p*****d 发帖数: 81 | 1 如题。 做这个前途如何?比起developer?
多谢! |
p*****d 发帖数: 81 | |
p*****2 发帖数: 21240 | 3 上次yammer找我做这个 没去面
【在 p*****d 的大作中提到】 : 如题。 做这个前途如何?比起developer? : 多谢!
|
c********t 发帖数: 4527 | 4 I am happy to work in the industry > 12 years.
And it is doing quite good recently, I have a lot to say about this as a
career.
It is a niche.
And you really can benefit a lot after a few years. I would say, thinking
beyond just getting some income as individual engineer, this sector is
promising.
【在 p*****d 的大作中提到】 : 如题。 做这个前途如何?比起developer? : 多谢!
|
c********t 发帖数: 4527 | 5 and if you want to find a position or just things to do in this field, talk
to me.
【在 p*****d 的大作中提到】 : 如题。 做这个前途如何?比起developer? : 多谢!
|
p*****2 发帖数: 21240 | 6
大牛说说都需要什么knowledge。
【在 c********t 的大作中提到】 : I am happy to work in the industry > 12 years. : And it is doing quite good recently, I have a lot to say about this as a : career. : It is a niche. : And you really can benefit a lot after a few years. I would say, thinking : beyond just getting some income as individual engineer, this sector is : promising.
|
c********t 发帖数: 4527 | 7 for smart cookies like you , already over qualified.
Seriously, it is an industry seems like so a bit high bar to enter.
But that's fake impression.
【在 p*****2 的大作中提到】 : : 大牛说说都需要什么knowledge。
|
a*****z 发帖数: 8 | 8 co-ask. what are the first steps for changing one's career from a software
engineer to an Application Security Engineer?
Thanks!
【在 p*****2 的大作中提到】 : : 大牛说说都需要什么knowledge。
|
p*****d 发帖数: 81 | 9 谢谢你的回复!
能否展开讲讲?例如与system/network administrator的区别。从job market看似乎不
少公司招这个职位。
【在 c********t 的大作中提到】 : I am happy to work in the industry > 12 years. : And it is doing quite good recently, I have a lot to say about this as a : career. : It is a niche. : And you really can benefit a lot after a few years. I would say, thinking : beyond just getting some income as individual engineer, this sector is : promising.
|
p*****d 发帖数: 81 | 10 如果你不介意,可否展开讲讲为何未去?
【在 p*****2 的大作中提到】 : 上次yammer找我做这个 没去面
|
|
|
W******g 发帖数: 887 | 11 看你ID还是适合做开发吧
【在 p*****d 的大作中提到】 : 谢谢你的回复! : 能否展开讲讲?例如与system/network administrator的区别。从job market看似乎不 : 少公司招这个职位。
|
p*****2 发帖数: 21240 | 12
刚被微软收购
【在 p*****d 的大作中提到】 : 如果你不介意,可否展开讲讲为何未去?
|
c********t 发帖数: 4527 | 13 yeah, also Yammer still have an application security position (with ties to
APAC too).
【在 p*****2 的大作中提到】 : : 刚被微软收购
|
a********3 发帖数: 228 | 14 同问,我看一个招聘广告上说要熟C++和TCP/IP协议。
【在 p*****2 的大作中提到】 : : 刚被微软收购
|
P*******b 发帖数: 1001 | 15 applicaiton security 有那么长时间的时间了?
我还以为只是近几年的事情呢
【在 p*****d 的大作中提到】 : 谢谢你的回复! : 能否展开讲讲?例如与system/network administrator的区别。从job market看似乎不 : 少公司招这个职位。
|
f****g 发帖数: 313 | 16 I am working at application Security industry for a year, and I am still a
newbie:-) But I love to share my $0.02.
Knowledge and Skill sets:
If you are working in Web Security:
* Web technology stack, from the most basic principle like same domain
origin policy to latest technology like PostMessage, WebSocket etc.
* OWASP Top 10 Web Security Vulnerabilities
* Applied cryto. How to generate PRNG? How to store customers' password?
what is the crypto algorithms/libraries you are going to suggest developers
to use?
* TCP/IP protocol stack
* SSL protocol and web SSO procotol, such as openid, saml, oauth etc.
Besides technical skills list here, you have to be very passionate about
security and hacking , since this position requires a lot self-learning and
research :-) |