1 of 13

The Beginnings of Offensive Security

What it is, and why it’s important.

2 of 13

What is Offensive Security?

3 of 13

Two Simple Answers.

You have a company, and you have a field of cyber security.

Let’s begin with the company!

  1. Provides recognised certifications, like OSCP.
  2. Offers courses and labs.
  3. Covers pentesting, digital forensics, and more.
  4. Red teaming!

4 of 13

You probably aren’t interested in the company though, are you. Let’s get to business

5 of 13

Offensive security as a job.

What offensive security is:

  • The practice of testing security measures from an adversary or competitor’s perspective.�
  • Validation of security controls or postures through negative testing.�

The difference between Red Teaming and Penetration Testing:

  1. Red teaming aims to test processes.�
  2. Focuses on assessing the effectiveness of the technical implementation, most of the time. Pentesting outside of this definition often encompasses testing the security of a third party, like in bug bounties.

6 of 13

Why it matters.

7 of 13

Pentesting and red teaming go hand in hand.

And they are not mutually exclusive.

Often times these two cross or even overlap in ways. However it's imperative that you as a student understand how they function and why they’re different at times.

8 of 13

How to get started in Offensive Security

9 of 13

Before we begin, I want to give some unwarranted advice.

10 of 13

Now, the juicy stuff, getting started in pentesting/offsec.

Things you should focus on:

  • Understanding core concepts.�
  • Certifications�
  • A degree�
  • Working hands on. �
  • Developing soft skills too, not just hard ones.�
  • CTFs�
  • Grasp other fields of cyber security too�
  • Small scale projects, and later, bug bounty!

Other useful tips:

When applying for jobs, try to:

  • Understand market needs�
  • Stay up to date on tech and security �Advancements�
  • Find a mentor!�
  • Network with people, and surround yourself in them.�

11 of 13

And most importantly!

12 of 13

Do what makes you happy!

If you’re not interested in what you do, you’ll never get as far as you could.

Cyber security is a constant state of learning, and your love/passion of cyber security is a big motivating factor, with out that, you will not succeed. Please understand that it’s important to find what you enjoy doing. Cyber security is hard. If you don’t love challenges and learning, you will struggle in this field.

13 of 13

Thanks for attending the class!

Discord: (ASV) Mrs Skelli#9072

Twitter: @Mrs_Skelli

Email: EdenStroet@gmail.com

Website: https://skelli.win