Women In Security Magazine Issue 12

Page 134

MARISE ALPHONSO

TECHNICAL SECURITY RESEARCH – A REWARDING PROFESSION by Marise Alphonso, Information Security Professional

Cybersecurity incidents and data breaches typically

encourage security researchers to find vulnerabilities

result in bad actors getting rich—or aiming to do

in their products.

so—by requesting ransomware payments, conducting scams or selling data on the Dark Web. For the good

Bugcrowd and HackerOne are platforms that pool

people working to stop them getting rich a number

the skills of the world’s ethical hackers and security

of—rather more modest—rewards are available,

researchers to enable organisations and governments

particularly in technical security research.

around the world to benefit from their skills in finding software vulnerabilities. According to the June 2022

134

Software development is an expensive exercise and,

Australian Cyber Security Centre (ACSC) Cyber

despite rigorous and agile approaches to software

Threat Report, rapid exploitation of critical security

development, security vulnerabilities are frequently

vulnerabilities was widespread in the 2022 financial

uncovered. Security researchers play a pivotal

year with attackers targeting various technical

role in discovering zero-day vulnerabilities in the

systems. These findings highlight the need for more

infrastructure, technology and applications that power

cybersecurity professionals skilled in identifying

systems around the world.

vulnerabilities.

Google’s Project Zero is an example of a security

IMPROVING SECURITY RESEARCH SKILLS

research program that provides details on

Numerous resources can be used to improve

vulnerabilities discovered in proprietary or open-

knowledge and skills in security research. HackerOne

source software. It gives developers 90 days to

offers Hacker101, a free educational resource

address an issue before making the vulnerability

to empower the hacker community. While some

public. Many software companies run bug bounty

knowledge of programming or networking may be

programs offering a reward or recognition to

useful, Hacker101 caters for the beginner, introducing

W O M E N I N S E C U R I T Y M A G A Z I N E

J A N U A RY • F E B R U A RY 2023


Turn static files into dynamic content formats.

Create a flipbook

Articles inside

Saman Fatima

4min
pages 154-155

Roshni Bedi

6min
pages 148-150

Tshering Wangmo

6min
pages 152-153

Savannah Dockerty

3min
pages 146-147

Sheida Sabeti

2min
page 151

BISO – no that is not a typo

9min
pages 126-130

Different perspectives

10min
pages 136-140

Identity proofing, identity verification and fraud prevention

5min
pages 131-133

Incident response competition

6min
pages 141-145

managing risk and resilience

8min
pages 116-119

a rewarding profession

3min
pages 134-135

Taking a proactive approach to cybersecurity

3min
pages 114-115

or nothing

3min
pages 108-109

Engagement with an impersonator

8min
pages 100-103

changing career through recruitment

6min
pages 76-78

Balancing risk and productivity in a hybrid world

4min
pages 106-107

experience and professional fulfillment

3min
pages 104-105

Don’t get poor fast

3min
pages 90-91

material risk grows

3min
pages 92-93

after 12 years in finance

2min
pages 74-75

Why I became a cybersecurity expert

2min
pages 72-73

operator in the Australian Army Reserves

3min
pages 64-65

early careers

10min
pages 66-71

Cyber is not your get-rich-quick option

3min
pages 62-63

Reshmi Hariharan

4min
pages 50-51

Farah Chamseddine

4min
pages 48-49

Martina Saldi

4min
pages 46-47

Holly Wright

5min
pages 44-45

Dr Fauzia Idrees Abro

1min
page 43

Johanna Williamson

6min
pages 40-42

Get-rich-quick crypto scams

2min
pages 14-15

Lisa Ventura

3min
pages 30-31

Catherine Dawson

3min
pages 38-39

Rachael Greaves

6min
pages 35-37

Belinda Stewart

3min
pages 20-21

Kao Hansell

3min
pages 16-17

Jenna Salvesen

6min
pages 32-34

Melanie Truscott

4min
pages 18-19
Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.