God-Tier Cybersecurity Roadmap

แชร์
ฝัง
  • เผยแพร่เมื่อ 26 ม.ค. 2025

ความคิดเห็น • 514

  • @madhatistaken
    @madhatistaken  2 หลายเดือนก่อน +75

    Clarification: PNPT is not better/harder than OSCP generally speaking. It was put up a tier for sanity's sake because it beats out a few of the tier one offense certs.

    • @heberjulio6303
      @heberjulio6303 หลายเดือนก่อน

      What about eCPPT from INE? And eWPTX (updated to 2024)?

    • @madhatistaken
      @madhatistaken  หลายเดือนก่อน +2

      @@heberjulio6303 I'd personally go CPTS or OSCP instead of eCPPT. For eWPTX I'd instead go OWSE. But the exams differ from one another, so you'll gain useful knowledge from anyone of them. INE isn't referenced much in job listings too, something to keep in mind

    • @CharlieKelly-ub5qw
      @CharlieKelly-ub5qw หลายเดือนก่อน +1

      I had something like a job interview; they called me, asked me a few questions, and now I start my training on Thursday and Friday. I'm only temporary for two weeks. Is that normal for an IT position?

    • @22ae13
      @22ae13 28 วันที่ผ่านมา +1

      @@CharlieKelly-ub5qw No that is pretty weird.

    • @CharlieKelly-ub5qw
      @CharlieKelly-ub5qw 28 วันที่ผ่านมา

      @@22ae13 Yeah, I didn't go to it or even open the email they sent me. I contacted their HR and found out the company doesn't exist.

  • @packmanbp
    @packmanbp 2 หลายเดือนก่อน +434

    What I understand here : "pass all these certs and gather all this knowledge and once you're able to confidently hack into the pentagon from your local Starbucks in less than 2 hours you'll be able to be hired in a junior analyst role"
    This is depressingly accurate man 😅
    Now back to the grind !

    • @paulsccna2964
      @paulsccna2964 27 วันที่ผ่านมา +1

      I agree.

    • @majorian4897
      @majorian4897 12 วันที่ผ่านมา +1

      The IT world desperately needs to unionize

    • @mate8115
      @mate8115 7 วันที่ผ่านมา

      and they also cost a shitload of money :)

  • @matt_milack
    @matt_milack 2 หลายเดือนก่อน +622

    Spend a year studying what you need to know in order to work as IT Support/ Helpdesk technician. Spend a year working as a IT Support/ Helpdesk technician. Get a Sysadmin/ Network admin/ Cloud admin role. Spend at least 2 years working as Sysadmin/ Network admin/ Cloud admin role. After all of that, spend a year studying for DevOps engineer/ Cloud engineer/ Data engineer and do your best to obtain some of those roles, because with your experience, you have 10 times better chances to find DevOps engineer/ Cloud engineer/ Data engineer role than any Cybersecurity role, you'll have 30% higher salary working any of these roles than working any of Cybersecurity roles, and your job will be 10 times less stressful than working any Cybersecurity role. You're welcome!

    • @chocolate-u9h
      @chocolate-u9h 2 หลายเดือนก่อน +6

      are you serious?

    • @matt_milack
      @matt_milack 2 หลายเดือนก่อน +26

      @@chocolate-u9h Yes.

    • @CrypticCocktails
      @CrypticCocktails 2 หลายเดือนก่อน +1

      Friend, I'm starting that today. Cheers!

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +84

      Certainly an option, although I question the 10 times better chances odds 😅I'm personally trying to get into cloud and get away from IR and analyst work.

    • @matt_milack
      @matt_milack 2 หลายเดือนก่อน +29

      @@madhatistaken I would say it greatly depends on where you're from. I'm from Europe. Maybe I went too far with "10 times", but in Europe, there's certainly much higher demand for DevOps engineers, Cloud engineers or Data engineers than for absolutely any Cybersecurity role.

  • @N1GHTW4TCH
    @N1GHTW4TCH 2 หลายเดือนก่อน +114

    Never thought i'd be able to say this, but I finally landed my first job in cybersecurity as a security engineer! No significant experience or education.
    It's hard to get recognized, but if you really want it you can do it!

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +19

      Congratz on the new cyber gig!! 🥳🥳 🥳

    • @SacredRoute2Hell
      @SacredRoute2Hell 2 หลายเดือนก่อน +5

      Hey congrats on your achievement. Could you please tell me what certs helped you out at least share a bit of your road-map that got you the job. I'm just starting out and I have no idea what to do, so your experience will be a lot of help. Thank you!

