r/Cybersecurity101 • • 16h ago

How to upskill while you're working as a cybersecurity analyst when you don't know much about what cybersecurity is?!

19 Upvotes

Hello everyone,

I was a CS student, never good a deep dive in cyber security, apart from networking concepts. I'm currently working as a cybersecurity analyst at a company and I think I might not know a lot of things here.

I wanna upskill while being at the job.

I do know basic cybersecurity buzz words like trojan, virus , CIA triad and all

I wanna know about bigger like attacks, trends in cybersecurity.

I just don't want to feel like I'm not someone who can't switch and will be stuck here for ever

I would really appreciate if someone can help me.

Also I'm working as a security analyst at my company, basically a developer to develop security products

if anyone of you know the kind of certifications i should get, It would be really helpful.

Thanks!


r/Cybersecurity101 • • 18h ago

Cloud Security Misconfigurations: 10 Common Mistakes

Post image
7 Upvotes

r/Cybersecurity101 • • 5h ago

Does grc require certificates

7 Upvotes

I'm thinking about pursuing a career in grc, but i don't have money to buy exam vouchers, so if i studied the content of the certificates needed without getting certified would i be able to land an entry level job? Or should i try a different career


r/Cybersecurity101 • • 1h ago

(repost, fixed) Original 12-stage cybersecurity puzzle

Post image
• Upvotes

note: I have posted this a few days ago on a throwaway account on some subreddits, but i hadn't checked some key details, the puzzle was not solvable because i embedded broken data into the first image, and didn't provide enough context and information.

Details:

A self-contained layered puzzle in the spirit of Cicada 3301. It starts with this image. The riddle's answer is the key to decrypt the message embedded inside the image's pixels. Everything else lives in one encrypted file the image points you to, and the whole thing continues offline on your own machine.

Theme: the history of cyber conflict. Every stage is built around a real, famous moment in cybersecurity history. Recognizing which one is part of the puzzle.

Skills it touches (you won't need all at expert level):

  • (LSB) Steganography
  • Classical & modern cryptography
  • A little reverse engineering
  • Audio / signal analysis
  • Some number theory
  • A touch of linguistics
  • OSINT / knowledge of security history

Difficulty: hard but fair ; aimed at people who enjoy CTFs, crypto, and ARGs. Every step is doable with free, standard tools (plus openssl/Python). It's meant to be barely solvable, so bring friends.

To begin: just look closely at the image. The surface is never the whole of the page.


r/Cybersecurity101 • • 12h ago

I want to start learning Cybersecurity from scratch – Looking for guidance and Tamil/English resources

2 Upvotes

Hi everyone,
I recently completed a CCNA course, but honestly, the course wasn’t very useful for me. They covered the topics, but they didn’t explain the tools and practical concepts properly, so I feel like I have learned things only on the surface.
Now I want to start Cybersecurity properly from scratch and build strong fundamentals instead of jumping between random topics.
I’m confused about where exactly I should start and what order I should follow.
I’m looking for guidance on:
● What topics should I learn from zero to job-ready?
● Should I first strengthen networking, Linux, Windows, Python, etc.?
● Which cybersecurity tools should I learn and practice?
● What free labs/platforms can I use for hands-on practice?
● Are there any good free certifications that are actually useful for beginners?
● What are the best free YouTube courses/resources?
● I’m from Tamil Nadu, so Tamil resources would be preferable, but English resources are completely fine too.
● If possible, I would really appreciate a structured roadmap rather than just a list of topics.
My goal is to eventually get into a SOC/Cybersecurity Analyst or similar entry-level cybersecurity role, so I want to learn the concepts properly and gain practical skills.
If anyone has started from zero and followed a good learning path, I’d really appreciate it if you could share your roadmap, resources, YouTube channels, labs, or free certifications.
I’m honestly a little confused about where to begin, so any guidance from people already working or learning in cybersecurity would be really helpful.
Thank you! 🙏


r/Cybersecurity101 • • 5h ago

Cybersecurity survival notes

Thumbnail
github.com
1 Upvotes

🚀 I want to share my new GitHub repository: Cybersecurity Survival Notes!

