Cyber Security GRC Career path | Certifications | job duties | opportunities

Поділитися
Вставка
  • Опубліковано 3 гру 2024

КОМЕНТАРІ • 177

  • @UnixGuy
    @UnixGuy  10 місяців тому +2

    This is updated video, start a career in GRC today:
    The BEST Cyber Security GRC Training for Beginners | GRC Mastery
    ua-cam.com/video/C6IgksBpMF4/v-deo.html

  • @isaacsolomon149
    @isaacsolomon149 Рік тому +4

    Great Video UnixGuy; I find it very helpful and helped re-arrange my start-off point into Cybersecurity- GRC, to be precise. Thank you.

  • @virusglass9893
    @virusglass9893 2 роки тому +9

    Great video. Is the world becoming more secure? Doubtful, but there is definately a push for more security regulations - you can count on that and this is where GRC comes into play. Related to this is that a lot of high-end companies (ASX 100 for example), don't yet have CISO's but don't be surprised that if not mandated by regulation, then there will at least be a push by the regulators for these positions to be created in the future in my view.

    • @UnixGuy
      @UnixGuy  2 роки тому +5

      The world is definitely less secure as digital footprints are increasing and attackers are getting craftier! and don’t get me started with the ASX 100 🙃 you’re absolutely right.
      I’ve seen compliance obligations push companies to START a security program 😂

  • @mateuszkacperski1211
    @mateuszkacperski1211 3 місяці тому +1

    Thank you for today:) from 16th of September I will start my Cybersecurity journey with you and all your advice 🎉 I will keep you update :) 😊

    • @UnixGuy
      @UnixGuy  3 місяці тому

      Good luck!

  • @stevemcmichael3459
    @stevemcmichael3459 2 роки тому +2

    A related podcast that might be of interest:
    ua-cam.com/video/chjZ3Yzyxh4/v-deo.html
    What is GRC? 10:00
    Why is GRC underrated? 14:35
    Key success factors in breaking into GRC 23:10
    Value of Certified Information Systems Auditor (CISA) cert 33:10

    • @UnixGuy
      @UnixGuy  2 роки тому

      youtube thought this comment was spam 😂 I’ll check it out thanks mate

  • @mercedesmedina2045
    @mercedesmedina2045 Місяць тому

    Great. Information. Clear and to the point. Thank you.

    • @UnixGuy
      @UnixGuy  Місяць тому

      this is an updated GRC video:
      ua-cam.com/video/C6IgksBpMF4/v-deo.html

  • @law.techies
    @law.techies Рік тому

    Thank you so much for this video @unixguy, this is the closest I have come to understanding the big GRC picture. I am a lawyer who has been interested in tech for the longest, especially security and privacy issues, and I want to go into GRC. My first request is that you please present me with a possible roadmap. One of the struggles I have had is finding a pivot point. I know it will be hard, but I think this is a path I would actually find fulfillment in. As a lawyer, I already help businesses drive their internal policies and compliance of some sort.

    • @UnixGuy
      @UnixGuy  Рік тому +1

      there are no beginner GRC certs unfortunstely! best start would be this:
      ua-cam.com/video/6LIUhx95MCU/v-deo.html

  • @gardenfairyvlogs
    @gardenfairyvlogs 2 роки тому +2

    Thank you for this video, clear and crisps guidance. I have recently moved to Compliance through IJP from development profile. This video helped me clear most of the queries I had. Could you please guide us on the financial growth in compliance. Also how to build confidence talking to senior stakeholders.

    • @UnixGuy
      @UnixGuy  2 роки тому

      Financial growth comes from seniority, so doing the certs I mentioned in this video will definitely improve your knowledge and open doors. Spending some time in Big4 or any consulting firm can also further expand your knowledge.
      I have a playlist of ‘career advice’ that I recommend you watch: ua-cam.com/play/PLdI5VHN89i7WdIXViD83Ut6ggA69XhDyJ.html

    • @gardenfairyvlogs
      @gardenfairyvlogs 2 роки тому +1

      @@UnixGuy It helps. Thank you sir. I must tell you among all UA-cam videos for cyber sec I have gone through, I feel your explanation and simplicity is so authentic. We get exactly what we are looking for. Cant skip a sec of your video. Thank you for all this valuable videos. Big fan.

    • @UnixGuy
      @UnixGuy  2 роки тому

      @@gardenfairyvlogs thank you so much for your kind words, I really really appreciate it! So glad I’m able to help :)

  • @87ruthless53
    @87ruthless53 5 місяців тому

    Thank you for keeping it simple and straight to the point

    • @UnixGuy
      @UnixGuy  5 місяців тому

      no worries! this is an older video, much has changes since then! watch this:
      ua-cam.com/video/C6IgksBpMF4/v-deo.html

  • @sonwabolloyd7473
    @sonwabolloyd7473 2 роки тому +1

    Very informative, thank you.

