The HIDDEN Cybersecurity Career - GRC in Cybersecurity

Поділитися
Вставка
  • Опубліковано 29 вер 2024

КОМЕНТАРІ • 117

  • @CyberCuzzi
    @CyberCuzzi Рік тому +4

    Really glad I found your content, I’m currently half way thru my associates degree in cyber and I’ve hit the wall of “not knowing the path” I would like to take. Your videos are a great help

  • @rsaug
    @rsaug Рік тому +17

    This is my job - CyberSec GRC, specifically focussed on Governance & Compliance pieces. This is a good video.

    • @mikem6796
      @mikem6796 7 місяців тому

      Do you like it? What skills did you have to get this job? Thanks

  • @bertmeza8673
    @bertmeza8673 Рік тому +1

    I am writing this prior to finishing the video, but this seems right up the alley of disaster recovery within the field of cyber. great so far!

    • @nicoleenesse
      @nicoleenesse  Рік тому

      Yeap, that is one part of a very LARGE field

  • @nc_fr87
    @nc_fr87 Рік тому +1

    hi! i started a freelance gig in GRC focusing on iso27001 compliance i'm doing fine (based in france) :)

  • @cadavivo
    @cadavivo 5 місяців тому

    Could you recommend portfolio projects, please?

  • @IlllIlllIlllIlll
    @IlllIlllIlllIlll 5 місяців тому

    What are some similar titles to this because I don't see it as often

  • @adilabdu18
    @adilabdu18 Рік тому

    I need your advice Nicole. i have a Diploma in Computer System Technician, and i want to become Security Auditor. please guide me how and where to learn only security auditor as a couurse . thanks

  • @LTisback
    @LTisback Рік тому +1

    Hey, I’m taking Gerald Auger master class but am still wondering if I need sec + to land a job? Also, if I studied the Nist frameworks you mentioned would I actually be able to implement on the job? I can’t seem to find anything lab related

    • @ruel1072
      @ruel1072 Рік тому

      For just about any GRC job, you should have basics certs like Sec+. Having Sec+ will help you work with technical SMEs so that you're not lost in the dark when some technical terms come across the papers you're reading or through conversation with them (e.g., meetings). In addition to Sec+, get a GRC cert such as CISM, CISSP, CAP, etc. CAP for example is 90% RMF which is perfect if you have knowledge of NIST pubs.

  • @Ankudamurderer
    @Ankudamurderer Рік тому

    Hiya! Really liked the video, it seems the resume template is kind of borken though. I put in my name and email and it brings me to a 404 page.

  • @germainkone9029
    @germainkone9029 4 місяці тому

    Nice one. !

  • @mikel6787
    @mikel6787 Рік тому +30

    In your professional opinion. Is it crazy for a 51yr old man that worked 26+yrs in many hospitals (the operating rooms) with no IT degree. To start a career change out of healthcare and into Cybersecurity?? I would like to somehow tie all my knowledge and exposure to HIPPA and patient information protection, to what Cybersecurity has to offer. Basically still work for or within healthcare doing cybersecurity stuff.

    • @nicoleenesse
      @nicoleenesse  Рік тому +25

      That isn't crazy, it also shouldn't be that difficult. You have tons of information on HIPPA and medical field and that is gold. Check out Gerald Auger channel for getting into GRC.

    • @gbr1ryder
      @gbr1ryder Рік тому +11

      Mike, I’m in somewhat of the same boat as you. 45 and considering the change. I have signed up for a boot camp at UW Madison. I know she made a video about degrees/boot camps but I like the structure and learn better in that environment. If you want to bounce ideas off me or chat about it feel free to reach out. I know we can do this!

    • @nanapoku5259
      @nanapoku5259 Рік тому

      @@gbr1ryder Are you currently working in healthcare looking to transition into GRC?

    • @nanapoku5259
      @nanapoku5259 Рік тому

      @@nicoleenesse I didn't see the free "How to land a job in cybersecurity" in the description box. Can you link it up please?

    • @christenw.1726
      @christenw.1726 Рік тому +4

      @@nicoleenesse Yes Dr. Auger is awesome!!

  • @ShaneHummus
    @ShaneHummus Рік тому +3

    Awesome, Nicole! Keep the uploads coming.

