r/Cybersecurity101 5h ago

Am I being underpaid? (Canada)

0 Upvotes

Not feeling adequately paid

Hi all. I currently work for an MSP as a Tier 1 Security Analyst. I have a graduate certificate from a college in Cybersecurity Analytics, I have SC-900, Security+, as well as the ThreatLocker CyberHero (which my company requires), as well as the Google Process Cybersecurity Certificate. I currently lead the charge on many things such as assisting our clients in SOC 2 compliance and cyber insurance alignment, policy creation, etc. That being said... I currently am only being paid $24/hr. I have been working here for over 1 year, this is my first Cybersecurity job. Am I being underpaid?


r/Cybersecurity101 10h ago

Privacy Guys Is soft98.ir safe

1 Upvotes

I was thinking of doing edition stuff bit im broke on money.


r/Cybersecurity101 12h ago

Which is the best cyber security course

7 Upvotes

Hi, i graduated 2 years ago and i have worked for 1 year and 6 month in corporate in two diff roles i am trying to entre into cyber security as its a growing field and has demand is is going to be relevant and remain too, wondering what is the best platform and which course is good, course should be hands on and have projects + a certificate as this will add value in my cv.

I have been checking courses on udemy, simpliearn, and coursera for the past 2 week and reading blogs, watcing content checkin professional experiences along with education of people in the field on linkedn


r/Cybersecurity101 15h ago

High School Dropout, Serious About Cybersecurity & Ethical Hacking – Need Guidance from Experienced People

6 Upvotes

Hey everyone,

I dropped out of high school a few years ago, but I've had a strong interest in cybersecurity and ethical hacking for a long time. At that time, I couldn't pursue it because I didn't have the hardware or resources. Now I finally have a decent setup and want to learn cybersecurity seriously.

I'm requesting experienced people in this community to spare a few minutes and guide me. I don't just want a generic roadmap—I want to understand how professionals actually learn and build their skills.

A little about me:

• I know Python.

• I've done some data analysis work.

• Other than that, I'm starting from scratch in cybersecurity.

Here are the things I'd really appreciate your guidance on:

  1. Roadmap

If you were starting from zero today, what roadmap would you follow? What topics should I learn, and in what order?

  1. Learning Resources

This is where I'm most confused.

YouTube has a lot of content, but:

• Many creators don't go deep enough.

• Some information is outdated.

• Due to YouTube's policies, creators can't always demonstrate or explain real-world techniques.

• There are also many fake "cybersecurity" channels.

One channel I genuinely enjoyed is Null Byte, but I'd love more recommendations.

What resources do professionals actually use?

I'm looking for:

• Books (beginner → advanced)

• PDFs (I already have a large collection)

• Websites

• Blogs

• Official documentation

• GitHub repositories

• Labs

• Discord servers

• Forums

• Newsletters

• YouTube channels that are actually worth following

  1. Communities

What communities do you follow to stay updated? Reddit, Discord, forums, blogs, or anywhere else?

  1. Hands-on Practice

Where should I practice legally? Which labs, CTFs, or platforms would you recommend for beginners?

  1. Home Lab & Hardware

What kind of hardware or home lab should I build? What tools and setups do professionals use while learning?

  1. Career Advice

What are the biggest mistakes beginners make? If you could restart your cybersecurity journey today, what would you do differently?

Lastly, does anyone know of any legitimate way to get the latest EC-Council certifications (such as CEH) for free or at a significant discount through scholarships, student programs, or community initiatives?

If you have any roadmap, resource dump, GitHub repositories, book lists, websites, or personal advice, I'd really appreciate it. I'm ready to put in the effort—I just want to learn the right way.


r/Cybersecurity101 21h ago

Security+ or CCNA first? I built a free tool that gives you an actual answer

2 Upvotes

Tired of hearing “it depends,” so I built a free tool that gives you an actual recommendation based on your experience and career goals.

No account, email, or credit-card ambush:

https://itcertfoundry.com/resources/security-plus-vs-ccna

ITCertFoundry also has free study plans, labs, cheat sheets, and command guides—with more being added almost daily.

Full disclosure: I built it. Feedback is welcome.


r/Cybersecurity101 6h ago

Need Advice for cybersecurity career switch

4 Upvotes

So a little context about me I'm a web developer with 3 years of experience but I've never felt like it was my thing but I kept doing it because I had to pay college fees and all but with the AI and all i don't want to do it anymore so i want to switch into cyber security it has always interested me but I never had the money to actually commit to it so now my plan is I'll keep my job and learn side by side and save money for the certificate courses. I want a career thats safe from AI and can earn decent money. I cant quit my job because I need the money for my family so is this the right call? also any suggessions for how I should start as I'm complete begineer at this


r/Cybersecurity101 12h ago

Any newbies want to learn together

21 Upvotes

Hey everyone, used to work in cyber security as a penetration tester mainly for websites. Quit the job years ago but now I'm itching to get back and do this as a hobby. Need to refresh and relearn some stuff but starting with Linux then networks and some HTB stuff. Wondered if anyone else was up for learning together, or if there are any small groups of beginners. I'm UK based and an adult.

I've had quite a few people interested so rather than replying to each one with my discord, it's vxprpl so just add me.


r/Cybersecurity101 15h ago

Security How to handle vuln backlog? remediation timelines are getting worse...

2 Upvotes

Our CISO said: every unpatched vulnerability sitting in your backlog is a known issue in a system that adversaries are scanning. The longer it sits more likely they find it before you fix it. A backlog is not a queue, it is a liability inventory with a countdown. The remediation timeline data makes it worse. Attackers are moving from disclosure to active exploitation. One can't close that gap by moving faster or tightening deadlines. Ai generated code is making this worse by expanding backlogs faster than any human led process can address. We are behind because the volume of code coming in has changed. How do teams tackle this not just prioritisation but how you stay anywhere close to the speed?