    • @UnixGuy
      @UnixGuy  2 роки тому

      glad you liked it :)

  • @sherwinwilliams6581
    @sherwinwilliams6581 Рік тому

    I just came upon this video, can you share a list of all the smaller companies that would likely hire a JR. GRC analyst? Great videos btw. Learning a lot through them. Thank you for all the hard work and commitment.

    • @UnixGuy
      @UnixGuy  Рік тому

      there is no universal list of companies :)

  • @aadityaoza
    @aadityaoza Рік тому +1

    Great video. What are the similarities and differences between cyber security audit vs GRC job functions? the certifications for both seem to be similar. Appreciate your input on this! thanks!

    • @UnixGuy
      @UnixGuy  Рік тому +1

      they’re extremely similar, the only distinction you’ll find is in some big4 consulting firms and very few big banks! watch this as well:
      ua-cam.com/video/s9LDWLfFOp8/v-deo.html

  • @polescodes
    @polescodes 2 роки тому +3

    I work as a Cyber Security Engineer and a Penetration tester simultaneously. I want to pivot both into GRC for a higher paying role. Is there any tips you have for me?

    • @UnixGuy
      @UnixGuy  2 роки тому +4

      Of course, I recommend doing CISSP or CISA/CISM if you haven’t already
      then I recommend applying to as many GRC as possible (do that now don’t wait until you got the certs).
      Third thing is reach out to your network and contacts, let them know you’re looking!
      This newer video talks about GRC: The most underrated Cyber Security specialisation (Highly Paid)
      ua-cam.com/video/s9LDWLfFOp8/v-deo.html

  • @vamsikrishna8027
    @vamsikrishna8027 2 роки тому +2

    Hi UnixGuy,
    I have a master's in Computer Science and I work as RSA Archer consultant helping businesses with development & implementation of GRC programs using Archer.
    I am further interested in exploring GRC opportunities, could you point me the right direction to further strengthen my skills and employability?
    I didn't have much knowledge about GRC until I started this job and always saw it from the technical requirements standpoint,but I am interested towards increasing my knowledge about GRC.I am looking for some help to guide me in the Right direction.
    I really appreciate your channel.There is much less content available online about GRC careers. Please continue doing it.
    Thank you.

    • @UnixGuy
      @UnixGuy  2 роки тому

      Hey Vamsi, you have an interesting career, RSA Archer is in demand. For you, your best bet is to do the certifications that I recommended in this video (ISACA CISA, CISM, CRISC). They will broaden your horizon and teach what we use RSA Archer for.

  • @PhiveIncognito
    @PhiveIncognito 11 місяців тому

    I used to work at a large accounting and consulting firm. The information and cyber security unit in consulting took in tons of fresh graduates to do GRC work. In my country, often times all it takes to get into cybersecurity via GRC is, i quote job postings - “interest” or “knowledge”

    • @UnixGuy
      @UnixGuy  11 місяців тому +1

      thats fair, yeah fresh grads aren’t expected to have prior knowledge

  • @rsaug
    @rsaug 2 роки тому +2

    Ex EY & PwC Alumni here. This is an excellent video

    • @UnixGuy
      @UnixGuy  2 роки тому +1

      You know what it’s like! You must have quite the reśume :)

    • @rsaug
      @rsaug 2 роки тому +1

      @@UnixGuy not sure about your 2nd part of the sentence 😁, but have been in Cyber Security GRC for past 4. Lots to learn, do and advance in 😊 Ex auditor at EY & PwC prior to Cyber GRC.

    • @UnixGuy
      @UnixGuy  2 роки тому +2

      @@rsaug people love seeing Big4 on a CV so you are onto a great start and GRC is a great place to be. Add some certs like CISSP or maybe CISM and the years pass, you’ll be golden. I’ve even seen GRC people expand their knowledge and learning more about cloud and pivoting to architect or senior advisor type roles

    • @rsaug
      @rsaug 2 роки тому +1

      @@UnixGuy will do, thank you 🙏

    • @gouravgupta698
      @gouravgupta698 2 роки тому

      @@UnixGuy hi I am in GRC/ in infosec cybersecurity in hcl india Noida sec 126
      I want to what's the package I can expect after 1 year of experience
      And how much I can earn in this domain ....please telll

  • @MorrisandApril
    @MorrisandApril Рік тому +2

    Now that this is a year old…
    Do you think having the Google cert in cyber security would be a good start toward training for GRC?

    • @UnixGuy
      @UnixGuy  Рік тому +3

      yes 100% :)

    • @MorrisandApril
      @MorrisandApril Рік тому +1

      @@UnixGuy Thank you for all of your content. It is Deeply appreciated. You’re my go to in this field.

  • @alexzander7143
    @alexzander7143 2 місяці тому

    really appreciated this.

