Most of the security teams’ work has nothing to do with chasing advanced adversaries
If someone new to the industry were to spend a few hours watching movies about security (pick any of your favorites), or going through the industry marketing, they would inevitably conclude that security teams are warriors who spend 24/7 fighting advanced and highly targeted attacks, patching zero-days to prevent them from being exploited by nation-states, and responding to incredibly sophisticated threats. On the other hand, if the same person were to attend a local BSides, Blue Team Con, or any other practitioner-focused conference and ask people what their day-to-day looks like, they would be surprised to learn that it’s not all about stopping nation-states and preventing nuclear disasters, and that most of security team’s responsibilities look similar to folks in other departments. In this piece, I am diving deeper into our habit of glamorizing attackers and defenders, discussing what the day-to-day reality of security teams looks like, and the reasons why we need to build products
If someone new to the industry were to spend a few hours watching movies about security (pick any of your favorites), or going through the industry marketing, they would inevitably conclude that security teams are warriors who spend 24/7 fighting advanced and highly targeted attacks, patching zero-days to prevent them from being exploited by nation-states, and responding to incredibly sophisticated threats. On the other hand, if the same person were to attend a local BSides, Blue Team Con, or any other practitioner-focused conference and ask people what their day-to-day looks like, they would
Explore this link on the map →