Infosec Career Hacking: Sell Your Skillz, Not Your Soul
Cartea este un ghid tehnic pentru a ajunge sa ai un job in domeniul Securitatii Informatiei.

Publisher Syngress
Author(s) Aaron W. Bayles, Chris Hurley, Johnny Long, Ed Brindley, James C. Foster
ISBN 1597490113
Release Date 06 May 2005
Analizezi fiecare packet care trece prin reteaua ta de acasa doar pentru ca poti? Petreci ore nenumarate programand aplicatii pentru propria placere si pentru provocare? Ai o pusculita pe care scrie "Fonduri de calatorie la DEFCON/Black Hat"? Daca vrei sa-ti canalizezi aceste indemanari pentru a obtine un job de top in Securitatea Informatiei si o excursie platita de angajator la Las Vegas la anul viitor, atunci ai cumparat cartea potrivita. Autorii acestei carti au reusit cu totii sa-si foloseasca indemanarile de hackeri pentru a-si construi cariere de succes. De la ei vei afla despre varietatea de job-uri disponibile si cunostintele necesare pentru a excela in fiecare din ele. De asemenea, autorii dau sfaturi cum sa iti dezvolti indemanari de management si de dezvoltare personala - necesare sa iti croiesti un drum in cariera cat mai sus.
Din cuprins:
- Determine What You Want to Be When You Grow Up (or at Least Get Older) See how the InfoSec field has matured, and decide if this is the life for you.
- Social Engineering for Profit Use both your people and research skills to perform reconnaissance on the InfoSec job market.
- Choose the Right Path Learn what certifications, work experience, and education are required (or not) to land your dream job.
- There's No Place Like Home for a Test Lab! Build a fully functional test lab and attack machine in your basement to fine-tune both your attack and defense skills.
- Learn the Laws of Security Master the ten guiding principles of information security to outwit malicious hackers in the real world.
- Know Your Enemies Identify and understand the classes of attack: denial of service,
information leakage, regular file access, misinformation, special
file/database access, remote arbitrary code execution, elevation of
privileges.
- Feeling Vulnerable? Navigate the dangerous waters of vulnerability disclosure from nondisclosure to full disclosure.
- Don't Trip the Sensors Use your l337 H4x0r skillz to assimilate into the workplace and hack the corporate ladder.
- Master Incident Response Develop contingency plans to put out fires in the workplace without getting burned.
- Install Your Career Rootkit Since you got there, you might as well stay there!
Part I: Recon/Assessment Chapter 1: The Targets-What I Want to Be When I Grow Up (or at Least
Get Older) Chapter 2: Reconnaissance: Social Engineering for Profit
Chapter 3: Enumerate: Determine What's Out There Chapter 4: First
Strike: Basic Tactics for Successful Exploitation Part II: Technical Skills Chapter 5: The Laws of Security Chapter 6: No Place Like /home-Creating
an Attack Lab Chapter 7: Vulnerability Disclosure Chapter 8: Classes of
Attack Part III: On the Job Chapter 9: Don't Trip the Sensors:
Integrate and Imitate Chapter 10: Vulnerability Remediation--Work
Within the System Chapter 11: Incident Response--Putting Out Fires
Without Getting Burned Chapter 12: Rooting: Show Me the Money!
- Master Incident Response Develop contingency plans to put out fires in the workplace without getting burned.
- Don't Trip the Sensors Use your l337 H4x0r skillz to assimilate into the workplace and hack the corporate ladder.
- Feeling Vulnerable? Navigate the dangerous waters of vulnerability disclosure from nondisclosure to full disclosure.
- Know Your Enemies Identify and understand the classes of attack: denial of service,
information leakage, regular file access, misinformation, special
file/database access, remote arbitrary code execution, elevation of
privileges.
- Learn the Laws of Security Master the ten guiding principles of information security to outwit malicious hackers in the real world.
- There's No Place Like Home for a Test Lab! Build a fully functional test lab and attack machine in your basement to fine-tune both your attack and defense skills.
- Choose the Right Path Learn what certifications, work experience, and education are required (or not) to land your dream job.
- Social Engineering for Profit Use both your people and research skills to perform reconnaissance on the InfoSec job market.