    • @UnixGuy
      @UnixGuy  2 місяці тому +1

      this is an old video, here’s an updated version:
      ua-cam.com/video/C6IgksBpMF4/v-deo.html

    • @alexzander7143
      @alexzander7143 2 місяці тому

      @@UnixGuy lol wow thank you for the response it was so quick will watch the update one

  • @prasad08888
    @prasad08888 Рік тому +1

    Hi UnixGuys thanks a ton for this video... I am IT professional with 14yrs of experience in Network & Security but now i want to move into GRC and I have completed my ISO 27001 Lead Implementer Certification & CISM certification. I am also planning for CISSP. Can you please help me on how should i prepare for interview? Any tips you would like to share... Thanks in Advance..

    • @UnixGuy
      @UnixGuy  Рік тому

      hey Prassad, you have the right credentials so you have nothing to worry about just be honest and confident. This video will help you:
      ua-cam.com/video/uaK7pM3aRj8/v-deo.html

  • @justbgirlthings
    @justbgirlthings 6 місяців тому

    thankyou for this video! very informative!

    • @UnixGuy
      @UnixGuy  6 місяців тому

      this is an older video! please watch this updated version:
      ua-cam.com/video/C6IgksBpMF4/v-deo.html

  • @bahpapajarmjackson
    @bahpapajarmjackson 8 місяців тому

    I am an assistant company secretary and look after the audit and rsik committee. Just attended a board risk day on this very topic. Eye opening. I am conscious of how big this field is becoming. What cyber security roles would I be wise to get into (that pay more than assistant cosec) at the governance level that don't require deep technical knowledge?

    • @UnixGuy
      @UnixGuy  8 місяців тому +1

      hey, I created a training to specifically prepare you for the non-technical GRC roles, have a look:
      ua-cam.com/video/C6IgksBpMF4/v-deo.html

  • @emmanuelkojomireku24
    @emmanuelkojomireku24 Рік тому +1

    Thank you Unix guy for this video, you're the best. I have a BSc. in IT and some 3.5yrs working as an IT Officer and I recently obtained my CC from ISC2. I want to dive into GRC. What would you advise my next step be?

    • @UnixGuy
      @UnixGuy  Рік тому +1

      Hey Emmanuel, I have an updated version of this video:
      ua-cam.com/video/s9LDWLfFOp8/v-deo.html
      next logical step for u is ISACA CISA

    • @emmanuelkojomireku24
      @emmanuelkojomireku24 Рік тому

      @@UnixGuy thank you.

    • @UnixGuy
      @UnixGuy  Рік тому

      @@emmanuelkojomireku24 👍

  • @cyberaddict1010
    @cyberaddict1010 11 місяців тому

    Hey thank you for this informative video! I was torn between cloud security and grc consulting before and i am so glad to know they overlap!! I'm still in college and currently doing google cert and later on will do the microsoft one and prepare for SC-900. Could you please make a video on security consulting and resume tips? As i plan to study further will an MBA or MIS degree be useful in this career speacialization?

    • @UnixGuy
      @UnixGuy  11 місяців тому +2

      im releasing a GRC course very soon please stay tuned! will announce it first on my newsletter: unixguy.com
      for now, follow the cloud security roadmap:
      ua-cam.com/video/zFFMhpCLJi0/v-deo.htmlsi=xnX03Zb2NePYV2Um

    • @cyberaddict1010
      @cyberaddict1010 11 місяців тому

      can't wait!! :D @@UnixGuy

  • @bdig3726
    @bdig3726 2 роки тому +2

    Thank you for the information! I am looking to pivot careers entirely into the cyber security field, and GRC sounds fascinating. I currently hold an BS in Business management as well as an MBA. I recently completed Sec+. What would you advise my next step to be?

    • @UnixGuy
      @UnixGuy  2 роки тому +1

      your qualifications are impressive and you are in a perfect position to pivot to GRC, what work experience do you currently have?

    • @bdig3726
      @bdig3726 2 роки тому

      @@UnixGuy unfortunately not much as I went directly into the MBA following the BS. Currently working in the Financial Aid office of a university auditing student accounts!

  • @Jonamaldo
    @Jonamaldo 10 місяців тому

    Back in my first days, ISACA allowed you to credit up to 3 years if you had a Bachelor’s Degree. That might be true as of today. I still hold my CISA and will do as long as I can.

    • @UnixGuy
      @UnixGuy  10 місяців тому

      I let my cism and crisc expire, they’ve done nothing to my career. I created a GRC course that actually teaches you something:
      ua-cam.com/video/C6IgksBpMF4/v-deo.htmlsi=G4Z-p8cqetl5wCjQ

  • @paulsonmichael3293
    @paulsonmichael3293 2 роки тому +2

    Hi. Instructive video here. I'm a lawyer and I have no background in Computer Science and allied courses. How do I get started in the GRC space? Is this a good fit? Would it be extremely technical for me?