    • @N1GHTW4TCH
      @N1GHTW4TCH หลายเดือนก่อน

      @SacredRoute2Hell Sure! I'll try to keep it concise :)
      I’ve always wanted to work in IT, but I never really knew what direction to take - until I discovered cybersecurity. It was the perfect mix of my interests. My background was in customer service and retail, which I honestly never liked, but it kept me afloat after moving out on my own at 17. At 29, I was diagnosed with AUDHD, which helped me understand why I’d been feeling stuck. From there, I decided to pursue something I loved, and my drive has been huge ever since.
      To be honest, I’ve had some luck along the way, mostly from meeting new people in the field. So, my #1 tip is: networking. I know socializing isn’t easy for everyone, but I promise (most) geeks are happy to welcome you. Even if you feel like you don't fit in. :) I was happily surprised by the amount of help I received after making my goals known.
      I joined DIVD (Google it, we're fun :) ) to learn and participate in their projects. Volunteering is always a big plus on your resume, especially when it’s directly related to the job you’re aiming for. It was also a great way to meet helpful people.
      I also volunteer for a “female speaker only” cybersecurity conference to show support for their cause. As a group, they organize meetups on various security topics, which I often join. Again, I met a lot of great people there, and you get to attend talks by professionals and chat with them afterward.
      Through my new network, I managed to get a free voucher for the Security+ exam along with study materials. This was a rare opportunity, but freebies and discounts for courses are often available if you’re active in a few groups.
      Last summer, I decided to start applying for jobs, following the 60% rule: if you meet at least 60% of the requirements, apply! (Women especially tend to apply only when they meet 90%, but 60% is good enough.) I was open in my resume and motivational letters explaining my career switch and emphasized what I was learning. I also listed a few courses on my resume and briefly explained what I was learning in each (e.g., TryHackMe Blue Teaming paths, Google Cybersecurity Professional, Security+).
      Eventually, I got called in for a few interviews and unexpectedly ended up landing the job I wanted the most. We got along really well and I’ve been working there since September. Already finished a SANS course, with plans to take the exam soon.
      So yeah, I didn’t have any certifications at the time of the interview - only the honest intention to get them. I realize this feels like a bit of a fairytale story. I'm not sharing this to downplay the struggle others face daily, finding a job. I honestly don’t know how I got this lucky, and I’m anxiously waiting for the twist, lol. But persistence, networking, and a willingness to learn made a huge difference for me.
      Hope this helps, and lots of luck! :)

    • @N1GHTW4TCH
      @N1GHTW4TCH หลายเดือนก่อน +1

      @@madhatistaken thanks man! Your video's were a big help. Funny yet informational - top tier!

    • @N1GHTW4TCH
      @N1GHTW4TCH หลายเดือนก่อน +1

      @@SacredRoute2Hell not sure where my comment went, but i'll circle back to check if I need to repost k ✌️

  • @ariasm8911
    @ariasm8911 2 หลายเดือนก่อน +248

    my love for cybersecurity at first two years was unstoppable, i got CCNA, MCSE, MTCNA, MTCWE, MTCEWE, MTCTCE, MTCSE, LPIC-1, Network+, Security+, A+ , CEH, along with a master degree at IT engineering, in my first two years and landed a job at isp and promoted several times but after 4 years i feel like im burned out struggling to finish oscp and i need my motivation back, make sure to not rush it like i did and actually enjoy the ride

    • @evilmortyofficial
      @evilmortyofficial 2 หลายเดือนก่อน +6

      What about CCNP?

    • @wolfgangrussel5250
      @wolfgangrussel5250 2 หลายเดือนก่อน +26

      don't relie on motivation, consistency is more important.

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +41

      ​@@wolfgangrussel5250 But you need motivation to start being consistent...or something like that 💚

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +4

      @@evilmortyofficial CCNP is more attuned to a career path in networking imo

    • @wolfgangrussel5250
      @wolfgangrussel5250 2 หลายเดือนก่อน +10

      @@madhatistaken yes your right, but sometimes our motivation disappears, that's why discipline is the life saver to consistenly continue our journey when our motivation temporarily disappeared.

  • @paulsccna2964
    @paulsccna2964 2 หลายเดือนก่อน +174

    I ditched all of this crap (and I have half a dozen of the certs mentioned in the video) for a Project Coordinator role. I make decent money. Way less stress and instead of spending 24 hours a day in a dark room with a computer, just to keep up with the latest security iceberg, I actually have a life.

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +133

      but do you have to...talk to people 😨

    • @danzam6631
      @danzam6631 2 หลายเดือนก่อน +2

      Looking for a similar development on my end, any coursework or certs you would recommend to end up as an project. Mng.?

    • @jr-pc4do
      @jr-pc4do 2 หลายเดือนก่อน +2

      Lower ceiling

    • @fernandoc8876
      @fernandoc8876 2 หลายเดือนก่อน

      Lolz ​@@madhatistaken you got it

    • @BigBatts
      @BigBatts 2 หลายเดือนก่อน +2

      Go get the CAPM and then PMP and write us in the morning…two years from now

  • @techsavvyhero
    @techsavvyhero 2 หลายเดือนก่อน +39

    These roadmap videos are gold!! I like all the new cert options too (not all CompTIA, ISC and SANS). As a career pentester, I appreciate these greatly (the humor is icing on the cake) :) Thanks Mad Hat!!

    • @defaultuser0856
      @defaultuser0856 2 หลายเดือนก่อน

      Yo there i got an offer for compTIA pentest+ and security+ certs, im network security engineering. I heard that compTIA certs dosent get much of an attention, would you recommend to apply for it ?

  • @drewltinder9872
    @drewltinder9872 19 วันที่ผ่านมา +4

    Great advice on the GIAC certs. I have 3 of them - GCDA, GCFA and GCIH - and they have helped my get jobs the most out of all my certs, but I would NEVER pay for them out of pocket. Only take them if you get a scholarship or your employer will pay.

  • @abdulmannan3454
    @abdulmannan3454 2 หลายเดือนก่อน +20

    Good no-bs advice. Straight to the point, and good detail of what to do in which area.

