Chapter 2

Understanding InfoSec Roles: One Day in the Life

In This Chapter

arrow Understanding the paths to achieving a security job

arrow Exploring the array of security-related jobs

arrow Climbing to the heights of security management jobs

What is it like to have a security job?

Many people obtain security jobs after they've been in IT for a number of years. In many cases, the ability to get a security job is a matter of opportunity — being in the right place at the right time. However, a lot more than good luck is required; you need the desire and the aptitude for a security job.

Most people accumulated IT job experience and then move laterally into a security job. Others get a degree in computer science, management information systems, or information security and then get an entry-level InfoSec position. This chapter describes both job-hunting methods and also details the most common security jobs, from security analyst to CISO.

Getting Security Experience Where You Are Now

Workers early in their careers have the following complaint:

  • I want to get this new job, but it requires experience. How can I get experience if I don’t have this job?

Sounds like a chicken-or-egg problem, right? Not ...