    • @UnixGuy
      @UnixGuy  2 роки тому +1

      Hi Paulson, I know a few people with legal backgrounds who do cybersecurity. GRC is an excellent place for you. A great start for you is to work on the "Privacy" side of cyber security as it requires legal knowledge. From there, you can pivot to more GRC based Risk and audit type work. You do not need a technical background, but doing a training course and getting CISA certified is a good goal for you. Consulting firms love people with legal background so I say go for it!

  • @j.a.ward13
    @j.a.ward13 Рік тому

    Great content again. Thanks. What do you think about OCEG GRCP?

    • @UnixGuy
      @UnixGuy  Рік тому

      not something I’d recommend

    • @j.a.ward13
      @j.a.ward13 Рік тому

      @@UnixGuy why do you say that?

    • @UnixGuy
      @UnixGuy  Рік тому +1

      @@j.a.ward13 not a popular cert, no one heard of it, I have no way of validating the quality of the course

    • @j.a.ward13
      @j.a.ward13 Рік тому

      @@UnixGuy are there any other GRC certs that you would recommend?

    • @UnixGuy
      @UnixGuy  Рік тому +1

      @@j.a.ward13 start with the google cyber cert, then gain any experience and cert up in different domains, then do isaca later

  • @merolin5975
    @merolin5975 11 місяців тому

    Hi brother. Thank you so much for this video. Very informative. I wanted to know what your thoughts were on the ISO 27001 lead implementer cert. Is it worth doing?
    I’m new to cybersecurity and I recently passed my professional google cybersecurity certification in the hope of getting in the field. I like GRC and auditing and I’m looking for ways to get in involved.
    Thanks in advance
    Cam

    • @UnixGuy
      @UnixGuy  11 місяців тому

      hey mate! there are no entry level GRC training in the market that teaches real skills! Im actually goingg to reelease one soon (in a few weeks time) that will teach you all the skills that you need
      I will announce it first on my weekly newsletter so please make sure to sign up: unixguy.com
      watch this:
      ua-cam.com/users/shortsBRmx7LAnqkM?si=2QWKApD8yU3sDuB3

  • @joshuab401
    @joshuab401 Рік тому +1

    Hi Unixguy, just want to kindly ask you again,
    Lots of videos and job searching engine say that GRC is mostly needed for public sector ( Govt, etc ).
    Is this true ? what is the percentage comparison between GRC job in public and private sector ?
    Thankyou

    • @UnixGuy
      @UnixGuy  Рік тому

      needed in both public and private. dont listen to those videos

  • @mamunpandit4128
    @mamunpandit4128 2 роки тому +1

    Hi I am working more into the IT audit front however, want to move more into GRC and TPRM role

    • @UnixGuy
      @UnixGuy  2 роки тому

      sweet! I think ISACA certifications will help out!

  • @BobBob-qm2bm
    @BobBob-qm2bm 2 роки тому +1

    Thank you

    • @UnixGuy
      @UnixGuy  2 роки тому

      you’re welcome :)

  • @HAMMADMALIKCAB
    @HAMMADMALIKCAB 2 роки тому +1

    very informative .... can you please make video on cybersecurity degree from monash university

    • @UnixGuy
      @UnixGuy  2 роки тому

      Added it to my list, but Monash cyber degree is an excellent degree

    • @HAMMADMALIKCAB
      @HAMMADMALIKCAB 2 роки тому

      @@UnixGuy Thank you so much 😊😊.... I f you dont mind , please add Masters of information tech from monash to your list... im confused btw the two

    • @UnixGuy
      @UnixGuy  2 роки тому

      @@HAMMADMALIKCAB one is focused on IT (general) and one is focused on Cyber security. if you want to work in cyber do the cyber masters

  • @Herbs_healthy
    @Herbs_healthy Рік тому +1

    I want to start a career in GRC, but I'm confused about where to start. I need help.

    • @UnixGuy
      @UnixGuy  Рік тому

      follow the plan in this video:
      ua-cam.com/video/s9LDWLfFOp8/v-deo.html

  • @MkMk-rp1wb
    @MkMk-rp1wb 11 місяців тому

    I've been working as a SOC analyst for the past 3 years. How can I transition into GRC? As a SOC professional, what aspects of governance, risk, and compliance should I focus on...?

    • @UnixGuy
      @UnixGuy  11 місяців тому +1

      there is no beginner friendly GRC training! im annoucing something soon to fix this! make sure you signed up to my weekly email list to hear about it: unixguy.com

  • @nicholehamilton5844
    @nicholehamilton5844 2 роки тому

    This is a great video! Are you saying I should look at being a SOC Analyst first before entering GRC? I'm confused on how to get experience as I am just doing research to make sure I woll even like the position. Once you have the experience, is it easier ti fibd a job in GRC?