  • @unyielding_wager
    @unyielding_wager หลายเดือนก่อน +1

    Thanks for posting this! This is really helpful!

  • @josemmm11
    @josemmm11 2 หลายเดือนก่อน +53

    From all those certifications. I have Google cybersecurity, Certified in Cybersecurity (Only the coursera course, not the certification), Comptia Security+, BTL1 and HTB CDSA. now i am looking for a SOC analyst job in my country, Dominican Republic.
    Best regards

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +10

      Awesome work getting all those certs! Best of luck in your job search 💚

    • @minghuawang7740
      @minghuawang7740 13 วันที่ผ่านมา

      how is your job hunting

    • @josemmm11
      @josemmm11 13 วันที่ผ่านมา +2

      @ i Am looking for a remote or hybrid Job , still hunting .
      Best regards

  • @genjioto
    @genjioto 29 วันที่ผ่านมา +6

    I’m lucky enough to start an SOC I role next month at an MSSP. I have about 10 months experience as an IT support specialist at an MSP, three years as a web developer before that. Got the trifecta and started applying like crazy after I got sec+, and I am a year away from graduating from WGU…..Just make sure you are doing everything you possibly can - get certs, work on a degree (really doesn’t matter what the degree is, but having it be IT, software, or cybersecurity related would be to your benefit) and get relevent experience and NETWORK…. So many people I meet in IT, especially the young twenty something’s, don’t network and burn bridges - especially the ones at my old job who have been sitting there complacent for three years.

  • @Geomaverick124
    @Geomaverick124 2 หลายเดือนก่อน +16

    Yay!!! WGU Mentioned. :). I think the first path is the best for newbies especially if you throw in a CCNA or even an AWS or Azure cloud certification. Good stuff! I am going to make this my go to video when recommending what path people should follow. :)

  • @i_m_veer_singh
    @i_m_veer_singh หลายเดือนก่อน +3

    Most transparent, real, and hilarious roadmap, plus links to resources! Great work, thanks!

  • @chocolate91
    @chocolate91 2 หลายเดือนก่อน +10

    A slight clarification is needed, if one were to reach god-level, you qualify more than any junior security analyst job. Writing your own exploits/malware and deliver to endpoints, you can qualify for any Senior or Principal Red Team Engineer job or could literally become a consultant and advise Fortune 500 companies on red teaming or cybersecurity best practices

    • @myota9889
      @myota9889 หลายเดือนก่อน +2

      sarcasm bro

  • @MegaNatebreezy
    @MegaNatebreezy หลายเดือนก่อน +2

    Perfect timing. I just passed my cysa+ and I wasn’t sure what I want to do next. I love you bro

  • @mr.bloodworth6004
    @mr.bloodworth6004 2 หลายเดือนก่อน +44

    im just now getting into security and gotta say im addicted 😂 i slept for 5 hours last night, woke up and immediately started learning again, shits like crack, only problem for me is money. If i can get a job that pays more ill probably try to collect all the certs

    • @MrsMadHat
      @MrsMadHat 2 หลายเดือนก่อน +7

      Sometimes you can get a job that will pay for your certs too 😊

    • @mr.bloodworth6004
      @mr.bloodworth6004 2 หลายเดือนก่อน +1

      @MrsMadHat that would be amazing

    • @shancxkai
      @shancxkai 2 หลายเดือนก่อน +2

      After watching "the substance" I can confirm this shit IS "my substance"

    • @adam-nw5cn
      @adam-nw5cn หลายเดือนก่อน +1

      @@MrsMadHat That is true. my brother just did his CompTIA Security+ after 1 year of being a security analyst without a security background. His company trained and paid him for the cert.

    • @terv8167
      @terv8167 หลายเดือนก่อน +1

      what resources are you using to learn?

  • @ThePPwise
    @ThePPwise 2 หลายเดือนก่อน +12

    It's been rough trying to find a Cyber job. I've been in IT for 5 years now (Service Desk to Desktop Engineer) in an enterprise setting with A+, Net+, Sec+ and the Google Cybersecurity cert. My resume isn't complete ass but I have gotten little to no responses to any applications. It's frustrating to say the least but I'm gonna keep tryin'. Your videos help bring back motivation to keep learning. Appreciate it man, and best of luck to anyone else out there looking to achieve.

    • @astatinee
      @astatinee 2 หลายเดือนก่อน

      these comments are scaring the fuck out of me. i'm passionate about cybersec but after reading some of these comments it feels like im going to get fucked in the ass by unemployment.

    • @eps24
      @eps24 2 หลายเดือนก่อน +2

      Recommend local security meet meetups so that you can network. Check to see if your city hosts a Bsides conference. Definitely recommend going to the conference if there is one. Really good opportunity to network.

    • @astatinee
      @astatinee 2 หลายเดือนก่อน

      ​@@eps24 luckily im still in hs, but its a scary thought that by the time i graduate college cybersec becomes oversaturated and i might not get a job

    • @astatinee
      @astatinee 2 หลายเดือนก่อน

      @@eps24 if u dont mind me asking, do you have any advice? because i geniunely do not have an idea how to get into the field. i've been binging those 12+ hours vids discussing cybersec, those college classes they upload here in yt, i've also been trying to learn networking through those long ass videos, and tinkering with hackthebox. im a mess currently

    • @ThePPwise
      @ThePPwise หลายเดือนก่อน

      @@eps24 I will definetly check that out. Thank you for the advice.