  • @0206-b8z
    @0206-b8z 7 місяців тому +1

    Can i still get a job in cybersecurity without a bachelors thanks

  • @Its_chakecia
    @Its_chakecia Рік тому +6

    Your videos helped me decide to go back to school and hopefully get into GRC. Thank you!

  • @CHRIS198490
    @CHRIS198490 5 місяців тому

    These salaries are garbage rubbish untrue max 100-150k top level which only a few will reach if that would be easy to get 400k job everyone would be doing it

  • @jacksonxbaj
    @jacksonxbaj Рік тому +2

    Hi - I apologize for going off topic but someone recommended your channel to me & I wanted to post this question to your latest video to increase my odds of getting a response. I'm older and looking to change career paths. I have a mostly blue collar work background and also a few years of experience in the B2C sales industry. I want to secure a remote help desk position in IT and I'm looking for advice/guidance on what would be the quickest & most realistic route to achieve this goal. I do have a decent amount of informal/personal hands on experience with working on and with computers and electronics but by no means am I an expert - nor do I have any official technical training in the IT field. Any guidance you could provide would be greatly appreciated. Thank you :)

  • @DanaHenderson-l2e
    @DanaHenderson-l2e 8 днів тому

    Lee Mark Thompson Karen Garcia Eric

  • @J_The_Prince
    @J_The_Prince Рік тому +2

    Hi Nicole, great video!! Any help on where I can find the GRC frameworks for industries such as Financial Services and Insurance/Reinsurance?

  • @mugentuner
    @mugentuner Рік тому +4

    Enjoyed the vid. This was a nice talk through on GRC job niches. I've been through some coursework as well as some experience on this and it could make a nice career.

    • @nicoleenesse
      @nicoleenesse  Рік тому

      Thank for sharing. It's deff and underated career pathway

  • @animedude1957
    @animedude1957 Рік тому +1

    Hi Nicole
    So far I been doing the modules or try hack me to learn the cybersecurity concepts and things to that nature
    I need help, I wanted to see what I need to do to get a cybersecurity job in the healthcare field. I already work in the healthcare field and have a Masters in Healthcare Administration. Is there like a certification I specifically need for that or are there courses I can take to learn so I can get my foot in the door. THanks!

  • @davestevens4193
    @davestevens4193 Рік тому +1

    CISA requires 5 years of experience

  • @sardissozo3399
    @sardissozo3399 6 місяців тому

    It is actually *HIPAA.. Otherwise, a really fantastic video. I'm hoping to get into GRC.

    • @sardissozo3399
      @sardissozo3399 6 місяців тому

      Everyone outside of healthcare, and even a good percentage in healthcare, gets this wrong... So definitely don't feel bad.

  • @JenniferSheffield-o7s
    @JenniferSheffield-o7s Рік тому +1

    I am in law enforcement (adult probation officer) and am interesting in digital forensics. Recently enrolled in Cybersecurity classes to obtain certification at technical college. Are there additional steps that would be helpful?

  • @rollediaz1536
    @rollediaz1536 Рік тому +1

    I watch some of your video's and I love them my thing is that I don't know where to start. I'm 52 and so done with Auto Insurance claims. I'm remote which is nice but I work some times 10 to 12 hrs a day to keep up and not to mention weekends.
    I truly need to start a new profession and need to make a change. Two issues I have is 1 guidance and 2 faith. Hahahaha
    Asking for help to go in the right direction..

  • @aidensketches2144
    @aidensketches2144 Рік тому +1

    Can I message you somehow? I have questions in regards to school. I was about to sign up for IT at SJVC but they told me I’d have to get all certificates on my own … I can just learn the stuff for free right ? I feel like school would be a waste of money ??

  • @nicoleenesse
    @nicoleenesse  11 місяців тому

    Want to cut through the Bullsh*t and learn the serious skills for cyber? Click the link to apply and work with me upskilltocyber.com

  • @Sassysaash
    @Sassysaash 5 місяців тому

    Hey! Is GRC an entry-level role?

