Тёмный

How to Get Started In Ethical Hacking / Penetration Testing 

BigBroSecurity
Подписаться 6 тыс.
Просмотров 3,4 тыс.
50% 1

My Website: www.talkelley3.com/
My Channel: / bigbrosecurity
mbsy.co/37jhqr
elearnsecurity.com
offensivesecurity.com
tryhackme.com/
hackthebox.eu/
Chapters:
0:00 | Introduction
0:54 | Step 1
5:11 | Step 2
6:19 | Step 3
9:45 | Final Thoughts
Step 1: The Fundamentals
The first thing you need to do is get down the fundamentals. CompTIA Triad.
CompTIA A+
This certification will provide you with a good general knowledge of computer hardware and software. It is divided into 2 main exams. One of them is a hardware focused exam and the other is a software focused exam. This will give you a pretty decent base-level knowledge when it comes to that type of stuff.
Network+
This certification will provide you with a good general knowledge of networking concepts like routing, switching etc. It gives a very good baseline knowledge of networking concepts though it’s probably not the greatest networking exam if you want to get a network engineer job. That’s beside the point of this video though.
Security+
The Security+ builds up a solid base of conceptual cybersecurity/information security concepts, such as Confidentiality, Integrity, Availability, Encryption, Data Loss Prevention, etc.
Step 1b: A Degree (or Two!)
I would highly recommend you look into getting a degree in cybersecurity if you have the time and money and are planning to get a job working for the Federal or State governments in the United States, it’ll really help to get a degree. Even if you’re going to go in the Cybersecurity field in the private industry, it may help especially with more advanced management jobs in the future.
Bachelors of Cybersecurity and Information Assurance - WGU
This is an amazing Bachelors of Cybersecurity program offered by Western Governors University. It is much cheaper than an alternative at a traditional university, and it is designed in a much smarter way than other degrees.
Masters of Cybersecurity and Information Assurance - WGU
This is a great Masters program with really good assignments that seem to align closely with some real world assessments that you would see as a Penetration Tester etc. They also both include some industry standard certifications like the A+, Network+, Security+, SSCP, CEH, CIH, and more.
Step 2: Basic Penetration Testing
eLearnSecurity Junior Penetration Tester (eJPT)
It covers Network and System Security, common pentesting tools, with loads of practical labs.
TryHackMe
This is a free platform to use with some lessons to help teach you ethical hacking concepts through practical learning. It’s a great resource and I highly recommend it especially in the beginning!
HackTheBox
TryHackMe at least in the beginning.
Step 3: Advanced Penetration Testing
eLearnSecurity Certified Professional Penetration Tester (eCPPT)
This certification is a phenomenal certification with great training in the form of the PTP course offered by eLearnSecurity and INE. It is a 2 week long exam with a thorough written report, and it’s basically a simulation of a real world engagement.
Offensive Security Certified Professional (OSCP)
This certification is super popular among the Penetration Testing community. It consists of a training course called PWK, and a 48 hour exam. 24 hours to hack the environment and 24 hours to write your report.
eLearnSecurity Certified Penetration Tester eXtreme (eCPTX)
This certification is the top level “general” pentesting certification by eLearnSecurity. I have it as I bought it pre INE era, but haven’t attempted it yet obviously. I’d recommend doing this after the OSCP.
Offensive Security Certified Expert (OSCE)
This certification now is a “stackable” certification similar to how CompTIA has “stackable certifications” when you take the “building block” certifications. These certifications are,
Offensive Security Experienced Penetration Tester (OSEP)
Offensive Security Web Expert (OSWE)
Offensive Security Exploit Developer (OSED)
eLearnSecurity and Offensive Security Specialized Certifications
There are many other certifications that you can get which are more specialized in different areas if you so desire.
TryHackMe
The TryHackMe platform is a great platform to continue labbing etc. as you progress through the certifications.
HackTheBox
Additionally, practicing your skills on HackTheBox, and leveling up your ranking is always a great thing to do
Step 4: Never Stop Learning! (Oh and Get a Job 🙂
At this point in your learning (provided you’ve completed step 3), you’ll know what you want to do next. I’d highly recommend applying for some jobs in Penetration Testing after your first certification or two is complete in step 3. Continue building experience through labbing and doing things like HackTheBox, even while you do have a job. Though on the job experience is honestly the best thing you can have in Penetration Testing and Cybersecurity in general

