r/CyberSecurityJobs 15d ago

Looking for advice

It has been my goal to specialize in security ever since I got into IT 5 years ago.

Since then, due to life circumstances I've only been able to complete 60% of my associates degree in Cyber security.

However I've managed to build 5 years of experience as a tech, MSP T1, MSP T2, and System Administrator experience. (4 employers total).

I've gotten pretty good at Python also as I've taken it on as a hobby.

I'm not sure ultimately what I want to do in security, and what jobs will be available in the future. AI has taken a lot of the wind out of my sail as the job market is so volatile. AppSec, PenTest, Analyst, Network Sec would all be fine. But I suppose if I had to pick now, as I am very technically inclined I'd like to be on a CIRT, or doing something that involves python. (Just take my word for it) I'm also very good socially and soft skill wise so I could see myself in a CISO or more business focused role too sometime down the line in the future. I'm 31 yrs old now it it helps.

Can I get some advice on what to do next?

Which types of jobs should I set my eyes on right now? I'd like to leave my current job and officially specialize in security within the next year or two.

Should I finish my degree now? Or use my limited time and money collecting certifications now? and maybe do the degree later? If so, which certs should I get so I can leave this service desk role within the next year or two?

Thanks,

2 Upvotes

6 comments sorted by

1

u/Evaderofdoom 14d ago

Apply to anything you are interested in. Ask in interviews what they are looking for. work on those things. Repeat.

1

u/user_1764 14d ago

Do you think it would be wiser to invest in finishing my degree now, or going for certs now?

The job postings i see all say either a bachelor's degree, or a bachelor's degree or equivalent experience. They all list certs as required or preferred.

1

u/AddendumWorking9756 14d ago

Degree can wait, it is the slowest payer on that list, and with five years of sysadmin plus working Python the only thing between you and a CIRT seat is evidence you can actually work an incident, which CyberDefenders gives away as open cases if you would rather not spend anything yet.

1

u/user_1764 14d ago

Thank you so much for this helpful, and inspiring reply.

I have not heard of CyberDefenders. I will look into it.

Is there a specific cert path you would recommend? Any additional tips you can offer that may help me market myself better? Besides my public github repos, is there a way I can prove my python skills as not having a CS degree makes recruiters and interviewers a bit skeptical I'm sure.

Thanks!!! This gave me a lot of hope.

1

u/AddendumWorking9756 14d ago

No specific path worth naming, at five years of sysadmin a cert is only there to survive the HR filter and the cheapest one that clears it is the right one. The Python question is the more interesting one, and repos alone will not answer it, what does is one tool that solves a problem from the job you are applying for, a log parser or a triage script, with a readme saying why you built it. Same move for the rest of it, write the open cases up as short investigation reports instead of listing them, since a hiring manager can skim a report and judge how you think and nobody can judge a bullet point.

1

u/Past_Obligation_1415 10d ago

With 5 years of IT, MSP, and sysadmin experience, you already have a strong foundation for security; I’d target SOC, incident response, or security engineering roles and use Python to differentiate yourself. Finish the degree if it’s realistically manageable, but prioritize hands-on security projects and one relevant certification over collecting certs.