1 Followers
15 Following
48 Posts
🛠️ Former Sysadmin, now Pentester | Microsoft MVP | Helping IT teams make their environment harder to attack | @SecurIT360 & @CyberThreatPOV
My websiteHttps://spenceralessi.com
Twitter (X)Https://x.com/techspence
Cyber Threat Perspective PodcastHttps://offsec.blog

Learn Active Directory and you’ll never work another day in your life….

You’ll work every day 🤪😂

If you’re an IT admin and you want upward career progression and you have any length of time left in your career, beginning to poke at these AI platforms and becoming comfortable with them is crucial.

Not to be an expert but so you know what’s coming.

Pentesting findings don’t get fixed for a number of reasons. Some of which are out of the IT teams control.

But also, many many IT teams are burnt out putting out so many other fires and working on other “more important” projects handed down to them by management that they don’t have time to fix security issues.

The infosec/cybersecurity space is funny because on social media, AI is taking over the world.

Then I go to conferences and meet people who are primarily defenders and talk to clients daily and they haven’t heard of OpenClaw, which is probably the biggest phenomenon since OpenAI launched ChatGPT.

Social media is amazing and yes there is a certain pulse on culture and humanity that shows up first here, but not, it’s still very much a huge bubble.

The unhealthy desire to “go viral” hurts social media more than AI ever will.
I’m at zero trust world today and tomorrow. If you see me say what’s up!

How long until Active Directory is “dead?”

I don’t think it will ever be, look at this slide that Cliff Fisher shared on the hybrid identity podcast.

@JSCybersec haha relatable
@ithoughtisawa2 exactly. This is foundational stuff that has to be done
I’m currently a pentester, but I’m also a former sysadmin. Something that’s not lost on me is that it doesn’t matter how good you think your security is, if your backups and recovery processes haven’t been tested, you’re rolling the dice.
#cybersecurity #infosec