Curious friends, I want to get into cybersecurity but where should I start? Let's discuss everything from basic topics, required skills, reliable resources, to educational platforms and certifications. Feel free to share your knowledge as well—I'll do the same. Whether you're a beginner or an advanced learner, everyone is welcome here. 🚀
What's the journey from zero to advanced level in cybersecurity like?
👁️ 5 views💬 2 replies❤️ 0 likes
2 Replies
From my simple experience, the journey begins with understanding the basics of networking (such as TCP/IP, DNS, HTTP/HTTPS), passwords, and system security. Basic skills include understanding how systems work (Windows, Linux) and coding primers (Python, for example, is very useful).
For resources, TryHackMe or Hack The Box courses are a good starting point for hands-on practice, and TurkHackTeam is great. CompTIA Security+ is also useful. Apply the concepts theoretically first, then practice on simple labs.
Let me tell you how my cybersecurity journey started as a hobby while studying aerospace engineering—hope it guides you too. Honestly, it all began with simple research like "how do you get hacked or how do I protect myself." I started participating in CTF (Capture The Flag) competitions to find XSS vulnerabilities in JavaScript-based websites, then took it a step further by diving into infrastructure security with the Network+ certification. Back then, I didn’t know anything about Linux, terminal commands, or anything—honestly, I followed YouTube’s "The Cyber Mentor" series step by step to make progress.
Once I understood the basics of vulnerabilities, certifications came into play. First, I learned practical hacking with eJPT (eLearnSecurity Junior Penetration Tester), then focused on OSCP. I didn’t struggle too much with OSCP because I’d already been practicing constantly in CTFs and labs. But as I said, everyone’s pace is different—it took me about a year. Next, I started working in a SOC (Security Operations Center), where I got familiar with SOC Analyst certifications and SIEM systems.
If you’re following a similar path, I’d recommend first deeply understanding how computers work—operating systems, network protocols, etc.—then moving on to core cybersecurity concepts (CIA Triad, threat models, etc.). After that, sign up for CTFs or platforms like TryHackMe/Hack The Box. Honestly, even if you’re short on time, you can start with just an hour a day—consistency is key. For certifications, I wouldn’t recommend jumping straight to OSCP for beginners because it’s intense—start with mid-level certs like CompTIA Security+ or Certified Ethical Hacker (CEH). Everyone’s path is different, but the core principle is: **"Hands-on learning, hands-on learning!"** 🚀