InfoSecSherpa Profile Banner
InfoSecSherpa Profile
InfoSecSherpa

@InfoSecSherpa

51,497
Followers
3,390
Following
12,280
Media
141,800
Statuses

#Librarian turned #InformationSecurity professional. #Ginfosec originator. #Philly jawns. Evertonian ⚽️. Your guide up a mountain of information! 🏔️

Philadelphia, PA
Joined April 2015
Don't wanna be here? Send us removal request.
Pinned Tweet
@InfoSecSherpa
InfoSecSherpa
5 years
New mural at the @WellsFargoCtr , also, my new motto. #JawnOrDie #Philadelphia
Tweet media one
42
26
203
@InfoSecSherpa
InfoSecSherpa
3 years
It’s not a second covid vaccine shot, it’s a sequel injection.
76
596
3K
@InfoSecSherpa
InfoSecSherpa
3 years
“Second massive LinkedIn breach reportedly exposes data of 700M users, which is more than 92% of the total 756M users. The database is for sale on the dark web, w/ records including phone numbers, physical addresses, geolocation data, & inferred salaries.”
78
1K
2K
@InfoSecSherpa
InfoSecSherpa
3 years
It’s pronounced “Jithub.”
91
243
2K
@InfoSecSherpa
InfoSecSherpa
5 years
🎶 Start spreadin' the news ... I'm starting my first day. I'm gonna be a part of it - the @nytimes #InfoSec team! 🎶 🗽🍎 I cannot thank the community enough for all the help, guidance, and assistance I received with my job search. ❤️ #AllTheVulnsThatAreFitToRemediate
Tweet media one
302
59
2K
@InfoSecSherpa
InfoSecSherpa
6 years
It makes sense that the Girl Scouts are offering Cybersecurity badges, they’ve been helping people delete cookies for years.
27
426
1K
@InfoSecSherpa
InfoSecSherpa
2 years
📢Stop 👏making 👏up 👏new 👏names 👏for 👏Phishing👏
@CyberNews
CyberNews
2 years
#Cybercriminals are including #QR codes into #phishing attacks, a practice known as Quishing. #cybersecurity #cyberattack
24
80
136
71
208
1K
@InfoSecSherpa
InfoSecSherpa
10 months
Announcement 📢 Started a new job today 🍾🥂 Senior Cybersecurity Threat Intelligence Analyst at [redacted] 💃 🎉
191
55
1K
@InfoSecSherpa
InfoSecSherpa
2 years
This is why Tooth Factor Authentication is important.
@BleepinComputer
BleepingComputer
2 years
Scoop: The American Dental Association was hit by a cyberattack causing the shut down of online services and email.
3
53
85
57
189
1K
@InfoSecSherpa
InfoSecSherpa
5 years
My husband was just wheeled into the OR for surgery. If you have any spare positive vibes or healing thoughts, please send them this way. Thanks 🙏 Dog and/or gin photos would be greatly appreciated to distract me. 🐶🍸
355
15
1K
@InfoSecSherpa
InfoSecSherpa
7 years
Friend: How to I explain to our users that the server died? Me: Tell them it went to live on a server farm upstate.
16
260
1K
@InfoSecSherpa
InfoSecSherpa
6 years
CoffeeOS
Tweet media one
37
225
1K
@InfoSecSherpa
InfoSecSherpa
6 years
I just heard about a diabolical phishing simulation. Company faked an email from their own HR department, asking users if they were tired of phishing simulations and provided an unsubscribe link. Those who unsubscribed failed the simulation. I’m not sure how I feel about this.
83
332
1K
@InfoSecSherpa
InfoSecSherpa
5 years
Important personal announcement 📢 Due to a company layoff, I am now seeking new employment. - GSEC certified - 2 yrs SOC exp - OSINT / research / TI exp - Master of Library & Information Science - Philadelphia or remote Please RT for reach. Thanks.
106
1K
1K
@InfoSecSherpa
InfoSecSherpa
2 years
$1,000 clue on Jeopardy
Tweet media one
67
68
972
@InfoSecSherpa
InfoSecSherpa
3 years
I'm as pleased as a 🍍to announce that I have joined the @KrebsStamos Group as a Security Researcher! I am very much looking forward to this fantastic opportunity to work alongside @C_C_Krebs , @alexstamos , @micahmccutchan , and the team!
Tweet media one
180
38
892
@InfoSecSherpa
InfoSecSherpa
6 years
Coming soon.
Tweet media one
14
367
867
@InfoSecSherpa
InfoSecSherpa
6 years
I believe this was prophesized in John 802.11
23
274
856
@InfoSecSherpa
InfoSecSherpa
3 years
Welp, that doesn’t bode well.
