Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
CyberBank
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
CyberBank
5y ago
Where are you based? Happy to have a chat -- I run VM for a large tech company and have a lot of openings
2.
▲
by
CyberBank
6y ago
>>I’ll tell you a story of when we were developing a product here States-side. We worked with one very gifted development team and we put all of our eggs into that basket. They were doing great work for us but eventually, there was a
3.
▲
by
CyberBank
6y ago
I often right click where I want to click then left click out of the right click menu. It solves my subconscious desire to click, and lets my mind accept waiting. Plus, no negative effects, like going to the wrong link :). Perhaps it might
4.
▲
by
CyberBank
7y ago
Might want to fix the Lorem Ipsum on the homepage for mobile towards the bottom :) for example HIPPA Compliance Lorem ipsum dolor sit amet, consectetur adipiscing elit. Nunc quam urna, dignissim nec auctor in, mattis vitae leo. GDPR Complia
5.
▲
by
CyberBank
7y ago
A combo of in house tools for creating findings from "non-standard" tools, (standard tools being nessus, app scan, etc.) Such as pen tests, responsible disclosure, red teamings, etc. We partner with Kenna Security pretty heavily i
6.
▲
by
CyberBank
7y ago
Precisely :) definitely nailed the locations of the people I know
7.
▲
by
CyberBank
7y ago
Yes the ones I know do it full time as their only income AFAIK. Most do live in low cost of living areas, none of them that I know are living in places like San Fran :)
8.
▲
by
CyberBank
7y ago
Everyone is trying to get a piece of the pie :) trickiest thing right now is defining what an "asset" truly is. An asset could be ephemeral cloud infrastructure, an uncompiled piece of code, an API endpoint, a server, a compiled a
9.
▲
by
CyberBank
7y ago
I know a few folks who do full time between things like SynAck and BugCrowd. SynAck is the ideal model in my opinion for pivoting to full time vs part time as a professional bug bounty individual, although it takes a ton of skill and hardwo
10.
▲
by
CyberBank
7y ago
I am referring to a CIA (confidentiality, integrity, availability) related incident. Less so the availability. If an attack was truly motivated, the web stack / application stack is not how you compromise the system. The user is how yo
11.
▲
by
CyberBank
7y ago
>>Nobody is doing anything to try reduce or manage complexity so it's only getting worse. I disagree, I see a number of large corporations starting to standardize either 1) their entire development stack from IDE all the way to h
12.
▲
by
CyberBank
7y ago
The biggest areas for growth for Cyber at the moment are of the not-so-sexy jobs. The asset inventory, patch management, vulnerability management, third party management, risk management, etc. If you are good at any of those and are innovat
13.
▲
by
CyberBank
7y ago
I think this is a bit short sighted and shows a lack of knowledge of the industry and the subject. I know for a fact that almost every large institution of even the slightest quality is currently in full panic mode regarding their cyber pos
14.
▲
by
CyberBank
7y ago
I've replied to your thread level comment, but please do feel free to reach out to me if you want any advice or discussion: i@willcode.it
15.
▲
by
CyberBank
7y ago
>>1. Aside from: linux cmds, nmap, metasploit, sqlmap, mimikatz, kali's well known tools - what other tools are often used by pen testers ? I think those + your typical scanners (Nessus, Nexpose, etc). One gap I know of, is prope
16.
▲
by
CyberBank
7y ago
YMMV, but, in my experience the biggest difference between these platforms and "real world" is the amount of data available (generally). At big companies, if you were to run a red team exercise or pen test, most of the probing and