March 28, 2024, 10:43 p.m. | /u/Recent_End964

cybersecurity www.reddit.com

Is it worth investing time in learning how to write custom Snort rules from scratch, or is it better to spend my time on something else and just update published rules if i were to work as an analyst?

Aside from Snort, Splunk, and basic rule writing, what other skills or tools should I prioritize learning to become a proficient detection engineer? I've heard about forensics (network and memory analysis), YARA, Sigma, and the ELK stack—how important are these in …

analyst basic cybersecurity detection detection engineering engineering investing learn rules skills snort splunk threat threat detection tools update work writing

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Security Operations Manager-West Coast

@ The Walt Disney Company | USA - CA - 2500 Broadway Street

Vulnerability Analyst - Remote (WFH)

@ Cognitive Medical Systems | Phoenix, AZ, US | Oak Ridge, TN, US | Austin, TX, US | Oregon, US | Austin, TX, US

Senior Mainframe Security Administrator

@ Danske Bank | Copenhagen V, Denmark