  • @darylnd
    @darylnd 3 місяці тому

    It took less than three minutes to to realize she doesn't really know what she's talking about. She's clearly struggling to read the slides she includes. She talks about protecting the "confidentiality, integrity, and availability of your business _[sic]_ " when it's the _data_ that is being protected. She talks about the importance of knowing "HIPPA," _[sic]_ apparently not knowing that the acronym for the Health Insurance Portability & Accountability Act is "HIPAA."
    Of course, she has a course.

    • @nicoleenesse
      @nicoleenesse  3 місяці тому

      UMMMM Have you created a video? Please do before criticizing. I have over 10 years of experience in cybersecurity & IT. Also, I have dyslexia, so thanks for being a jerk and pointing out how I mispelled something.

    • @darylnd
      @darylnd 3 місяці тому

      @@nicoleenesse -1 point for "Have you created a video?" I'm responsible for errors in _my_ videos. I'm not responsible for errors in _your_ videos.
      -1 point for playing the victim card. I'm not responsible for your dyslexia, either. If that makes me a "jerk," I accept the opprobrium.

  • @meh6722
    @meh6722 Рік тому +1

    Subbed. Thanks for the talk and the info.

  • @WongMbambong101
    @WongMbambong101 5 місяців тому

    Info for courses please

  • @thaerenglish84
    @thaerenglish84 Рік тому

    Hello hello
    Can a person learn cybersecurity from scratch with no prior experience in programming?? If yes what is the study plan ?? Please 🙏

  • @amitharajan1497
    @amitharajan1497 Рік тому

    I want become GRC for educational institution, what all skills and requirements do i need?? I love watching your vedio.. please give me suggestion

  • @marklampo8164
    @marklampo8164 Рік тому

    Are ye Scottish? It would be so in keeping with the concept of the School of Art de Enesse! The name "Enesse" practically rhymes with "Claymore!" Robert The Bruce and The Black Douglas!

  • @kimbess7498
    @kimbess7498 7 місяців тому

    Thank you for doing a fairly detailed job of explaining GRC. This is helpful.

  • @toonnaobi-okoye2949
    @toonnaobi-okoye2949 Рік тому

    Where does cybersecurity awareness, training and culture roles fall under? Not under GRC?

  • @deefowler8412
    @deefowler8412 Рік тому

    I’m new to IT and I want to get into cybersecurity. Should I start with the google IT support certificate and then take the CompTia security+.

  • @1234Cjackson
    @1234Cjackson Рік тому

    Federal government Security Officer, wanting to change careers into GRU role what would be a good field to go into?

  • @joshuatoe2323
    @joshuatoe2323 Рік тому

    Hi Nicole! Great vid. I came across your channel while doing some research on GRC. I was looking to enroll in Boyd Clewis’s Baxter a Lewis program. Any thoughts on it? It seems the area your discussing is his specialty.

  • @thompsonappliance3078
    @thompsonappliance3078 11 місяців тому

    I tried to sign up to your training but no one reached out

  • @UpgradingJeff
    @UpgradingJeff Рік тому

    @nicoleenesse Just a heads up I see that there is no link to Geralds course.

  • @Brilliantick99
    @Brilliantick99 Рік тому +1

    Awesome advice

  • @BudLightBeerOfStarCommand
    @BudLightBeerOfStarCommand Рік тому

    Would it be possible for a technical writer to break into GRC? I write highly technical documentation and use information from subject matter experts and communicate with departments on a regular basis. My job is to make sure documentation is accurate and fits the needs of users. The attention to detail at my job is crucial so product reputatiton and user experience remains positive. Would these kind of skills work well to get into GRC?

    • @nicoleenesse
      @nicoleenesse  Рік тому

      Yes, those skills would be good and very transferable!

  • @alexmalooley7037
    @alexmalooley7037 4 місяці тому

    What about the CCSK?

  • @babylonking9896
    @babylonking9896 Рік тому +1

    Your videos are so encouraging and full of good info and advice. I am trying to transition from IAM/PAM (Identity Access Management/Privileged Access Management) into something along the line of IT Risk Management & Compliance, Governance but having a great difficulty before I don't have any direct experience in this field. I checked those certifications from ISACA, and everyone of them requires x number of years of experience before you sit for the exam. None of those certifications are considered an entry level. I have over 10 years’ experience as an information technology professional, currently doing IAM/PAM, I am certified Security +, and Microsoft MCP, would like to transition. Please help. Thank you in advance.