  • @cortezchicitybarber3925
    @cortezchicitybarber3925 หลายเดือนก่อน +2

    I love this road map bro …. Really appreciate the thought you put into this as someone who’s started but got too much information from all over the place, got frustrated and distracted…. pivoted to something else …. Now I’m back studying and my advice for anyone just starting out like myself …. Find the point on this list where you are … screenshot that tier, save this video, finish your certs on that level and then come back when you’re ready to level up

  • @grouthorax3963
    @grouthorax3963 หลายเดือนก่อน +2

    Watching this video as a beginner in cybersecurity, it gives me confidence and more motivation to keep going. Im now on Layer 2/3 of the iceberg (did CompTIA Sec+ first and working on getting Net+, whoops) and its really motivating getting the reasurance that im on the right path.

    • @baileyayyy5085
      @baileyayyy5085 หลายเดือนก่อน +1

      Kinda funny how different the cert paths can be I just started with CCNA

  • @NegligencePersonified
    @NegligencePersonified 2 หลายเดือนก่อน +64

    The Cybersecurity job market is absolutely disgusting. I thought for sure finishing my Bachelor's in Cybersecurity I'd be able to find at least a Junior level position... Nope. 13 Months and 700 applications later I'm honestly debating applying for McDonald's. Anyone watching this video should do themselves a favor and find a new profession. Let the digital world burn as they focus on candidates with good popularity scores instead of knowledge.

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +34

      I feel your pain - I too graduated with a bachelors in cybersec thinking the same. I took a job as a tier 1 tech for 1.5 years before buckling down and applying to thousands of jobs before finally getting 1 super entry level job that paid quite low. It's easier if you try network with people, but purely applying to jobs is brutal. If I were you I'd try to land anything technical while continuously applying. It's tough but worth it if you're considering retail/fast food (which I also did for 4+ years)

    • @NegligencePersonified
      @NegligencePersonified 2 หลายเดือนก่อน +11

      @@madhatistaken I follow your videos pretty closely, I took a note from you and accepted a dead end Help-Desk job in the meantime. Thanks for doing what you do!

    • @TraceursMonkey
      @TraceursMonkey 2 หลายเดือนก่อน +12

      @@madhatistaken People focus on getting this certificates to much. At the end of the day, it all comes down to problem solving skills and who do you know in the industry that can help you land a job. Sure, you feel accomplished when you do it all by yourself, but if you know someone from cyber security events and IRL networking, why not ask for help. Also it helps a lot if you participate to competition as a student, that's how you get yourself on the spot light. Because no one will ever come to your house offering a job, you sometimes just have to go out there and prove yourself.

    • @morpheusjones4384
      @morpheusjones4384 2 หลายเดือนก่อน +7

      The best cybersecurity engineers I knew had above-average skills but nowhere near greybeard levels. They succeeded because they understood the big picture and core business logic. Being able to custom tailor TCP packets with scapy or hping3 to avoid firewall detection via threshold for malformed packets is nice, but ultimately doesn't bring in a company sustainable revenue for their entire client portfolio. They had the insight or atleast aptitude of a CISO to understand how businesses work in general.
      Is your next engagement close to the fiscal year end? Great. Exploiting potential employee layoffs with spoofed emails is an amazing tactic to gain a foothold. Technical skills don't get you in the door. They only prevent you from getting kicked out.

    • @s1ked_416
      @s1ked_416 2 หลายเดือนก่อน +4

      The problem here is that you didn't take the internship, because that's what they look for anyway, pure work experience. Your degree was supposed to be the Gateway to that internship. Of course they going to pick the person with experience. It's not the only way to gain experience from, but it's the fastest one, and you just didn't realize it

  • @efnick96
    @efnick96 2 หลายเดือนก่อน +47

    The fact that CISSP requires a 4 year experience in the field as a prerequisite for getting the certification and it can only land you an "junior" job is why I am considering becoming a farmer

    • @m477r33d
      @m477r33d 2 หลายเดือนก่อน +3

      Which is precisely why it’s not a junior cert

    • @Izzy-xz6hg
      @Izzy-xz6hg 2 หลายเดือนก่อน +1

      LOL

    • @eros4510
      @eros4510 2 หลายเดือนก่อน +4

      CISSP is NOT a junior cert, it was pretty bone headed of him to level it as the same as Sec+. CCNA is way more difficult and in-depth than Sec+, and CySA is more intermediate. Don't think I particularly agree with his rankings on alot of these certs.

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +1

      @eros4510 pretty bone headed to assume I meant it was a junior level certificate - never said that lol

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +3

      @efnick96 From a learning standpoint it can be studied for and passed by anyone from no experience to senior level experience. Obviously easier the more experience you have. For someone with years of IT experience it can help land a cybersec position but i wouldn't say it can "only" land you a junior level one - but it would certainly help land the junior role alot more than the other certificates in that tier.

  • @ianthecat2541
    @ianthecat2541 หลายเดือนก่อน +1

    gotta love the humor from Mad Hat - never felt a single moment of boredom.