Наука

Опубликовано:

 

4 авг 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 26   
@techguy8895
@techguy8895 3 года назад
Excellent video!! Looking forward to more!!
@bigbrosecurity
@bigbrosecurity 3 года назад
Thank you! I'm planning on ramping up production in the near future.
@Worthy-of-cringe
@Worthy-of-cringe 3 года назад
lol "break into this field" I love it nice job bro
@bigbrosecurity
@bigbrosecurity 3 года назад
Appreciate it! Glad you enjoyed the video!
@mesharialhindi2064
@mesharialhindi2064 3 года назад
Great video
@bigbrosecurity
@bigbrosecurity 3 года назад
Thanks!
@dronestrikejr
@dronestrikejr 3 года назад
I’m going cert route. I passed AWS cloud Practitioner. Talking Security+ Exam soon. And have CEHv11 boot camp scheduled for May!
@bigbrosecurity
@bigbrosecurity 3 года назад
Awesome!!
@acetigg6690
@acetigg6690 2 года назад
How did it go for you???
@augustineopokujuniorantwi881
@augustineopokujuniorantwi881 3 года назад
Very insightful video
@bigbrosecurity
@bigbrosecurity 3 года назад
Glad it was helpful!
@augustineopokujuniorantwi881
@augustineopokujuniorantwi881 3 года назад
@@bigbrosecurity any way i reach out to you? Twitter? Instagram?
@PrincePalmUwU
@PrincePalmUwU 2 года назад
You recommend someone with no skills do the certification route? that sounds like a longer route.. :X
@Kauzeyy
@Kauzeyy 3 года назад
did you go to college or did you go for a help desk (or low level) position?
@bigbrosecurity
@bigbrosecurity 3 года назад
I went to college and then got a SOC Analyst position
@Kauzeyy
@Kauzeyy 3 года назад
@@bigbrosecurity oh so did you end up finishing your program?
@bigbrosecurity
@bigbrosecurity 3 года назад
Yep, got a Bachelors and Masters from WGU
@sd6471
@sd6471 3 года назад
@@bigbrosecurity wait so you were 18 with a bachelors??????
@bigbrosecurity
@bigbrosecurity 3 года назад
@@sd6471 Yep!
@moscatukano
@moscatukano 3 года назад
I want to get eJPT certification. How can I measure my skills to do this certification? How can I know if I am prepared? Great video \o
@bigbrosecurity
@bigbrosecurity 3 года назад
Check out my eJPT certification review for some tips!
@shubham-itachi
@shubham-itachi Год назад
Bro full stack developer vs cybersecurity. Which I will learn fast and get Job. What about Google Cybersecurity certificate for comptia a+
@augustineopokujuniorantwi881
@augustineopokujuniorantwi881 3 года назад
Hey, about a group to round us (people wanting to get into cyber sec) up altogether?
@micahmartin92
@micahmartin92 3 года назад
What year were you born in?
@bigbrosecurity
@bigbrosecurity 3 года назад
I'm 18 so you can take a guess :P
Далее
Why Cybersecurity Training is a SCAM
10:37
Просмотров 96 тыс.
FREE Path To Become An Ethical Hacker (2024 Roadmap)
17:11
Hacking 101: Everything You Need To Know
13:32
Просмотров 281 тыс.
How to not get hacked: real example
13:55
Просмотров 395 тыс.
[53] How To Become a Physical Penetration Tester
12:15
Become a Penetration Tester without experience
9:14
Просмотров 41 тыс.
TryHackMe! Basic Penetration Testing
30:14
Просмотров 2,4 млн