SciaticNerd

BSidesLV AV Staff. Former BSidesSATX coord. IdAM. Podcaster w/@SEndeavors. #badgelife enthusiast; friend to Hak4Kidz, 0xAHHC, and more. Voiceovers; Photography; he/him.

SciaticNerd boosted:
Lesley Carhart :unverified:hacks4pancakes@infosec.exchange
2025-05-28

FTTP BABY PANCAKESCON IS ON

2025-05-22

@xabean I changed to Italian seasoned turkey and used a vodka sauce

2025-05-22

@xabean Sorry for the delay! Here’s what I based it on. instagram.com/reel/DJr7lIPy2BC

2025-05-18

Sheetpan meal based on a recipe from cookwithbrooke!!

2025-05-08

@gsuberland I’m lichen this reply!

2025-05-08

“Must be Thursday. Never could get the hang of Thursdays.”

2025-05-07

Stay vigilant against those looking to take advantage. Rachel Tobac shares some good details of what to look out for.
youtu.be/2OSHazgQYSQ?si=D3UAtu

2025-05-06

@hacks4pancakes Yaay for jam jams!

SciaticNerd boosted:
2025-04-12

@Doomed_Daniel The two kinds of soup noodles:

A box labled Username (with alphabet soup) and one labled (Password) with stars.
SciaticNerd boosted:
2025-03-31

We're happy to announce that our CFP is now live and will be accepting talks until April 27 at midnight! Why waste any time and go ahead and submit? Check out www.bsidessatx.com or www.cfp2.bsidessatx.com for more information!

BSidesSATX CFP is open until 4/27! Submit today through www.bsidessatx.com or www.cfp2.bsidessatx.com!
2025-03-15

@hacks4pancakes what the what??! Guess your reputation precedes you? Go get ‘em??

SciaticNerd boosted:
2025-03-08

Hey Fedi friends! Given the uncertainty around the future of the US federal government's ability to provide accurate, timely, and impartial cyber threat intelligence, a bunch of us have started talking about strategies to build/expand some of these capabilities independent of the government. Very early days—shaping the problem, discussing options, etc. But if you'd be interested in the conversation and willing to help organizations build CTI capability, please DM me.

SciaticNerd boosted:
2025-03-08

The US gov have cut funding for EI-ISAC (Elections Infrastructure Information Sharing & Analysis Center), the way cybersecurity support was provided for elections. Ht @kimzetter

Their website just says:

SciaticNerd boosted:
2025-03-08

#getfedihired #job #remotework #aws #cybersecurity :boostRequest:
I still have an open FTE position, 100% remote in the USA for a Security Quality Engineer position. Medical/dental/$1500 per year in continuing education, and $1k/year charitable matching for qualified nonprofits. We also continue to support DEI, and are 43% women. And I've got an extremely diverse team (with furs and trans furs on it). The company is based in California, and has an office in Austin, TX.

It's a SaaS product that's in AWS, so familiarity with AWS security, log aggregation tools, etc. are desirable.

Please Boost. DM me for details and a discussion - I can provide a link that will bypass filtering and get a Recruiter to reach out to you.

-----
Tasks:
Security Testing, Validation, and Red Team Involvement
Conduct comprehensive security assessments and validate the remediation of issues identified by the Security Engineer, ensuring thorough testing of vulnerabilities and security controls, including Intrusion Detection Systems (IDS).

Participate in red team activities to proactively identify security gaps, contributing insights to improve overall security measures and response capabilities.

Authors and audits test cases in Test Rail across product feature teams for relevant security coverage.
Works closely with SDET team to automate security-specific tests for inclusion in CI/CD pipeline where appropriate.

Audit and Compliance Support
Audit and refine test cases in TestRail, ensuring that security considerations are consistently applied and validated against compliance frameworks (ie, SOC 2, PCI-DSS).

Collaborate with the Platform Engineering/SRE team to ensure that security testing aligns with operational practices and compliance requirements.
Training and Security Best Practices for the QE Team

Develop, deliver, and maintain training documentation and presentations to educate the QE team on secure testing methodologies, promoting the integration of security practices into testing workflows.
Mentor QE team members to foster a security-focused culture, enhancing awareness of secure coding and testing principles.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst