Тёмный
MyDFIR
MyDFIR
MyDFIR
Подписаться
Getting started in Cybersecurity is difficult. Let me help you.
Cybersecurity SOAR EDR Project | Part 5
43:01
28 дней назад
Cybersecurity SOAR EDR Project | Part 3
21:19
Месяц назад
Cybersecurity SOAR EDR Project | Part 2
16:39
Месяц назад
Cybersecurity SOAR EDR Project | Part 1
13:19
Месяц назад
Cybersecurity Tool: Spiderfoot (OSINT)
9:48
2 месяца назад
Cybersecurity Tool: PFSense (Firewall)
14:07
2 месяца назад
Cybersecurity Tool: Pi-Hole
9:19
2 месяца назад
5 BEGINNER Cybersecurity Projects
5:20
2 месяца назад
Will AI Replace SOC Analysts?
6:12
3 месяца назад
Cybersecurity Job Market | SOC Analyst
6:18
3 месяца назад
Are SOC Analysts In Demand?
6:59
3 месяца назад
Комментарии
@user-ui6mj6bg7b
@user-ui6mj6bg7b 2 часа назад
Great. Thanks A complete Course of Splunk for SOC Analyst would be a good idea.
@xastonyt
@xastonyt 2 часа назад
Hello, am your latest sub, it’s nice of u making videos of the cyber security soc analyst row, thanks alot 🙏 I have a question, someone gave me this road map to be a soc analyst, 1: Google cyber security certificate 2: Comptia security+ 3: Blue team level 1 What do u think? Do u think I can land a job with just these 3 certificates? is this roadmap good?
@MyDFIR
@MyDFIR 2 часа назад
Roadmap is great but don’t fall into the trap thinking certs alone can land you a job. Be sure to level up your practical skills and portfolio 👍
@xastonyt
@xastonyt 2 часа назад
@@MyDFIR ok, in a RU-vid short interview video, a man said one of his roll as a soc analyst is penetration testing, my second question is this, is penetration testing necessary too? And you always talk about a cloud certificate, which can I add to my roadmap?
@PoweredByA.I
@PoweredByA.I 4 часа назад
I want to buy your course, but the price is $599.96 and not 499 ?
@MyDFIR
@MyDFIR 3 часа назад
Thanks for your interest in the course! I forgot to mention that the price does not include tax which is why you see 599.96
@tester0083
@tester0083 7 часов назад
Absolutely love this style of vid, and hope you keep creating them! You have a great teaching style and i'm learning a lot! Thank you!!!
@MyDFIR
@MyDFIR 5 часов назад
Love to hear that, thanks for watching!
@tumelomathe2444
@tumelomathe2444 7 часов назад
I love your content, may you kindly do more content
@MyDFIR
@MyDFIR 5 часов назад
Thank you!
@Razadog
@Razadog 7 часов назад
I often work on alerts that get caused due to prefetching. Are you able to use that as an example of how you would find what caused that in Splunk?
@MyDFIR
@MyDFIR 7 часов назад
Can you give me an example of what you meant by caused due to prefetching? What are some of the alerts you’re seeing?
@MerobenTV
@MerobenTV 7 часов назад
Thanks Steve, I truly appreciate your honesty and patience and teaching style. Great stuff as always👍
@MyDFIR
@MyDFIR 7 часов назад
You’re very welcome! Thanks for watching ❤️
@abhiraj4528
@abhiraj4528 9 часов назад
I found that Microsoft security operations analyst associate is an intermediate course, So is the Microsoft fundamentals course is required, If I have done soc analyst course from lets defend ?
@MyDFIR
@MyDFIR 7 часов назад
Not necessarily required but if its free and self paced, it wouldn’t hurt to learn a bit more about microsoft products. 👍
@abhiraj4528
@abhiraj4528 7 часов назад
@@MyDFIR I want to prepare for Microsoft security operations analyst associate exam I want cert.
@Luqman-o4p
@Luqman-o4p 10 часов назад
That's an awful haircut try a buzz or smth
@Flux9901
@Flux9901 10 часов назад
Great video!