  • @new.age.censorship
    @new.age.censorship 16 วันที่ผ่านมา

    hands down you have the best channel in this way of explanation

  • @jakepurdy7050
    @jakepurdy7050 15 วันที่ผ่านมา

    Thanks for this, I have a job interview for a Red Team Security Engineer in 2 days and now feel severely unprepared...
    Jokes aside, it's crazy what you can do with work experience and very little certifications. I'm surprised you put CISSP on the same level as Security+. I have a Security+ and am studying for my CISSP because CompTIA certs are dookie. (The job market quite literally doesn't care about them) That being said, once I put CISSP (In Progress) on my resume, I started getting responses. I think this is a result of ATS but still, this industry is going through hell with HR brain rot.
    This is a fantastic overview of certification paths! Love the video, you some how made IT/Security certs interesting which is a huge task on its own but also made it very informative.

  • @s1ked_416
    @s1ked_416 2 หลายเดือนก่อน +2

    Saved your video in my database for those that are in need to know this information and haven't figured it out yet. Ty!

    • @dogyX3
      @dogyX3 2 หลายเดือนก่อน +1

      Same

  • @DemonicAngelll
    @DemonicAngelll 2 หลายเดือนก่อน +4

    Thank you for the great video! 😄 I'm currently in my second year of a cybersecurity program at a community college. I don’t have any prior IT experience, but I’m working on breaking into the field. Right now, I’m trying to get an entry-level IT help desk position to get started.
    I’ve earned the Google Cybersecurity Certificate and the AZ-900 certification, but I’m finding it really hard to land a job. The market seems very competitive, and everywhere I apply, they end up hiring someone with prior work experience.
    I hope you can one day create a roadmap for landing that first IT job, with advice on certifications, projects, and other steps that might help! 😊

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +2

      Sounds like you're on the right track. Keep up the learning grind and you'll land that IT job and cybersec in time. Maybe one day I can make a manic IT roadmap/project video.

  • @georgerobbins5560
    @georgerobbins5560 20 วันที่ผ่านมา

    Great video and content. Thank you Mad Hat. Hope you have a great new year.

  • @BlankTrader
    @BlankTrader 2 หลายเดือนก่อน +1

    Thank you so much! You don't know how easy your making it for us! Especially in a world like Cybersecurity

  • @cloudpunchr
    @cloudpunchr หลายเดือนก่อน

    GREAT video (as always)!!!! Sincerely appreciate the humor and honesty. Apparently, though, the sarcasm went WAY over the heads of many on here

  • @disintegrated_circuit
    @disintegrated_circuit หลายเดือนก่อน

    Awesome video and explanations. Love the humor thrown in generously throughout. I've been in IT for a very long time mostly working with data and databases. A long time ago (around 15 years) I took the wee-baby Security+ mainly to get a raise (acquired right as grandfathering was about to end). I did some practice exams for the CISSP and also have no trouble with those thus far. I can pick up on programming pretty well but never figure out what to work on to practice my skills (Python, C derivatives, etc.) so those skills are stalled currently. I enjoy challenges so I'll check out the array of paths you have listed here. Thanks!

  • @MiMiYuChanYu
    @MiMiYuChanYu 28 วันที่ผ่านมา

    Great video! Well done. Reminds me of a podcast that Selenium Group did, a cyber company, had great content like this! Keep it up.

  • @thundathunda4310
    @thundathunda4310 2 หลายเดือนก่อน +1

    The information and production value put into this video is worthy of a Oscar!

  • @TheBitGuardian
    @TheBitGuardian หลายเดือนก่อน

    I am currently waiting to hear back on my first step into security. Your videos have helped motivate me to get my resume out there! (currently in networking)

  • @Examplist
    @Examplist 2 หลายเดือนก่อน +1

    the quality spike from 2 years ago to this is insane

  • @PoppinShells
    @PoppinShells หลายเดือนก่อน

    Great roadmap and fantastic editing sir!

  • @JorgeMurio
    @JorgeMurio หลายเดือนก่อน +4

    I know this is an informative/entertaining kind of video, but I see a couple of wrong things that need clarification. First, CySA+ and CISSP shouldn't be in the conversation of entry-level certs, particularly the CISSP that requires you to have 4-5 years of experience. Even if you pass the test (hard to do without exp), you cannot show it in your resume until you get the experience. Then, besides the fact that anything past OSCP shouldn't be in an entry-level conversation, this video gives the impression that red team/offensive security is the end goal of cybersecurity.
    Cybersecurity is much broader than that. When talking about entry-level stuff, I think we should limit to what can get you into an entry SOC, GRC, or IAM role. Offensive security roles have the highest rewards because they include the highest risks; the impact of a pen test going wrong can take a company down. As such, you really don't want someone without experience performing potentially disruptive activities in your enterprise, and that's for the entry-level guy's safety too.
    Nothing beats experience when you are looking for your first cyber role. The helpdesk does IAM, provides early steps for incident response, etc. If you pivot into sys admin you do vulnerability management and work with AD. Web devs understand web apps, which helps a lot in becoming a pen tester. Anyway, nice video on a complex topic!