Tweet media one
71
109
854
@InfoSecSherpa
InfoSecSherpa
1 year
The bakery told me these are balloons 😳
Tweet media one
89
49
742
@InfoSecSherpa
InfoSecSherpa
3 years
I got into Cybersecurity when I had the realization that my natural paranoia and distrust of things was a career path 😉
@rinkisethi
Rinki Sethi
3 years
I love to hear stories about how people got into cybersecurity. I had a knack when I found and removed a keylogger on my PC that my dad was using to spy on me when I was 16. Found my way into the field post college as a security analyst at PG&E. Tell me your story. #cybersecurity
123
90
897
10
96
701
@InfoSecSherpa
InfoSecSherpa
6 years
Stop calling end users the weakest link in security. That had been played out. They are your front lines, your infantry. Make them feel empowered, not belittled.
53
219
719
@InfoSecSherpa
InfoSecSherpa
3 years
Too many #InfoSec conference speaker panels be like...
Tweet media one
17
91
627
@InfoSecSherpa
InfoSecSherpa
6 years
🎼🎶 "I want my data back, data back, data back. I want my data back, data back, data back. Chil-i's PII breach." 🎶
@secguro
𝗛𝘂𝗺𝗮𝗻 𝗙𝗶𝗿𝗲𝘄𝗮𝗹𝗹
6 years
Chili's reveals possible data #breach
0
9
10
13
185
635
@InfoSecSherpa
InfoSecSherpa
3 years
Don’t undervalue documentation in InfoSec. Writing skills are important. Relying on “enterprise knowledge” that’s only passed down verbally isn’t efficient or a best practice. Build skills with: - “The Elements of Style” by Strunk and White - “On Writing Well” by Zinsser
42
106
617
@InfoSecSherpa
InfoSecSherpa
2 years
A well-known InfoSec person, who shall remain nameless, once chastised me publicly at an event because I said that a password book actually wasn’t the worst thing in the world, depending on threat model and user’s abilities. They have probably forgotten this. I haven’t. 👀
@iMeluny
Melanie Ensign
2 years
My parents use something like this & I’m really glad they do. It means my parents & people like them can use unique, complex, & long passwords on every site because they don’t have to remember them. Until password managers are effectively designed for everyone, this is good.
42
85
722
47
24
565
@InfoSecSherpa
InfoSecSherpa
4 years
Pen testers are red ❤️ Defenders are blue 💙 Everyone is welcome in #InfoSec So, baby, you just do you! 💪 Happy #ValentinesDay to everyone from the seasoned veterans to the greenest of the green. Keep doing great InfoSec work. You are valued. You are needed. You matter. 💕
11
152
553
@InfoSecSherpa
InfoSecSherpa
3 years
Stop calling them “soft” skills, they are mission critical skills. Fite me.
@ZDNET
ZDNET
3 years
5 soft skills for computer science careers
1
5
18
26
79
536
@InfoSecSherpa
InfoSecSherpa
4 years
This was a $1,000 clue on #Jeopardy tonight.
Tweet media one
26
52
532
@InfoSecSherpa
InfoSecSherpa
4 years
The current bee in my bonnet - Every other headline: So many unfilled #InfoSec jobs, it’s becoming a danger and a crisis! Many employers: You need 10 certs, a CISSP, and 10 yrs of experience for that L1 SOC job we’re trying to fill. Oh, and we won’t train you. 1/3
40
119
515
@InfoSecSherpa
InfoSecSherpa
3 years
Had a call today w/a woman who saw me give a “get into #InfoSec ” talk at a women in tech event about 1.5 yrs ago. She was a stay at home mom for over a decade. Told me she’s earned an A+, Sec+ certs and is working on her Net+. Has a PT InfoSec job, too. What a fantastic update!!
15
26
511
@InfoSecSherpa
InfoSecSherpa
9 months
I’ve had an intern all this week at work. He’s very good at packet sniffing.
Tweet media one
21
26
509
@InfoSecSherpa
InfoSecSherpa
6 years
Exactly how I imagined it. 🤣
Tweet media one
9
228
505
@InfoSecSherpa
InfoSecSherpa
5 years
Steganography is the study of encrypted dinosaurs. Pass it on. 🔒🦖
18
156
503
@InfoSecSherpa
InfoSecSherpa
4 years
DED 💀
Tweet media one
1
140
505
@InfoSecSherpa
InfoSecSherpa
5 years
Please don’t be like the person I saw Tweet that they won’t professionally connect with people if they are older. I don’t want to reward that nonsense with a RT. Just don’t be that person. Your best professional network is a diverse network, including age.
