[169172] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Work Practices of Cyber Security Professionals

daemon@ATHENA.MIT.EDU (Valdis.Kletnieks@vt.edu)
Tue Feb 18 09:30:19 2014

To: Muhammad Adnan <muhammad.adnan200@gmail.com>
In-Reply-To: Your message of "Mon, 17 Feb 2014 15:27:25 +0000."
 <CAJATQb83t_j1oHSB_MLVe3egXGESaAkvw7FfODT2+CmBuC=+8A@mail.gmail.com>
From: Valdis.Kletnieks@vt.edu
Date: Tue, 18 Feb 2014 09:28:55 -0500
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

--==_Exmh_1392733735_56382P
Content-Type: text/plain; charset=us-ascii

On Mon, 17 Feb 2014 15:27:25 +0000, Muhammad Adnan said:

> I am a university researcher who is investigating the development of new,
> usable tools that will improve the work practices of cyber security
> professionals. As a first step to achieve this goal, I am undertaking a
> survey to gain an in-depth understanding of the day-to-day activities of
> cyber security professionals. The targeted participants for this survey are
> those who perform security related activities as a part of their job (e.g.
> security analysts, network administrators, penetration testers).

Several comments:

1) If you're including network admins, you should also make sure to
get system admins (though you'll be more successful asking elsewhere for those).

2) Having worn at least a partial hat of all those along my careeer, I'm
curious what sort of tools will improve work practices for all the groups
concerned.  Probably the only place you'll find much overlap is in record
keeping - but even there the record keeping that a sysadmin needs to do for
changelogging their boxes is fairly different from what security analysts
working an incident and pen testers engaged in a test will need.  There's
also the problem that many sites have their change logging integrated into
their version control system or other workflow software already...

Good luck!

--==_Exmh_1392733735_56382P
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
Comment: Exmh version 2.5 07/13/2001
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=VVNB
-----END PGP SIGNATURE-----

--==_Exmh_1392733735_56382P--


home help back first fref pref prev next nref lref last post