546500 series 3583577
Kyser Clark interviews Trent Darrow, a senior penetration tester and cyber protection team crew lead. They discuss Trent's background, certifications, and his role in building a red team. They also touch on ethical dilemmas in the industry, the effectiveness of certifications in preparing for real-world pen testing, and the importance of skills like time management and effective communication. In this conversation, Trent and Kyser discuss time management in cybersecurity exams, the challenges of scanning large networks, the role of a cyber warfare technician, the transition between civilian and military careers, strategies for preparing for the OSCP and OSEP exams, the value of participating in CTFs, and the future of the cybersecurity field.
Connect with Trent Darrow on LinkedIn: https://www.linkedin.com/in/trenton-darrow/
Takeaways:
Trent's background spans help desk, IT specialist roles, network engineering, and cybersecurity contracting, with certifications like OSCP, GCFA, GWAPT, GPEN, and GCPN.
Real-world skills like time management, note-taking, and communication are crucial, differing from those needed for exams or CTFs.
Ethical dilemmas, such as downgrading findings to please clients, can be common in the industry.
Preparing for certifications like OSCP and OSEP requires practice, extensive note-taking, and ensuring tools work properly through a proxy.
AI isn't a threat to cybersecurity jobs, but learning web application security is essential for staying competitive.
Connect
---------------------------------------------------
https://www.KyserClark.com
https://www.KyserClark.com/Newsletter
https://youtube.com/KyserClark
https://www.linkedin.com/in/KyserClark
https://www.twitter.com/KyserClark
https://www.instagram/KyserClark
https://facebook.com/CyberKyser
https://twitch.tv/KyserClark_Cybersecurity
https://www.tiktok.com/@kyserclark
https://discord.gg/ZPQYdBV9YY
Music by Karl Casey @ White Bat Audio
Attention Listeners: This content is strictly for educational purposes, emphasizing ETHICAL and LEGAL hacking only. I do not, and will NEVER, condone the act of illegally hacking into computer systems and networks for any reason. My goal is to foster cybersecurity awareness and responsible digital behavior. Please behave responsibly and adhere to legal and ethical standards in your use of this information.
Opinions are my own and may not represent the positions of my employer.
פרקים
1. Introductions (00:00:00)
2. Rapid Fire Questions (00:06:16)
3. Ethical Dilemmas in Pentesting (00:08:40)
4. Real-World vs. Exam Time Management (00:17:09)
5. Preparing for OSCP and OSEP Certifications (00:27:15)
6. Burnout & AI (00:37:08)
49 פרקים
כל הפרקים
×
1 #48 He Got Hired Without Knowing the Answer: Here’s Why ft. Michael Kim 38:28

1 #47 Q&A: Feel Lost Watching Hacking Videos? Listen to This 32:00

1 #46 She Started Coding at 13 and Never Looked Back ft. Betta Lyon Delsordo 39:49

1 #45 OSWA Grind: 24 Hours. No Sleep. One Last Flag ft. Pratham Shah 35:16

1 #44 How to Hack What No One Teaches ft. Noah Pack 33:17

1 #43 Grind Now, Relax Later: The Harsh Reality of Breaking Into Cybersecurity ft. Matthew Younker (Zumi Yumi) 34:29

1 #42 Certifications, College, or Bootcamps — What’s Worth It in Cybersecurity? ft. Channa Rajaratne 39:31

1 #41 How to Actually Become a Great Pentester 38:25

1 #40 Proof You Don’t Need a Degree to Succeed in Cybersecurity ft. Zach Winchester 39:37

1 #39 Q&A: Struggling with Burnout? Here’s Why It Might Be a Good Thing 39:15

1 #38 Fired or Freed? Turning a Cybersecurity Layoff into Your Next Big Break w Justin Mahon 39:17

1 #37 He Hacked for 1000 Days Straight: Here’s How It Landed Him a Cybersecurity Job ft. Constantinos Kaplanis 24:59

1 #36 The OSCP Won’t Save You ft. Tyler Ramsbey 44:55

1 #35 Q&A: The Harsh Truth: You NEED to Code for Cybersecurity Mastery 36:04

1 #34 Why Top Pentesters Make More Money (Most Ignore This Skill) ft. Spencer Alessi 43:58

1 #33 Are Cybersecurity Bootcamps a Scam? ft. Keith Coleman 40:04

1 #32 From Physical Security to Penetration Testing: Paul Nieto III's Journey 41:22

1 #31 Q&A: Are Tech Giants Planning to Replace Us with AI? 31:57

1 #30 Uncovering a $200M Fraud Ring with David Taxer 43:00

1 #29 InfoSec Pat’s Journey From Network Engineer to Cyber Mentor: 41:40

1 #28 Outwork the Competition: Winning the Cybersecurity Career Game 28:03

1 #27 Red Team Reality: Building the Hacker's Edge ft. Mike Ortiz 45:31

1 #26 Q&A: The Certification Everyone Asks For (Is It Overrated?) 27:44

1 #25 Beyond Compliance: How Hackers Think and What Companies Miss ft. Albert Corzo 41:12

1 #24 Building a Career Together: Lessons from Clint & Si The Hackers 39:44

1 #23 SOC Analyst Life: Challenges & Secrets from Trent Williams 39:24

1 #22 Q&A: Cybercrime, Certifications, and Sacrifice in Cybersecurity Careers 39:58

1 #21 Unpacking AppSec: Lessons and Insights with Jonathon Fuller 38:48

1 #20 What it REALLY Takes to Pass OSCP (and What They Don’t Tell You) ft. Trent Miller 36:40

1 #19 Beating the Odds in Cybersecurity: What It Really Takes ft. James Scott 35:39
ברוכים הבאים אל Player FM!
Player FM סורק את האינטרנט עבור פודקאסטים באיכות גבוהה בשבילכם כדי שתהנו מהם כרגע. זה יישום הפודקאסט הטוב ביותר והוא עובד על אנדרואיד, iPhone ואינטרנט. הירשמו לסנכרון מנויים במכשירים שונים.