@MyDFIR
@MyDFIR 9 часов назад
Glad you enjoyed it
@mapletech_22
@mapletech_22 17 часов назад
Great stuff 👏 👍 👌 🙌
@MyDFIR
@MyDFIR 11 часов назад
Thank you! Cheers!
@tukaram4606
@tukaram4606 18 часов назад
A very informative video bro.... would like to suggest you something, whenever you record the screen and perform a task just make sure that you zoom in to the part you are referring to on the screen at that point. as it looks very tiny when you explain a particular thing without zooming in into it. thnx for this video 🙂💯
@MyDFIR
@MyDFIR 11 часов назад
Thanks for the tip!
@tukaram4606
@tukaram4606 9 часов назад
@@MyDFIR Glad that you appreciated it bro 🙂🙂
@anjalimaharaj4536
@anjalimaharaj4536 18 часов назад
thank you very much for walking through this project, it has been a really great learning experience, I have a question, I used a VM instead of a cloud server for the endpoint and found that there were two instances installed with sensors and the isolation was stuck in waiting status, can you please explain if this is the expected behavior when using a VM as the endpoint?
@MyDFIR
@MyDFIR 9 часов назад
That is unexpected behavior…try restarting the limacharlie service and see what happens!
@93ksj
@93ksj 19 часов назад
great videos as always bro 🤝
@MyDFIR
@MyDFIR 11 часов назад
Appreciate it!
@alyx3135
@alyx3135 19 часов назад
Is room free
@MyDFIR
@MyDFIR 11 часов назад
Yup, every lab I do is free so far
@Flux9901
@Flux9901 20 часов назад
Hi, and thanks for your content!! I've been going through a ton of your videos lately attempting to make a decision on my next certificate. A little background, I just graduated with my BS in cyber from WGU and hold A+ thru Pentest+, also have SSCP and LPI linux essentials. I also have a few years of profession general IT background. While the program imo was great, I am now looking to put my theoretical knowledge into hands on practice leading me here :). I currently have the funds to pursue CCD and after all my research believe it is one of the best blue team certs I've found. My question to you is, hearing my background, do you believe it is worthwhile in my current position (do I have the background necessary, is this good next step to break into the field?) or should I start elsewhere? It would be my first hands on certificate outside of VM's and a bit of THM. Thank you!
@MyDFIR
@MyDFIR 9 часов назад
It will be a bit advanced and you may feel lost at times but this is where you take notes and revisit those weak points. I think going for CCD is a great idea! My go to path would be: CCD, MDSA, SC200 in that order. CCD for the tooling MDSA for investigations SC200 to round out my skillset
@Flux9901
@Flux9901 Час назад
Thank you for the info! I believe I will be taking the plunge. Wish me luck! I plan on shifting more into red team certs afterwards as it’s my main interest. Will see where I decide to go after passing 🙏
@diegomed3364
@diegomed3364 День назад
You forgot your own course which is as great as….
@MyDFIR
@MyDFIR 23 часа назад
My course is number 10!
@diegomed3364
@diegomed3364 22 часа назад
@@MyDFIR I meant it supposed to be number 1
@MyDFIR
@MyDFIR 22 часа назад
😂 I appreciate you!
@madu_south
@madu_south День назад
Bro I tried loading the raw of the sysmon file but my chrome browser keeps showing site can’t be reached while other sites are working my chrome.
@MyDFIR
@MyDFIR День назад
Could try using a different browser to see if it’s browser related.
@madu_south
@madu_south 23 часа назад
@MyDFIR yeah I did, I used chrome, Firefox, even Microsoft browser, but it kept saying network pending meanwhile my network ping is showing stable. Is there any other way I can get the sysmon config file so that I can finish your homelab intro project🥹🥹🥹
@MyDFIR
@MyDFIR 22 часа назад
Here: raw.githubusercontent.com/olafhartong/sysmon-modular/master/sysmonconfig.xml
@ayomoses
@ayomoses День назад
Fantastic work and a Big than you.
@MyDFIR
@MyDFIR День назад
Thank you! Cheers!
@pardonmagaba3643
@pardonmagaba3643 День назад
Very informative. Many Thanks, Steven.
@MyDFIR
@MyDFIR День назад
Glad it was helpful!
