TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Ask HN: How to Blog as a Security Professional?

4 pointsby asdadsdadalmost 4 years ago
How can you showcase your expertise if most of what you do should be kept secret? Like detection methods, threat hunting, etc.

2 comments

karlhughesalmost 4 years ago
I work with a few security pros who blog. As you suggest, you can&#x27;t tell people specific problems you&#x27;re facing at work but you can do some interesting things to get your knowledge out there:<p>1. Make educated guesses about real incidents you were not involved in. Talk about how you would have solved this problem if it were you. 2. Set up sandbox environments to demonstrate attack vectors and detection methods. Even &quot;dumbed down&quot; versions will help newbies out if you want to keep your more &quot;advanced&quot; versions secret. 3. Talk about tools and services instead of specific incidences. Most of the info about how they work is public, but you can showcase your understanding my summarizing and giving commentary.
high_bytealmost 4 years ago
you can and should write. it doesn&#x27;t have to be your exact findings, could be case studies, thoughts, a blog can be anything, or side projects to show, whitepapers.<p>I did cyber security for years. I worked with government agencies, financial institutions and other sensitive work, so you know you can&#x27;t publish. so far I&#x27;ve been working through word of mouth but when I considered career change, I had not much to show for to people who aren&#x27;t in the know. so I made a few side projects, posts.