  • @dylanhecker6686
    @dylanhecker6686 2 หลายเดือนก่อน +1

    I swear every time you drop a new video it inspires me to get a new cert

  • @milo_andrs
    @milo_andrs หลายเดือนก่อน

    Thank you, I am looking to get my foot into security and the way you presented it is nice and reassuring. I will follow your advise and deliver 💪

  • @ItsMaceo
    @ItsMaceo หลายเดือนก่อน

    This video has no business being this hilarious. Great content.

  • @404robfound
    @404robfound หลายเดือนก่อน +1

    Being firmly in Category 2 of your system I am starting with Security+, but beefing it up with Hackthebox training and some personal projects. Eventually I'll probably get CEH and Linux+ to work on Network security OR add an AWS cert. This was interesting!

  • @AnthonyMcqueen1987
    @AnthonyMcqueen1987 วันที่ผ่านมา

    HTB certifications are all i care about and want they are in-depth and real world scenarios i can careless about the hundreds of others out there. These too me are more than enough to take on the INSANE competition out there right now in this dumpster fire of a job market.

  • @UnderScorePT
    @UnderScorePT 2 หลายเดือนก่อน +3

    1:43 I have that poster on my wall :D got it as a birthday present, personalized with my name on it, pretty awesome.

  • @GhulamMustafa-pn2xi
    @GhulamMustafa-pn2xi 9 วันที่ผ่านมา

    Thank you sensei for all the wisdom.

  • @Cooliofamily
    @Cooliofamily หลายเดือนก่อน +3

    Damn homie, I’ve been here since 9k you’re at 97k now - congrats! 🎉

    • @madhatistaken
      @madhatistaken  หลายเดือนก่อน +1

      Thank you! Two years went by just like that 😅

    • @Cooliofamily
      @Cooliofamily หลายเดือนก่อน

      @ been working in a soc now for one, got a promotion within 6 months 😎

    • @madhatistaken
      @madhatistaken  หลายเดือนก่อน +1

      Nice work! Hope you continue to advance in your career 💚

    • @Cooliofamily
      @Cooliofamily หลายเดือนก่อน

      @@madhatistaken same to you brother! And the income from this must be decent, no?

    • @Cooliofamily
      @Cooliofamily หลายเดือนก่อน

      @@madhatistaken do you have a discord server where you are able to chat?

  • @owenpierce
    @owenpierce หลายเดือนก่อน +2

    Great video! I wouldn't include CISSP however as it does require 5 years or 4 years of experience directly already achieved in a security role for the pure reason of providing employers with prerequisite canadite narrowing done for them.
    Associate of CISSP is valid however.

    • @raypraise
      @raypraise หลายเดือนก่อน +1

      Came here to say this

  • @itachisolosmadara
    @itachisolosmadara 2 หลายเดือนก่อน

    God man, love the edits on these videos!!!!

  • @johnvardy9559
    @johnvardy9559 29 วันที่ผ่านมา

    The most valuable video ive ever seen!

  • @harmendez763
    @harmendez763 2 หลายเดือนก่อน +2

    Got a sys admin role cause of your content previously, W.

  • @NecoOmnis
    @NecoOmnis 2 หลายเดือนก่อน

    I'm trying to pivot from software development to security, so far its been super fun. Initially i started down this path to help me write more secure code, to see things from a different perspective, but now it seems like this is much more my speed. will report back after a year of study and see how things change.

    • @renny7581
      @renny7581 2 หลายเดือนก่อน

      Replying so I can see your thoughts in a year

    • @saurabharora1049
      @saurabharora1049 2 หลายเดือนก่อน

      Even I'm also trying to pivot from software development to Pentesting...
      Let me know what resources you are using.
      Thanks

  • @michaelbeauregard4299
    @michaelbeauregard4299 หลายเดือนก่อน

    Amazing video man! Thank you. Useful & hilarious. All props to you.

  • @ThatGuyAlon
    @ThatGuyAlon หลายเดือนก่อน +1

    I got the Sec+ before I learned Networking now im working back and studying for the Net+. Im working in a IT Support as well

  • @TheITCornerbyJR
    @TheITCornerbyJR หลายเดือนก่อน

    Great Stuff as always Sir!

  • @Star_Kay
    @Star_Kay หลายเดือนก่อน

    Nice video summary, thanks a lot!

  • @mtvh7739
    @mtvh7739 2 หลายเดือนก่อน +2

    A CISSP is def not required for a junior role, the certificate is aimed towards people with years of working experience.

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +2

      Agreed, that's why it's on the "mad hat" roadmap hehe I've found after taking the exam it's like security+ but bigger and more manager-esque

  • @new0marr
    @new0marr 2 หลายเดือนก่อน +1

    what really makes the difference is the networking experience
    if you are going for red team .. try to focus on networking then operation systems then programing

  • @swortham
    @swortham 2 หลายเดือนก่อน +2

    The way I’ve decided to go is I’m going for an associates since ever since Trump got elected college tuition has dropped drastically the university right up the street from my house. They lower tuition by 40% per year so I’m gonna go to the associates degree route when I get enough credits i’m transferring my degree over to SANS and finishing my degree there, I spoke with them the other day long story short they have two programs I can either come out with four of the most prestigious cyber security certifications a person can get or I can stay at Sam’s and finish my bachelors and come out with nine then I’d only have to take one more Sans certs to have the golden goose of all cyber certs

  • @techroamin
    @techroamin 2 หลายเดือนก่อน +1

    This vid is gonna be a banger, well done MH 😮‍💨😎

  • @IbanezMetal24
    @IbanezMetal24 หลายเดือนก่อน

    Passed the Sec+ today! Excited to not have to study for a few months 😂

  • @siyabongamjwara2982
    @siyabongamjwara2982 2 หลายเดือนก่อน +2

    I've realized that you can't just hop into cyber security. You need to have relative IT experience. Especially being a systems administrator. Having the base level of IT will help you once you move to cybersecurity

  • @almightymachine9930
    @almightymachine9930 หลายเดือนก่อน +1

    You can't learn what you need to know in college... So how does one learn? One figures it out. In the words of OffSec- "try harder". I think many of us just like confronting seemingly insurmountable challenges... figuring it out is the fun part.