@dejver77
@dejver77 День назад
Question! When i got into windows, how do i get internet connections? Sounds easy but being on VM its hard to connect to use internet, like you typing IP and port nr 9999
@MyDFIR
@MyDFIR День назад
Depends on your network adapter, take a look at part 2 for a breakdown
@fdfere3
@fdfere3 День назад
What do you recommend for SIEM use cases
@MyDFIR
@MyDFIR День назад
For usecases, you’ll want to read about threat briefs and understanding what data sources a company has. Not all use case can be treated the same. Understand the companies risk and tailor the use case from there.
@fdfere3
@fdfere3 9 часов назад
@@MyDFIR Huge Thanks!
@AminuIbrahim-z7k
@AminuIbrahim-z7k День назад
good day Steven hope you doing great. I have been having troubles buying your mydfir soc course. Please help me out'
@MyDFIR
@MyDFIR День назад
Hey! How can I help? Any errors you’re encountering?
@cyber-x1456
@cyber-x1456 День назад
is there any courses for free
@MyDFIR
@MyDFIR День назад
Take a look here FREE Cybersecurity Training (SOC Analyst) ru-vid.com/video/%D0%B2%D0%B8%D0%B4%D0%B5%D0%BE-bcq263eZOwk.html
@ilyaverestchagin8994
@ilyaverestchagin8994 День назад
Can you say anything about the cabrary course? for analytics in SOC L1,2
@MyDFIR
@MyDFIR День назад
Its decent but quite pricey compared to tryhackme & hackthebox.
@Denvercoder
@Denvercoder День назад
Love your videos but the “half a decade” thing is weird. That’s like me saying, “I make a sixth of a million dollars per year.” 😂
@MyDFIR
@MyDFIR День назад
Heheheh soon i can say over a decade!
@Denvercoder
@Denvercoder День назад
Is this really the case? I have 20+ years experience as a software engineer and I’m switching to security. I was told that there are like 10 Blue team jobs for every 1 red team job.
@Denvercoder
@Denvercoder День назад
I’m currently getting a Professional Web Penetration Tester cert through TCM but only because it overlaps my skill set nicely.
@MyDFIR
@MyDFIR День назад
Yup! Unfortunate reality, it is quite tough. Do you have an idea as to where you want to go within security?
@Denvercoder
@Denvercoder День назад
@@MyDFIR Malware Research is where I’d like to be. And my coding experience should help there too.
@JusBlaze1028
@JusBlaze1028 День назад
This was super informational! Thank you for doing the legwork & explaining the different options we have available for us to use. I currently have an account for THM which I'm finishing up my Web Fundamentals module & then I'll switch over to the SOC 1 module afterwards. I'm also studying for my CySA+ exam so I definitely have my hands full haha.
@MyDFIR
@MyDFIR День назад
Awesome! Love the path and hope you pass your CySa+!
@JusBlaze1028
@JusBlaze1028 13 часов назад
@@MyDFIR ah thank you man. This journey will be one heck of a ride
@franklinmccullough85
@franklinmccullough85 День назад
I love the MyDFIR SOC analyst course. I also want to check out the SC-200 just to be more familiar with Microsoft.
@MyDFIR
@MyDFIR День назад
Love to hear that! Thank you ❤️
@mr_cyberleon
@mr_cyberleon День назад
Ummm....where can I buy a MyDFIR shirt my guy! I WANT ONE!
@MyDFIR
@MyDFIR День назад
👀👀 soon!
@mr_cyberleon
@mr_cyberleon День назад
@@MyDFIR Wooty!!!
@Mar.3-v
@Mar.3-v 2 дня назад
can i use the same virtual machine & connect both pfsense and pihole to it?
@MyDFIR
@MyDFIR 2 дня назад
I wouldn’t but you can definitely try. I cant remember off the top but you can check to see if pfsense have any services that are similar to pihole that you can install on top of it.
@Mar.3-v
@Mar.3-v День назад
u r the man!
@thtnvs3729
@thtnvs3729 2 дня назад
it keeps giving me an error when i try pip3 install
@MyDFIR
@MyDFIR День назад
Is it because pip3 is not installed?
@thtnvs3729
@thtnvs3729 День назад
@@MyDFIR how do you download it?