    • @GabrielleSWalker
      @GabrielleSWalker Рік тому +1

      Hey! If you don't mind me asking, what's making you want to transition from IAM? I just found out about this position and thought it sounded pretty interesting

    • @babylonking9896
      @babylonking9896 Рік тому +1

      ​@@GabrielleSWalker Hello. I am looking to transition from Identity Access Management into GRC field because for the past few years, most of my IAM work has been on a contract basis, and I am finding myself doing contract after contact and always looking where my jobs will be.. IAM/PAM is of the easiest Technologies that companies can outsource to third party managed service providers and that is what happened to one of my previous IAM position that I lost. There seems to be more demand for GRC professionals, and what I am facing now is lack of experience in this field just like many other IT technology fields, experience plays an important role and is heavily valued. All of ISACA certifications require years of experience before you write the exam. Any idea, suggestions or advice how to get into the GRC field is greatly appreciated.

    • @ichkommentiernurkommentare7237
      @ichkommentiernurkommentare7237 Рік тому

      ​@@babylonking9896 With your background, you should easily be able to get a job as an external Access Management Consultant or an IT-Auditor.
      After 1-2 years in one of those jobs, it's quite easy to get a job as an internal auditor, compliance engineer, security analyst, etc.
      CISA/CISM/CRISR etc are not really required for these jobs, but can certainly help.
      However since you already have somewhat relevant experience, you might be able to get one of these certs within the 1-2 years of being an external auditor/consultant.
      Good luck!

    • @briann5524
      @briann5524 Рік тому +1

      " I checked those certifications from ISACA, and everyone of them requires x number of years of experience before you sit for the exam."
      Not true. You can still take the exam but you won't get certified unless you have the required experience. They will give you some years after passing the exam to then accumulate the required experience and be certified later.

  • @williamb8313
    @williamb8313 Рік тому

    Hi Nicole, do you think cybersecurity bootcamps are a good way to get your foot in the door? I am a healthcare provider. Thank you.

  • @sunsetgray2631
    @sunsetgray2631 Рік тому

    I'm getting my degree in cybersecurity and planning on going towards GRC. I'd love to connect with you about my background and your opinion on a few important details. LMK if you have time.

    • @nicoleenesse
      @nicoleenesse  Рік тому

      I have a free group, where I have live Q&A . Feel free to join :) www.skool.com/startacybersecuritycareer

  • @MMABones
    @MMABones Рік тому

    Thank you for this nice video. I'm currently learning introduction to cyber security with SimpliLearn. Would like to know if SimpliLearn certifications are good enough to land an entry level job in cyber security.

    • @nicoleenesse
      @nicoleenesse  Рік тому

      I have never heard of them. It might depend on your country. In United States they are unknown

  • @brwnhilarybanks9953
    @brwnhilarybanks9953 Рік тому

    I took a grc course a year ago, it was hard to find work . I ended up putting it on hold for next year.

  • @Lifeistooshortbro
    @Lifeistooshortbro Рік тому

    This is definitely the role for me.Thank you Nicole..

  • @edwinvidal8356
    @edwinvidal8356 Рік тому +1

    Great Detailed Video

  • @memepasmal77
    @memepasmal77 Рік тому

    i like the content , we always get new thing to discover.

  • @tylercoppola6413
    @tylercoppola6413 Рік тому

    Hey, I’m looking to get a degree in cyber security. I have taken 1 year of community college. Would you recommend finishing community college then transferring to WGU or go straight to WGU?

    • @Its_chakecia
      @Its_chakecia Рік тому

      Lemme offer my unsolicited opinion. I'd say it depends on what's important to you. Saving money and going the community college route or fast tracking and going to WGU. Weight the pros and cons of each school and see which one best fits your lifestyle.

  • @azukaabrahamnduka5242
    @azukaabrahamnduka5242 6 місяців тому

    Keeping posting nice content

  • @lijoplalu9264
    @lijoplalu9264 Рік тому

    Is it better to work at a job firm or start a cyber security consultant firm?

  • @michaeladams819
    @michaeladams819 Рік тому

    Thanks Nicole as always another very helpful video!