    • @UnixGuy
      @UnixGuy  2 роки тому +1

      Experience is king, so the more you have the better (as I explain in this video:
      ua-cam.com/video/GPmVphOqSGY/v-deo.html )
      You don’t need to work as a SOC analyst first, but it helps if you have any sort of experience first

  • @khutubkhan5459
    @khutubkhan5459 2 роки тому +2

    I have my CISM, is this cert beneficial in the GRC space?

    • @UnixGuy
      @UnixGuy  2 роки тому +1

      yes absolutely! very beneficial. This video dives deeper into the topic:
      ua-cam.com/video/s9LDWLfFOp8/v-deo.html

    • @khutubkhan5459
      @khutubkhan5459 2 роки тому +1

      @@UnixGuy thank you for your reply! I’m thinking of going for CRISC now

    • @UnixGuy
      @UnixGuy  2 роки тому

      @@khutubkhan5459 good choice!

  • @MMABones
    @MMABones 2 роки тому +1

    Nice video bro. Is SimpliLearn certifications good for landing a cyber security entry level job? I'm currently learning Introduction to cyber security from them which offers certification.

    • @UnixGuy
      @UnixGuy  2 роки тому +1

      hey mate, all I know about them is that they partner with EC-council which I’m not a fan of. Why do bootcamps when you can simply do certifications instead? I don’t see the point.
      If you’re into GRC, I recommend you check this updated video:
      ua-cam.com/video/s9LDWLfFOp8/v-deo.html

    • @MMABones
      @MMABones 2 роки тому +1

      @@UnixGuy Thanks bro

    • @UnixGuy
      @UnixGuy  2 роки тому

      @@MMABones you’re welcome!

  • @uncommontherapy6547
    @uncommontherapy6547 11 місяців тому

    Great video. Please what certs do you recommend for one who wants to get to systems administrators?

    • @UnixGuy
      @UnixGuy  11 місяців тому

      ua-cam.com/video/zFFMhpCLJi0/v-deo.html

  • @moniquerich4340
    @moniquerich4340 Рік тому +1

    Hello, Great video but very confusing. You start off by saying that GRC is an area that is normally easier to start off in but then you say that you can’t get a certification unless you’re already working five years. How would you gain employment if you don’t have the experience and can’t even get a valuable certification to demonstrate basic knowledge?

    • @UnixGuy
      @UnixGuy  Рік тому

      it is hard to get your first job in cyber regardless of specialisation because every job needs experience and you can’t get experience without a job. Yes, the certs require 5 yrs of experience, however, I recommended CompTIA Security+ which will get you started on the path.
      Here’s a video that can explain to you how to frame your existing experience: ua-cam.com/video/McoZ2HoYqrw/v-deo.html
      and this very important video to explain how to get your first job: ua-cam.com/video/GPmVphOqSGY/v-deo.html

    • @moniquerich4340
      @moniquerich4340 Рік тому

      Thank you for the thorough and thoughtful response. I will check out the other videos. Best wishes

    • @UnixGuy
      @UnixGuy  Рік тому

      @@moniquerich4340 No worries at all Monique! please let me know if you any further questions once you watch the videos - happy to help :)

  • @sairajshetty546
    @sairajshetty546 2 роки тому

    Hi Unix Guy ,just loved your videos .I wanted your advice.As u said we have to interact with stake holders and doing documentation thing ...so your saying communication skills matter a lot in GRC field .As my communication skills is pretty decent ,so i am worried whether should i choose this field or not?Please help me out

    • @UnixGuy
      @UnixGuy  2 роки тому

      if your communication skills are decent then you have nothing to worry about :)

  • @ConceeitedTV
    @ConceeitedTV Рік тому

    As a 4 yr SOC analyst, it has been tough for me to get into GRC. It might be my resume, but I cannot even get Hiring managers to call for interviews. I guess I need to work on the CISA cert and then maybe I'll start getting taken seriously for job postings.

    • @UnixGuy
      @UnixGuy  Рік тому

      correct and if CISA is too challenging, start here:
      ua-cam.com/video/6LIUhx95MCU/v-deo.html

    • @ConceeitedTV
      @ConceeitedTV Рік тому

      @@UnixGuy Thank you for the link. I already have my Security+. I have been a Security Analyst in the Security Operation Center for the past 4 years. But I'm having trouble getting interviews for GRC Roles. So would a CISA Cert start to entertain Hiring Managers when my resume comes up? Even though I don't have Audit experience.

  • @Cyber_Pharm
    @Cyber_Pharm Рік тому

    Thank you for this video... I'm a recent graduate from Pharmacy school and I'm looking at transitioning into the Cybersecurity space... Any tips for me to get started...

    • @UnixGuy
      @UnixGuy  Рік тому

      Follow the plan I laid out in this video:
      ua-cam.com/video/ug_ruisDUXc/v-deo.html :)

  • @tejboddupalli546
    @tejboddupalli546 Рік тому +1

    Hi thank you for your video. I am a manual tester in IT for the last 6+ years. Would someone with my background be able to move into GRC? Thanks.

