fa
Feedback
Security Operations

Security Operations

رفتن به کانال در Telegram

Cloud, Security & DevOps Not a blog, just a knowledgebase where I dump interesting stuff to find in the future. #Risk #Compliance #DevSecOps #Cloud More about me: https://secops.one/whoami/

نمایش بیشتر
358
مشترکین
+124 ساعت
اطلاعاتی وجود ندارد7 روز
-130 روز
آرشیو پست ها
💸 £0 learning stack to become a Security Engineer: Don’t pay for CTF practice → use picoCTF Don’t pay for API security labs → use crAPI Don’t pay for crypto basics → use CryptoHack Don’t pay for secrets scanning tools → use Gitleaks Don’t pay for Linux basics → use OverTheWire Bandit Don’t pay for dependency scanning basics → use Trivy Don’t pay for AppSec checklists → use OWASP ASVS Don’t pay for vulnerable apps → use OWASP Juice Shop Don’t pay for malware basics → use ANY.RUN public reports Don’t pay for Kubernetes security basics → use Kubernetes Goat Don’t pay for threat modeling templates → use OWASP Threat Dragon Don’t pay for SIEM learning → use Elastic free docs + sample datasets Don’t pay for cloud security theory → use Amazon Web Services Security Ramp-Up Guide Don’t pay for container security practice → use Docker Bench for Security Don’t pay for log analysis practice → use Security Onion Community Edition Don’t pay for OWASP training → use OWASP Top 10 + Cheat Sheets Don’t pay for web security basics → use PortSwigger Web Security Academy Don’t pay for cloud misconfig practice → use CloudGoat in a sandbox account Don’t pay for incident writeups → read security blogs from Cloudflare, GitHub, Uber, Okta, and Google Don’t pay for interview prep → study real incident reports and explain the root cause in your own words The fastest way to learn security is simple: Pick one area. • Web security • Cloud security • Kubernetes security • IAM • Incident response • AppSec Then build proof. Break a lab. Write the finding. Explain the impact. Fix it. Document the lesson. That loop teaches more than 50 random courses. Security engineering is not about collecting tools. It is about understanding: • how systems fail • how attackers move • how to reduce risk without breaking everything else

photo content

🚀 If you work in cloud, security, or architecture, these videos can help you build practical AWS security skills quickly. They walk through hands-on demos across WAF, GuardDuty, Inspector, IAM Access Analyzer, JIT access, and AI agents, so you can see how each service creates value in real environments. I brought together 10 of my AWS Security tutorials to make learning practical and enjoyable. 🛡️AWS WAF Hands-on Tutorial: https://lnkd.in/gkZsHdEG 🤖AWS WAF Bot Control Explained and Demonstrated: https://lnkd.in/gAwa2fay 🔐AWS Security Hub for Unified Security Solutions: https://lnkd.in/gH5bYn56 🚨Amazon GuardDuty Attack Sequence: https://lnkd.in/g335iFb4 🖥️Amazon GuardDuty EC2 Runtime Monitoring: https://lnkd.in/dk8qhyuV ⏱️AWS Systems Manager Just In Time Node Access: https://lnkd.in/gmA7fg_q 🧠Build AI Agents with Bedrock Agentcore Runtime: https://lnkd.in/gnzPm_fq 🔍Amazon Inspector for Vulnerability Management: https://lnkd.in/gA-cNeDk 💻Amazon Inspector Code Security: https://lnkd.in/gFZmgPvp 👁️AWS IAM Access Analyzer for internal analysis: https://lnkd.in/gJzjE7RU #AWS #Security #Cloud #AI