@myles5253
@myles5253 2 дня назад
If you wait untill black friday CCD is usually on sale for $500 USD I remember seeing it last year. I will probably get it then.
@MyDFIR
@MyDFIR 2 дня назад
Yeah! I do recall seeing that as well
@IamJohnKelly
@IamJohnKelly 2 дня назад
Please do cybersecurity engineering next
@s.c342
@s.c342 2 дня назад
Damn son, you have me convinced 🤯 I think I want to take Josh’s course first because it seems more entry-level and I want to do cloud security but then I going to take your course after for the projects. Honestly, after reviewing both website courses, yours looks the most bang for the buck. I love the hands-on approach. thank you for taking the time to create this video ❤
@MyDFIR
@MyDFIR 2 дня назад
Love that! Ultimately, you can't go wrong with any of these courses but if you do choose mine... thank you. To add on, I would even couple my course with SC-200 self-paced training to make you an extremely attractive candidate!
@s.c342
@s.c342 2 дня назад
@@MyDFIR thank you for the advice! I’ll definitely take this and note it down.
@abhiraj4528
@abhiraj4528 2 дня назад
I have Letsdefend cert, but I want to take TryHackMe too, because it has L1 and L2, and it introduces to different tools like for example: snort and suricata where you we don't actually get to test them in let'sDefend (it is mentioned in let's defend but we don't have labs related to that) and then start creating labs. Because I feel like I might be missing out on some things, and If I learn the same topics again I can understand it better right :)
@MyDFIR
@MyDFIR 2 дня назад
That is correct, you'll always learn something new!
@abhiraj4528
@abhiraj4528 2 дня назад
Great video at the right time :)
@MyDFIR
@MyDFIR 2 дня назад
Glad to hear it!
@marcpayz8747
@marcpayz8747 2 дня назад
So which certification do you recommend after BTL1? I was thinking some red team certs like HTB CPTS to round out my knowledge but what do you recommend?
@MyDFIR
@MyDFIR 2 дня назад
Depends on you, what is your goal?
@marcpayz8747
@marcpayz8747 2 дня назад
@@MyDFIR landing a SOC position or analyst position. I’ve applied to about 300+ positions and no luck. I have a portfolio with about 5 labs/projects, some came from your videos, and I’m current in a help desk position which I find really boring. In terms of certs I have BTL1, Sec+ Net+, A+. I know getting a job right now feels like a lottery but the least I can do while job hunting is to learn more.
@MyDFIR
@MyDFIR 2 дня назад
Gotcha, I mean it wouldn't hurt to spend some hours on looking at the red team side of things. Eventually that is what you want to do to get a better understanding of how attacks work. However, what I would do if I were in your shoes while applying, I would spin up a GitHub and start learning how to build detections/alerts from activity generated by atomic red team while keeping up to date with threat briefs from Mandiant, Red Canary, Crowdstrike, any of the big players along with TheDFIRReport to see realistic attacks. By doing this, you'll begin to learn more about what telemetry certain attacks leave behind and when your opportunity comes knocking, you can impress them by talking about popular attacks and how you would detect them and even show them.
@marcpayz8747
@marcpayz8747 2 дня назад
@@MyDFIR thank you so much, that is a great idea. I’m currently building a new detection lab with security Onion and I will definitely be doing this.
@rokkr
@rokkr 2 дня назад
Number 10 is the best one of them all! Highly recommended as I am currently enrolled on it. Amazing instructor as well.
@MyDFIR
@MyDFIR 2 дня назад
Wow, thank you! Really means a lot to me <3
@Cyb3r6h0st19
@Cyb3r6h0st19 2 дня назад
This is the best. Do you recommend to mix the training of Try Hack me SOC lvl 1 and your course to maximize results? I like they way you teach and I think your training since is based on investigations it will be very beneficial for me.
@MyDFIR
@MyDFIR 2 дня назад
I think that would be pretty great, add on the free sc-200 training and you’ll have yourself a roadmap to tackle!
@Cyb3r6h0st19
@Cyb3r6h0st19 2 дня назад
@@MyDFIR Thank you man you are the best!