    • @UnixGuy
      @UnixGuy  Рік тому

      yed absolutely! start with CISA and move from there, check this video out for a step by step guide to generally gain more cyber knowledge:
      ua-cam.com/video/ug_ruisDUXc/v-deo.html

  • @joshuab401
    @joshuab401 Рік тому

    Hi again UnixGuy, could you please inform what is the name of cloud cert needed ? based on what you mentioned..
    Thanks,
    Josh

    • @UnixGuy
      @UnixGuy  Рік тому

      there are many! you can start with this one:
      ua-cam.com/video/8gks3pe69hQ/v-deo.html
      then you can continue doing Microsoft Azure or Aws practitioner

  • @HH-tu3km
    @HH-tu3km Рік тому

    I have 8+ years experience in IT from help desk, IT specialist, IT Coordinator, Sr IT Systems Engineer (currently). I just graduated with Bachelor of Science in Cybersecurity and Information Assurance. Current certs are (ITIL, A+, Network+, Security+, Project+, CySA+, PenTest+, etc. Plus the ISC SSCP (Systems Security Certified Practitioner). I'm wondering if GRC would be the best route for me in Cybersecurity. I just finished school last month and all jobs in cybersecurity that I've applied for I haven't heard back. It's rough to get in even with IT experience.

    • @UnixGuy
      @UnixGuy  Рік тому +1

      yes it is tough because none of your certs are GRC related and your experience doesn’t reflect anything cyber, fry your best to do more cyber work (check my latest video) and do GRC certs recommended in this video

  • @annahadzovic2259
    @annahadzovic2259 2 роки тому +8

    Hi! I'm currently in healthcare and would like to transition to GRC. What courses/certs would you recommend for someone who is starting from scratch? Especially if I want to go into GRC related to healthcare? I figure I'd have a better chance of eventually landing a job that way. Any advice would be greatly appreciated!

    • @UnixGuy
      @UnixGuy  2 роки тому +3

      Hi Anna, your healthcare background will be very handy! Honestly, I’d start by having conversations with your security team and ask them if they have shadowing opportunities or if you can help them in anyway!
      A good beginner friendly start is compTIA Security+, or even a university course thats local to you. This video explains the process:
      ua-cam.com/video/GPmVphOqSGY/v-deo.html
      (only difference for you is that you have a leg up being in healthcare already so use
      that to your advantage)

    • @annahadzovic2259
      @annahadzovic2259 2 роки тому +1

      @@UnixGuy I just started the Google IT Support Professional Cert just to get an understanding of the basics. And then I was planning on doing the compTia Sec+ and Net+. I also saw a lot of job listings requiring NIST for GRC roles so I'll look into that as well. And I definitely be contacting my companies IT/Security team to see if I can take advantage of any opportunities. Thank you for the reply!

    • @UnixGuy
      @UnixGuy  2 роки тому +1

      @@annahadzovic2259 yep those are good certs. NIST is a framework that we use so it’s not a certification per se. Once you do all those certs, consider revisiting this video and do the more advanced certs that I mentioned here :) good luck

    • @hardikgosar2908
      @hardikgosar2908 Рік тому +1

      @anna hadzovic - That's a good start and you can also look at HIPAA compliance standard since you are interested in GRC related to healthcare

    • @UnixGuy
      @UnixGuy  Рік тому +2

      @@hardikgosar2908 yes HIPAA is specific to the health care sector in the United States

  • @minhoochina7766
    @minhoochina7766 2 роки тому

    As you're cybersecurity professional I hope you prefer to us the best cybersecurity laptops witch it's: -
    1- bearing hard working 💪
    2-bettry life meaby 10 hours breey a day.
    3- bearing overheating in country's temperature 49 C .
    4- powerful : stay with me for 3 years at least .
    5- srong hardware.

    • @UnixGuy
      @UnixGuy  2 роки тому

      Lenovo and mac books are fine

  • @azukaabrahamnduka5242
    @azukaabrahamnduka5242 Рік тому

    Interesting facts

  • @ignition07
    @ignition07 4 місяці тому

    How impactful or different is it to get CISA, CISM, or CRISC from some other company than ISACA?

    • @UnixGuy
      @UnixGuy  4 місяці тому

      this is an older video, I dont recommend those anymore. Follow this:
      ua-cam.com/video/C6IgksBpMF4/v-deo.html

  • @aaiiddaann
    @aaiiddaann 2 роки тому +3

    Hi UnixGuy, I wanted your advice. I'm trying to break into GRC and have no technical experience/a degree. I realise it's going to be difficult, but I've decided to aim for some certifications and possibly go back to school (online) in a few years as I continue building up my expertise.
    My question is, do you think getting a Sec+, AWS Cloud Prac, and AZ-900 would be enough? I considered adding CCNA and Net+ to the list as well, but I'm not sure how practical it would be to get networking certs when working in GRC.
    I would have loved to go for the ISACA certs, but that 5 years of experience requirement is unfortunate.