  • @jjones3705
    @jjones3705 หลายเดือนก่อน

    Ctfs are the way to go. Running through a bunch of certs doesnt teach enough about actually attack systems. Said as someone who passed the OSCP, lots of ctf experience will get you hired

  • @xCheddarB0b42x
    @xCheddarB0b42x 2 หลายเดือนก่อน +5

    I like how C is at the bottom.
    But where is Reverse Engineering? At the crushing, freezing oceanic abyssal depths is where.

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +1

      😂😂my class in college on C and machine code was too much for my feeble mind

    • @terrorists-are-among-us
      @terrorists-are-among-us 2 หลายเดือนก่อน +1

      Pentesting looks like hell. I'm too lazy to use Google and they want documentation when I just wanna escalate the matter and go on nap break.

  • @wlm617
    @wlm617 4 วันที่ผ่านมา

    subscribed because of WoW referrences

  • @crocodosto9026
    @crocodosto9026 หลายเดือนก่อน +6

    How does his videos bring back motivation?!!! Im totally crushed. I had hope but considering i need to study 24/7 for long years to get a junior job is way too depressing i cant handle this... Wth bro...

  • @Leisery
    @Leisery 15 วันที่ผ่านมา

    I feel immense grief just imagining the biggest tech iceberg.

  • @genius4tru
    @genius4tru หลายเดือนก่อน

    Awesome info!!! The memes are legendary 🤣🤣🤣

  • @dongwongmagicreviews
    @dongwongmagicreviews หลายเดือนก่อน +1

    I love you for making this video content!

  • @stack3r
    @stack3r 11 วันที่ผ่านมา +1

    Remember when Security was just part of IT... and not separated out into this whole world of sales, marketing and bs job positions that seem to be filled with people who dont have much of a clue?

  • @thatskelvin
    @thatskelvin 29 วันที่ผ่านมา

    The display bike example got a chuckle out of me😂

  • @mercxn3002
    @mercxn3002 หลายเดือนก่อน +1

    my cybersecurity GOAT

  • @eriklorent
    @eriklorent 2 หลายเดือนก่อน

    you are pretty awesome bruh i cant lie good looks twin

  • @videogamecoverss
    @videogamecoverss 2 หลายเดือนก่อน

    Watching this video "For the people that were really good at math and science, here is the madhat road map"
    Guess I'm taking that, I already got my CCNA and starting with a major company December 2nd as a Networking Engineer. Almost pro hacker rank on HTB and plan to transition to Cyber Security eventually.

  • @deathofasellout
    @deathofasellout หลายเดือนก่อน

    Once you obtain the OSCP, after obtaining some blue team certs, you can land a job. Anything above OSCP is overkill for landing your first job.

  • @baileyayyy5085
    @baileyayyy5085 หลายเดือนก่อน

    I trust this channel blindly because it has fun music

  • @tudorlasus
    @tudorlasus หลายเดือนก่อน +1

    i m taking a different approach. i am going for red teaming at first because i belive it is better to know how to attack before learning how to defend. i m 2 months in, i ve don the google cybersecurity cert for the basics, the TCM's PJWT for webtesting, now trying to get my first bug bounties for experience. next on my list are eJPT and then OSCP. P.S I am learning Python and doing CTF's challenges from various companies at the same time too.

  • @ReconBee
    @ReconBee หลายเดือนก่อน

    Very informative video on the cybersecurity roadmap

  • @callmekurt23
    @callmekurt23 หลายเดือนก่อน

    thanks man it was really helpful

  • @XenolVlatriX
    @XenolVlatriX หลายเดือนก่อน

    Look like a lot of money is needed. My plan:
    -PJPT
    -CCNA
    -Splunk
    -CPTS / OSCP
    -Coding

  • @pedrotorres-hz9vp
    @pedrotorres-hz9vp 2 หลายเดือนก่อน +9

    Jesus, OSEE to get a junior position is wild xD Great video, though! By the way, I recently landed a soc analyst position after getting the OSCP, PNPT, and BTL1. Now, I’m focusing on expanding my knowledge with more tools and cloud technologies, to aim for senior positions or even engineering roles. I'm currently considering splunk certifications or the SC-200, what do you think?

    • @josemmm11
      @josemmm11 2 หลายเดือนก่อน +3

      i think splunk certification is better option. it will make you better in the blueteam daily task and even you can become cybersecurity engineer specialized in Splunk, the SIEM tool leader in the industry.
      Best regards

    • @pedrotorres-hz9vp
      @pedrotorres-hz9vp 2 หลายเดือนก่อน +1

      @@josemmm11 Hey Jose, thank you for the advice! I already started their free content and I'm currently waiting for my company approval to get the cert.
      Wishing you a great weekend!