36
37
492
@InfoSecSherpa
InfoSecSherpa
5 years
Update: husband’s surgery was successful. All is well. I’m overwhelmed by all the Tweets and messages. Thank you for your support and caring. 🙏 I very much appreciated the animal photos and learned about some new gin today. 🍸 Cheers to you all!
@InfoSecSherpa
InfoSecSherpa
5 years
My husband was just wheeled into the OR for surgery. If you have any spare positive vibes or healing thoughts, please send them this way. Thanks 🙏 Dog and/or gin photos would be greatly appreciated to distract me. 🐶🍸
355
15
1K
34
2
489
@InfoSecSherpa
InfoSecSherpa
2 years
But, if it's an *ethical* hacker ... why the balaclava 👀
@atsen_
Atsen
2 years
Virtual CEH training on weekends. Contact @lynsecofficial to book your slot! #Cybersecurity #APCFixASUUStrike
Tweet media one
4
17
28
115
42
482
@InfoSecSherpa
InfoSecSherpa
3 years
True #InfoSec Story Time: While evaluating a potential 3rd party vendor, I asked about their data encryption at rest and in transit. They told me they didn't encrypt because there is a padlock on the computer room door.
55
57
482
@InfoSecSherpa
InfoSecSherpa
3 years
The 8th layer of the OSI Model is fondant.
27
60
479
@InfoSecSherpa
InfoSecSherpa
4 years
Tales from technology: I became suspicious that my “smart” TV was compromised because it would often turn itself on at random times. Long story short, there was a spare remote I forgot about that the dogs found and played with periodically. /scene
16
55
475
@InfoSecSherpa
InfoSecSherpa
6 years
A guy on @MSNBC just said that there should be a “Cyber NATO,” but I heard “Cybernado” and now I have movie ideas swirling in my head.
25
58
454
@InfoSecSherpa
InfoSecSherpa
11 months
I feel like there’s a good #InfoSec lesson in here.
Tweet media one
13
38
451
@InfoSecSherpa
InfoSecSherpa
2 years
I almost forgot! Today is my career change anniversary! 6 years ago, I left the law firm library behind and got to know the island of misfits toys known as #InfoSec . Cheers!
40
16
445
@InfoSecSherpa
InfoSecSherpa
6 years
I saw a post on LinkedIn of someone complaining about too many webcam covers being given out at InfoSec conferences as swag. I gladly take them and offer them to librarians for their staff or patrons. Outside our silo, not everybody has access to things we take for granted.
30
65
440
@InfoSecSherpa
InfoSecSherpa
2 years
I'm still processing the DEFCON news from today. 14 years ago, I tried multiple times to report a male coworker who was inappropriate, harassing, & threatening at work. My female manager told me, "Boys will be boys." Normalize empowering people to speak up, without retaliation.
6
35
433
@InfoSecSherpa
InfoSecSherpa
3 years
Do you freeze the top row of your spreadsheet when it contains column heading names, or are you my sworn enemy?
35
18
426
@InfoSecSherpa
InfoSecSherpa
1 month
"experts"
Tweet media one
5
53
422
@InfoSecSherpa
InfoSecSherpa
4 years
This was fun ⬇️
Tweet media one
8
6
417
@InfoSecSherpa
InfoSecSherpa
3 years
This is one example of the kinds of empathy I talk about. Provide users with material so that they don’t have to be embarrassed to ask. This goes for #infosec as well. ⬇️
@taralazar
Tara Lazar
3 years
Clever librarians. You don’t have to ask.
Tweet media one
398
30K
195K
4
65
397
@InfoSecSherpa
InfoSecSherpa
6 years
If you “like” a Tweet they contains the hashtag #Thanksgiving , a little cartoon turkey 🦃 will pop up.
8
23
408
@InfoSecSherpa
InfoSecSherpa
5 years
I just realized that this week is my #InfoSec anniversary!! 🥳 Three years ago, I quit my law firm librarian job and took the plunge into a career change. No regrets. Cheers! 🥂
32
15
405
@InfoSecSherpa
InfoSecSherpa
6 years
I’m *at* a security conference. I’m *in* a session. Guy asks me, “So, I assume you are in security, because you are here?” WTF kind of question is that?
61
25
380
@InfoSecSherpa
InfoSecSherpa
3 years
It is with a shattered 💔 spirit that I share the crossing of the Rainbow Bridge by our beloved boy pup, Reese. He was saved from a shelter when my husband & I made him our family 8 years ago. A happy pup with a constantly wagging tail and the cutest yawn, he will be missed.