    • @UnixGuy
      @UnixGuy  2 роки тому

      Hey Aidan, you are right it is going to be difficult but not impossible. What work experience do you have? that will be the most important thing, if you have transferrable skills that would be help a lot.
      I’d why not stat the online degree right away? why wait?
      Your plan is solid, I’d ditch the net+/ccna and try and get security cert. or even more cloud certs, you need to build your security knowledge and experience, so aim to get any IT work to have something under your built

  • @francesd919
    @francesd919 Рік тому

    Hi UnixGuy. Does the Certification and Accreditation process (C&A) fall under GRC?

    • @UnixGuy
      @UnixGuy  Рік тому +1

      never heard of them

  • @FaLkraydz
    @FaLkraydz 2 місяці тому

    If I only understand well about the frameworks but no experience, can I put on my resume that I worked under those frameworks although nobody at the company ever takes about those? Cuz any SOC team works under NIST for instance. Any credit union should be compliant with the PCI DSS right? Any hospital should be compliant with the HIPPA. So let’s say I work as a SOC analyst for a hospital, can I put on my resume I worked under HIPPA standard?

    • @UnixGuy
      @UnixGuy  2 місяці тому +1

      no that wont be considered experience because you wont actually be able to answer GRC questions about those frameworks
      Do GRC Mastery where you’ll get to do an actual project using NIST as a GRC professional (not a SOC analyst), you will learn that its a different skill. Watch this:
      ua-cam.com/video/C6IgksBpMF4/v-deo.htmlsi=XYyCf2f_MkfhtEX_

    • @FaLkraydz
      @FaLkraydz 2 місяці тому

      @@UnixGuy thank you

  • @Sonusuchhi
    @Sonusuchhi Рік тому

    Great content, I’m a grc technical consultant for a financial institute. For me even after working as a grc tech consultant for 3-4 years now still I’m lost sometimes and I lose my confidence and interest in grc
    Could you help me what kind trainings might help me boost my confidence for working in Europe

    • @UnixGuy
      @UnixGuy  Рік тому

      hi Sonali, ISACA certs are important but you may also benefit from soke technical knowledge found in this video/cert:
      ua-cam.com/video/6LIUhx95MCU/v-deo.html

  • @osasereblakes2458
    @osasereblakes2458 Рік тому

    For someone without any background in tech but interested in cybersecurity(grc mostly), what's the roadmap and certifications should I follow as a beginner?

    • @UnixGuy
      @UnixGuy  Рік тому +1

      start with this:
      ua-cam.com/video/6LIUhx95MCU/v-deo.html
      then do the rest of the certs mentioned in this video…

  • @mishy_mix
    @mishy_mix Рік тому

    For getting into GRC, would you recommend WGU's BS in IT Management business degree?

    • @UnixGuy
      @UnixGuy  Рік тому

      If you wanna do a WGU degree then I recommend a degree in cyber security. Also consider the google cyber cert as a start:
      ua-cam.com/video/6LIUhx95MCU/v-deo.html

  • @alan_creation7708
    @alan_creation7708 2 роки тому

    Sir,
    Can u explain the ultimate road map to be a cyber security engineer or cyber security expert.😊 and how about being an ethical hacker is worth todays

    • @UnixGuy
      @UnixGuy  2 роки тому

      Those are very broad questions. To be an expert you need specialisation and years of experience. Ethical hacking is worth it if you love and are passionate about it. Spend the next 6 months doing the certs in this video and you can find out: ua-cam.com/video/CePhURvdyqk/v-deo.html

  • @victobkp7088
    @victobkp7088 2 роки тому +2

    BCA in cybersecurity or Bsc Ethical hacking and cybersecurity,which one to do?

    • @UnixGuy
      @UnixGuy  2 роки тому

      I'm not familiar with the content of each course, those are just names. It depends on the university and the quality of the courses so I can't give a blanket answer unfortunately

    • @victobkp7088
      @victobkp7088 2 роки тому

      @@UnixGuy which is the course you have done?

    • @UnixGuy
      @UnixGuy  2 роки тому

      @@victobkp7088 neither because I didn’t go to the same university as you and I went to uni there was no cyber degrees! watch this: ua-cam.com/video/pXKv1TWU6ro/v-deo.html

  • @afnanbinabbas4867
    @afnanbinabbas4867 3 місяці тому

    the cat at the back understands the whole talk as well!

