top | item 36455468

(no title)

jiva | 2 years ago

I was ghosted by Tenable after spending about 48 hours completing their CTF challenges, so I just posted the interview questions/challenges and my solutions to my GitHub.

https://github.com/jiva/tenable_zero_day_assessment

discuss

order

bdelay|2 years ago

It looks like you made the best of a frustrating situation and, at the very least, have an excellent piece for your portfolio.

With the rise in number of new security engineers all competing for few "security research" jobs (security research/hacking is the "I want to be a game developer" of security), you start getting into these convoluted hiring processes. Unlike standard software engineering, there aren't even remotely enough positions to accommodate everyone, so the bar can get absurdly high.

Honestly, if the team is asking CTF questions, they clearly want hires with previous CTF experience and should just do targeted hiring from the top teams at different conferences.

At least send people a free t-shirt if they complete the challenge.

the_only_law|2 years ago

> With the rise in number of new security engineers every year all competing for few "security research" jobs (security research/hacking is the "I want to be a game developer" of security)

I’ll believe it, curious what other options there are for all those other new “security engineers”. Compliance work?