@ReachChrisYoung
@ReachChrisYoung 2 дня назад
Q: For someone brand new to the market -- what prep would someone need prior to taking your MYDFIR SOC Course? Are the triad certs essential first (A+, Net+, Sec+)? Any need for cloud, bash, or other code/programming/scripting experience (either broad or language-specific) prior to buying in? Thanks in advance.
@MyDFIR
@MyDFIR 2 дня назад
I would be at least comfortable with the trifecta certs theory wise. I do walk you through on various different types of investigations and without theory knowledge it could be quite overwhelming. No need for cloud exp but I do recommend having some familiarity with linux and the CLI as I have the students go through that to setup tools and such. I see my course as the “missing piece” after folks obtain their sec+
@ReachChrisYoung
@ReachChrisYoung 2 дня назад
@@MyDFIR Thank you for your time; definitely informed prep reqs that I can share with the community.
@MyDFIR
@MyDFIR 2 дня назад
Pleasure is all mine! Thanks for sharing with the community ❤️
@mbg_varshin2191
@mbg_varshin2191 2 дня назад
I can take Letsdefend or Try hack me , Which one do u suggest for me to take?
@MyDFIR
@MyDFIR 2 дня назад
TryHackMe, it has more content IMO
@mbg_varshin2191
@mbg_varshin2191 2 дня назад
@@MyDFIR Thanks for the advice!
@andrewfelix6751
@andrewfelix6751 2 дня назад
You should look up Level Effect. It’s more like a boot camp it. Seems pretty good too
@MyDFIR
@MyDFIR 2 дня назад
Yeah! I’ve added this to my list. It does seem pretty good.
@andrewfelix6751
@andrewfelix6751 2 дня назад
If you have a student email, CCD offers a 20% discount and Hack the box monthly plan would be 8$ instead of 18$.
@MyDFIR
@MyDFIR 2 дня назад
Love it, thanks for sharing!
@ReachChrisYoung
@ReachChrisYoung 2 дня назад
Bro -- I'm just amazed you're actually responsive in the comments section; that is rare these days.
@MyDFIR
@MyDFIR 2 дня назад
I try my best! Yall took the time to comment on the video - it’s the least I can do ❤️
@joek5930
@joek5930 2 дня назад
Seriously, THANK YOU! For the past 5 years I have been working as a Geographic Information Systems Analyst and I have recently graduated (May 2024 from Liberty University) with a BS in IT Data Networking and Security. Since graduation I have been struggling with "Imposter Syndrome" when looking to apply for Jobs with the degree that I have just obtained. Someone suggested Home Labs as way to full-fill the unreasonable experience requirement that many see on the job postings. Your project videos are "life-saver" for me and my family. I no longer feel lost and without direction, thank you!!!
@MyDFIR
@MyDFIR 2 дня назад
Super happy to hear that! Thank you for participating in this project, with time your confidence will grow 💪 you got this
@ferozeworld5234
@ferozeworld5234 2 дня назад
Thanks man.................
@MyDFIR
@MyDFIR 2 дня назад
Always welcome
@aref568
@aref568 2 дня назад
Hi, I have an interview for a Digital Forensics examiner in exactly 30 days, any advice? This is for a junior/entry level role
@MyDFIR
@MyDFIR 2 дня назад
NICE! Some resources you can check out to learn more & prepare are DFIR Diva, 13Cubed & SANS. Take note on what kind of forensics your potential employer deals with. For example, is it solely mobile forensics? Endpoint? Network? etc. and look for resources tailored to those.
@aref568
@aref568 2 дня назад
@@MyDFIR Thank you for the advice and quick response!
@justinwilliams7595
@justinwilliams7595 2 дня назад
I will check out your course. Three days after I commented about the price of your course, I got a new job in cybersecurity with a significant increase (75k increase). So now I will definitely have to step up my game.
@MyDFIR
@MyDFIR 2 дня назад
Congratulations! That is a significant increase and an attractive one as well. Great job 💪💪 super proud of you.
@gary.fullstack
@gary.fullstack 2 дня назад
Been working five years. ( ew gross) Been working for HALF A DECADE ( woooo King! )
@MyDFIR
@MyDFIR 2 дня назад
😂😂