    • @UnixGuy
      @UnixGuy  3 місяці тому

      😂😂 this is an old video, here’s the updated version:
      ua-cam.com/video/C6IgksBpMF4/v-deo.htmlsi=7kTyV3YYHbBSQDAN

  • @Ganga6842
    @Ganga6842 2 роки тому

    Hi Friend,
    I have 4 +yrs of experience in RSA Archer in India.I have a Certification in RSA Archer. I recently moved to Sydney a month ago with 482 dependent visa. I am looking for a JOB into RSA Archer. I didn't find any jobs particularly for RSA Archer. What is the best way you can suggest. Can I get a job by doing GRC certifications with my RSA Archer experience or do I need to change my path. I am in great confusion to get job. Expecting your valuable suggestion.

    • @UnixGuy
      @UnixGuy  2 роки тому

      hey mate, there is demand for Archer in Sydney, you need a good CV and go on seek dot com dot au to look for jobs there. ISACA certifications are a good value add to your Archer skills :)

  • @mohammadsadiqbaba
    @mohammadsadiqbaba 9 місяців тому

    Hi sir, recently I got selected in to risk and compliance or information technology auditor job profile. I would like to know how is it different from cybersecurity GRC plz

    • @UnixGuy
      @UnixGuy  9 місяців тому

      watch this video and do the training to learn:
      ua-cam.com/video/C6IgksBpMF4/v-deo.html

  • @Herbs_healthy
    @Herbs_healthy Рік тому

    For the entry-level job in grc, it is possible to hire someone that knows nothing about it but he/ she has a passion for it?

    • @UnixGuy
      @UnixGuy  Рік тому

      its possible but very challenging, you’ll need to have some sort of knowledge or at least start working on some certifications or courses. Watch this video and follow the plan there:
      ua-cam.com/video/ug_ruisDUXc/v-deo.html

  • @jasonsmart3141
    @jasonsmart3141 Рік тому

    Can you do GRC work fully remote or do I have to go into the office every day??

    • @UnixGuy
      @UnixGuy  Рік тому

      u can work remote, it depends on the company

  • @ruel1072
    @ruel1072 Рік тому

    But...if you go US Federal govt/DoD, CISM, CISA, and CAP (CGRC) are fine. In fact, these are recognized by DoD mandate 8570.

    • @UnixGuy
      @UnixGuy  Рік тому +1

      yeah thats what I recommended in the video

  • @gouravgupta698
    @gouravgupta698 2 роки тому

    hi I am in GRC/ in infosec cybersecurity in hcl india Noida sec 126
    I want to what's the package I can expect after 1 year of experience
    And how much I can earn in this domain ....please telll

    • @UnixGuy
      @UnixGuy  2 роки тому

      Hi,
      I’m not familiar with salaries in India. Best to google or check websites like glassdoor

  • @d.w.4319
    @d.w.4319 Рік тому

    I'm a loyal subscriber. I needed some general advice.
    Below is a list of certs I'm granted as an university alumni of cyber. Out of the ones listed, is what I have to choose from (5 total to pick). Out of those, which do you think would be most beneficial for the field of cyber GRC? Top 5
    CLF-C01 AWS Certified Cloud Practitioner
    CLO-002 Cloud Essentials+
    CCNA 200-301 Implementing and Administering Cisco Solution
    CEH 312-50 Certified Ethical Hacker
    AI for Anomaly Detection
    AI for Predictive Maintenance
    AI on the Jetson Nano
    Fundamentals of Deep Learning
    Certified Associate in Python Programmer
    Certified Entry-Level in Python Programmer
    VMware Certified Technical Associate - Data Center Virtualization 2021

    • @UnixGuy
      @UnixGuy  Рік тому +1

      hey mate! none of those are specific to GRC unfortunately! If I had ton pick, I’ll pick the AWS

    • @d.w.4319
      @d.w.4319 Рік тому +1

      @@UnixGuy great thx for the input

  • @christophersantiago6011
    @christophersantiago6011 Рік тому +11

    You're not going to introduce the cat meowing in the background?

    • @UnixGuy
      @UnixGuy  Рік тому +5

      Haha in hindsight I should’ve 🙈

  • @asifali78622
    @asifali78622 Рік тому +1

    I am currently working as Team Lead Network & Security +12years of experience. I currently passed CC and CISSP. My question is if I start move to GRC career then will I paid to be high salary or same as my current salary based in my past experiences. I don’t have any experience of GRC currently but I know more technical stuff. Thanks

    • @UnixGuy
      @UnixGuy  Рік тому

      It depends on many factors, but with your experience you may be able to land a senior GRC role. Again it depends on your security knowledge and how well you can sell your skills to an employer. You can potentially be paid more

    • @asifali78622
      @asifali78622 Рік тому +1

      @@UnixGuy Thanks for your advice. I am following your videos and gaining more insights.

    • @UnixGuy
      @UnixGuy  Рік тому

      @@asifali78622 no worries at all! this is an updated video about GRC btw:
      ua-cam.com/video/s9LDWLfFOp8/v-deo.html