    • @fernandoc8876
      @fernandoc8876 2 หลายเดือนก่อน +1

      PNPT and OSCP for a SOC position imo is an overkill.
      You could literally be a Pentester right now.
      Also SC-200 only makes sense if the company you're working now uses all Microsoft 365 security stack.

    • @pedrotorres-hz9vp
      @pedrotorres-hz9vp 2 หลายเดือนก่อน

      @@fernandoc8876 I was applying to pentest positions as well, and those certs were a way to get some interviews (no prior IT xp). I was thinking about SC-200 because the majority of the clients I'm with use Sentinel and MDE xD

    • @mllenessmarie
      @mllenessmarie 2 หลายเดือนก่อน +1

      Would recommend Splunk certifications more. SC-200 is nice, but it's not that glamorous - it's worth if your company uses Azure products plus if they are in partnership with MS and all certs are free. Plus, I'd definitely try cloud certs - they are always worth plus recruiters look for them.

  • @georgerobbins5560
    @georgerobbins5560 2 หลายเดือนก่อน

    Great video, Sir.

  • @Jombo1
    @Jombo1 27 วันที่ผ่านมา

    Maybe passing OSEE will finally get me into tier 1 help desk!

  • @erebus7660
    @erebus7660 15 วันที่ผ่านมา

    time to 100% this roadmap ig

  • @sovering90
    @sovering90 21 วันที่ผ่านมา

    Clear, Funny, Fluent and Lok'tar Ogar

  • @shaikhwaqas-b7l
    @shaikhwaqas-b7l หลายเดือนก่อน

    love the content i can listen to this all day long without getting bored :D :D :D

  • @Deven210
    @Deven210 หลายเดือนก่อน

    I'm a current System administrator, I had goals of becoming a security analyst but I've since gone a different route due to the over saturation of the market. There's so many jobs out there to apply for, but always 100's of applicants on every single job posting. I still have fun dabbling in pentesting, and I have quite a few cert's related to cybersecurity so maybe one day I'll find my way to an analyst position. Who knows 🤷‍♂🤷‍♂

    • @BackpackGringo
      @BackpackGringo หลายเดือนก่อน +1

      I feel that. Was super disheartening to realize that after grinding Google cyber, sec+ and THM level 1.

    • @Deven210
      @Deven210 หลายเดือนก่อน

      @@BackpackGringo Yeah all that glitters is not gold unfortunately. Keep going man, are you working in IT yet?

  • @igotsixright
    @igotsixright 2 หลายเดือนก่อน

    LOL "THe more you f**k around, the more you're gonna find out!" 12:50 -> I love your vid-snips!!! Made me laugh out loud!🤣

  • @valentinvetements
    @valentinvetements หลายเดือนก่อน

    Knowing everything about Italy leads to having databases full of information of Italian and foreign citizens of their often of their purchases and so saying, the most extravagant thing is in the world you can have the most absolute power in making the rules in the home of others, Microsoft is the best

  • @wintergreene795
    @wintergreene795 2 หลายเดือนก่อน

    Another entertaining but amazingly educational cybersecurity learning content! Are you looking into doing a content about what you think of GRC certs and roles like CISM, CISA, etc.? Thanks!

  • @TheOmfg02
    @TheOmfg02 หลายเดือนก่อน

    If you close your eyes and imagine a frog, sometimes you can hear kermit the frog

  • @EAEAAAEAEE
    @EAEAAAEAEE 2 หลายเดือนก่อน

    This is great, thank you

  • @eliandominguez
    @eliandominguez 21 วันที่ผ่านมา

    Now I feel like finished my A+ and starting THM jr pe test was not the way to start my journey.

  • @chiyaogeneshen2922
    @chiyaogeneshen2922 20 วันที่ผ่านมา

    0:55 noted, im just gonna live with my parents for the rest of my life. Thanks

  • @allannhlanhla
    @allannhlanhla 2 หลายเดือนก่อน

    Great video, love the memes!!!!😄😄

  • @jonnyjohnstown9921
    @jonnyjohnstown9921 14 วันที่ผ่านมา

    God damn every warcraft joke hits too close to home

  • @Vikon-k7d
    @Vikon-k7d 2 หลายเดือนก่อน

    thank you for the video just in the right time , i will pick the medium track that you suggest, thanks for your effort again

    • @madhatistaken
      @madhatistaken  2 หลายเดือนก่อน +1

      Best of luck in your learning journey!

  • @DT-vc2mf
    @DT-vc2mf หลายเดือนก่อน

    Hey mate love your content. Can you one on the lesser known but probably most important cyber role: Security Awareness Lead?

  • @Bryghtpath
    @Bryghtpath 2 หลายเดือนก่อน +1

    Coding isn't optional if you want to master advanced defense and offense in cybersecurity.

  • @arshadcheng
    @arshadcheng 2 หลายเดือนก่อน

    I'm going to have my focus on certifications like CISSP and OSCP. HTB & THM certifications and other related popular cybersec learning platforms

  • @xtonix7577
    @xtonix7577 2 หลายเดือนก่อน

    I just completed my first pentesting certificate exam and the phrase "salty screen staring" just perfectly summarizes this experience 😂