  • @bdig3726
    @bdig3726 Рік тому +1

    Thank you for the information! I am looking to pivot careers entirely into the cyber security field, and GRC sounds fascinating. I currently hold an BS in Business management as well as an MBA. I recently completed Sec+. I currently work in a Financial Aid Office at a university, working on auditing financial aid account. With transferable auditing skills, what should my next steps be in landing a Security Auditor or GRC analyst position?

    • @nicoleenesse
      @nicoleenesse  Рік тому

      It is a great career to get in with a LOT of opportunities. It's the backbone of cybersecurity, and not hyped up

  • @ideearchie7435
    @ideearchie7435 Рік тому

    This is a good info

  • @tripp357
    @tripp357 Рік тому

    can this be and entry level job

    • @nicknico4121
      @nicknico4121 Рік тому +1

      cybersecurity is not for beginners. If I were you, I would do the google course on IT, and then the google course on cybersecurity. And then focus on the GRC.

  • @jatko2009
    @jatko2009 Рік тому

    I admire this lady!

  • @davidpascual4408
    @davidpascual4408 Рік тому +1

    1st

  • @stormchaser419
    @stormchaser419 Рік тому

    Hello Nicole, as somebody who is wanting to get into cybersecurity from another career and I don't have a bachelors in Information technology but I do have one in business administration. If I get a masters from WGU in cybersecurity, is that sufficient for those wanting a college degree or do they also look for a bachelors degree in IT or cyber? I don't want to get both a bachelors and masters when I can get just a masters. As always love your channel.

    • @nicoleenesse
      @nicoleenesse  Рік тому

      Yes, a master's degree will be good, and also a lot quicker. You don't need to get a bachelors degree.

    • @stormchaser419
      @stormchaser419 Рік тому

      @@nicoleenesse Ok thanks!

  • @yourtake3004
    @yourtake3004 Рік тому

    Thanks Nicole!!! 😊😊😊

  • @Samsons121
    @Samsons121 Рік тому

    Nice intro to GRC 👽🤙

  • @bigbrotherinlife1654
    @bigbrotherinlife1654 Рік тому

    Great video

  • @jdabo
    @jdabo Рік тому

    Thank you.

  • @umissout1
    @umissout1 Рік тому +1

    I see your video but i just cant make my mind up where to start? I like cloud so far ! Any ideas? To motivate me even more.

    • @nicoleenesse
      @nicoleenesse  Рік тому

      Well Cloud is VERY broad... There is GRC specifically that applies to cloud. INE training also has a lot of good courses to test out various niches in cyber

  • @danielseo20
    @danielseo20 Рік тому

    Thanks, Nicole for your videos. I have a question. Is that worth getting both GSEC and Security+ cert?

    • @nicoleenesse
      @nicoleenesse  Рік тому +1

      No, they are essentially the same thing. CompTIA security+ is the best value

  • @miquelmanaois
    @miquelmanaois Рік тому

    Hi Nicole! Thanks for the video, is security auditor the same thing as IT auditor? I see IT auditor in a lot of job descriptions

    • @TheSpinWorld
      @TheSpinWorld Рік тому

      They could be interchangeable job titles depending on the company and responsibilities. I worked in GRC/Audit/Risk for a year and I found it extremely boring. I would only go for it if you want a less technical job and more people oriented. Most big 4 firms will hire new graduates in audit and salary is great with experience.

  • @gregoriozucchi45
    @gregoriozucchi45 Рік тому

    Hi, I checked this video out as I am interested in moving into GRC.
    I work in Cyber Sec (as do you I understand) and would like to offer my feedback:
    * The principles of Confidentiality, Integrity and Availability relate to the DATA hosted in a business,, not to the Business itself.
    * The Framework you refer to twice for the Healthcare industry, is actually HIPAA, not HIPPA. A few other important frameworks are ISO27001, PCI DSS for the Financial Services and GDPR (For EU).
    * I am not sure mentioning that CISOs are thrown under a bus is conducive to inform viewers about the role. A CISO role is a huge achievement at the end of a long and challenging career, made of serious study (not coursera), serious certification (Like ComPTIA) and a mixture of hands-on experience in both technical and administrative roles.