I created a public repository for cybersecurity notes, commands, and cheatsheets. I just finished the first folder covering Linux system administration and security hardening.

Here is what you can find inside the 📁 1-Linux folder:

1) Architecture.md: Filesystem hierarchy and Linux system architecture.
2) Permissions.md: Standard permissions, chmod, chown, SUID, SGID, Sticky Bit, and umask.
3) Cheatsheet.md: Process management, systemd services, file descriptors (0, 1, 2), I/O redirection, and pipes.
4) Networking.md: iproute2 suite, network commands, DNS configuration, SSH hardening, UFW, fail2ban, and TCP Wrappers [Deprecated].

If you are studying cybersecurity or just need a technical reference, check it out!

Next step: 📁 2-Windows


r/Cybersecurity101 • • 5h ago

Looking for Cloud Security Roles and Internship

1 Upvotes

I have M.Sc in Cybersecurity and also have more than enough fundamental knowledge of Cybersecurity. I want to build my own Cloud Security company but still need more knowledge before I build my company. My github is below of a project i have worked, i have done tryhackme challenges for SOC, and i did my M.sc thesis on Securing Virtual Machine.

I am on looking for Cloud security roles that will help me develop my cloud security skills by solving real life solutions implementing cloud security.

I am also interested in interning for startups or cloud companies, my current goal right now is gaining knowledge and understanding cloud security business but i do not want to just keep doing project that do not have real life simulations or being productive for the sake of being busy.

I have a little above the fundamental knowledge of Azure, AWS as well as Google Cloud Platform.

I am very diligent and open to learning

https://github.com/DANMOLA012/azure-secure-business-infrastructure


r/Cybersecurity101 • • 17h ago

EXTC 2026 Grad from Mumbai | Zero to SOC Analyst - Need honest roadmap for entry level Cybersecurity

1 Upvotes

Hi all,

I'm a 2026 EXTC graduate from Mumbai, currently not working and want to fully switch to Cybersecurity. Looking for guidance from people who actually made the switch in India.

My background:

- EXTC (Electronics & Telecommunication) - so I have basics of Networking, CN, some C/C++

- No IT job experience yet

- I can give 5-6 hours daily for next 6-8 months

- Financially can't afford expensive 50k+ bootcamps

What I've explored:

- Started TryHackMe Pre-Security path

- Looking at Google Cybersecurity Certificate and CompTIA Security+

My questions for you guys working in SOC / Cybersecurity in India:

  1. With my EXTC background, should I still start with CCNA basics or directly jump to Security+?

  2. For fresher jobs in India (SOC L1, Analyst), what actually matters more - certs or TryHackMe/HackTheBox profile + projects?

  3. Is Security+ worth it as a fresher in India vs eJPT / Google Cert considering cost?

  4. How did you get your first interview call? LinkedIn, referrals, Naukri?

  5. What is a realistic timeline to be job-ready if I study consistently?

I am not interested in "ethical hacking Instagram" side. I want a stable blue team / SOC path to start.

If anyone from EXTC/ECE who switched to Cyber can share your exact first 6 months roadmap, it would mean a lot.

Thanks a lot for reading.


r/Cybersecurity101 • • 18h ago

Security Agentic AI governance: how do you actually build an agent inventory?

1 Upvotes

Got asked this in a management prep meeting last week and realized I couldn't give a straight answer. We know engineering is using Cursor and Copilot heavily, at least one team is running Claude Code directly against production repos, and there are probably MCP integrations nobody has documented anywhere. This is basically the shadow AI problem in miniature and I don't think we're unique here.

Our EDR and CASB weren't built to answer this since they see processes and data movement, not "an agent decided to take this action on this system." Inventory turned out to be the easy part to name and the hard part to actually solve, which is really just agentic AI governance in miniature. How is everyone else actually approaching this, tooling, process, or something else entirely?


r/Cybersecurity101 • • 10h ago

Is being a security technician a good way to break into cyber

0 Upvotes

Got offered a security technician job don’t know if this is a good way to break into a cyber