Tweet media one
111
5
386
@InfoSecSherpa
InfoSecSherpa
1 year
Tweet media one
8
124
363
@InfoSecSherpa
InfoSecSherpa
5 years
In honor of #WorldBookDay , let's have some fun. Turn a children's book into an #InfoSec book title. I'll start. "James and the Giant Breach" #InfoSecAChildrensBook
261
102
372
@InfoSecSherpa
InfoSecSherpa
5 years
Someone told me that I was “brave” for admitting my gaps in technical knowledge. Isn’t it potentially dangerous to pretend you know tech stuff that you don’t, esp in InfoSec? I see it as an opportunity to learn & an opportunity to share what I do know, tech or otherwise. 💪
37
39
368
@InfoSecSherpa
InfoSecSherpa
6 years
A guy at conference to me, “I’m looking forward to your talk about cryptocurrency!” Me, confused, “Oh, no, I’m speaking about Information Security.” Him: “Will you tell us all about BitCoin?” Me: “That’s not what-“ Him: “Cryptocurrency!” Me: 😕 Well, he’ll find out tomorrow
18
17
364
@InfoSecSherpa
InfoSecSherpa
5 years
Past jobs: 1. space cowboy 2. gangster of love 3. Maurice 4. picker 5. grinner 6. lover 7. sinner 8. played music in the sun 9. joker 10. smoker 11. midnight toker
14
28
362
@InfoSecSherpa
InfoSecSherpa
5 years
MY TALK WAS ACCEPTED FOR @DerbyCon 🤯 Look for “Empathy as a Service to Create a Culture of Security” in Louisville 🤗 Thank you #DerbyCon ! #NoYoureCrying
44
14
357
@InfoSecSherpa
InfoSecSherpa
3 years
I saw this on @LinkedIn and I forgot who posted it to give them credit. When I went back to it, the feed refreshed. 😞 Anyway, this looks useful for those who need assistance with #infosec career paths.
Tweet media one
4
101
351
@InfoSecSherpa
InfoSecSherpa
2 years
I'm choosing to pronounce Log4j to rhyme with Fabergé.
18
49
347
@InfoSecSherpa
InfoSecSherpa
1 year
Note: There is a 3 question survey when you go to sign up. If you do not have a Bachelor's degree in Cybersecurity, IT, etc., they disqualify you from participating in the virtual hiring event --- which is completely stupid and ageist especially b/c a cyber degree is newer.
@sisinerdtweets
Confidence Staveley
1 year
United Airlines is looking to hire experienced #cybersecurity professionals for various fully remote cybersecurity roles. The virtual hiring event starts in 5 hours. Please read more and register using the link below
4
138
168
41
39
343
@InfoSecSherpa
InfoSecSherpa
2 years
Gonna sip champagne cocktails like it’s my birthday 🥳
Tweet media one
101
6
336
@InfoSecSherpa
InfoSecSherpa
3 years
My new neighborhood Indian restaurant is not messing around 😂
Tweet media one
26
20
335
@InfoSecSherpa
InfoSecSherpa
2 years
*takes a deep breath* This is hard for me to do. Wanna take a guess to whom I was referring? I was being polite using the word “chastised.” I was humiliated and bullied at a professional event. My OP is a snippet version. Others had it worse. Not comparing. Stating my truth.
@InfoSecSherpa
InfoSecSherpa
2 years
A well-known InfoSec person, who shall remain nameless, once chastised me publicly at an event because I said that a password book actually wasn’t the worst thing in the world, depending on threat model and user’s abilities. They have probably forgotten this. I haven’t. 👀
47
24
565
44
17
329
@InfoSecSherpa
InfoSecSherpa
6 years
An idea popped into my head yesterday & I emailed my local public library to ask if they had plans for Cyber Security Awareness Month in October, and if so, I'd be happy to help. 15 minutes later, an enthusiastic response and a dialogue started. Reach out to your library!
22
65
328
@InfoSecSherpa
InfoSecSherpa
5 years
You shut your filthy mouth, Switzerland.
@thehill
The Hill
5 years
Switzerland says coffee is "not essential" to human life
Tweet media one
51
9
37
14
47
315
@InfoSecSherpa
InfoSecSherpa
4 years
My husband walked into the living room, finding me on the couch. I said, "I kind of had a public meltdown on Twitter." He replied, "I saw." Grabbed his keys and said, "Stay put. I'm going to get ice cream." He's a keeper. 🤗
14
1
319
@InfoSecSherpa
InfoSecSherpa
4 years
I don’t have any CVEs But, I got CVS receipts for days, yo
23
19
316
@InfoSecSherpa
InfoSecSherpa
5 years
An #InfoSec Passover Seder has gefilte phish.
39
60
311
@InfoSecSherpa
InfoSecSherpa
3 years
Is there 2FA on the nuclear codes? 👀 Asking for the world.
38
34
305
@InfoSecSherpa
InfoSecSherpa
7 years
This Tweet feels like a trap 🤔
@CoreSecurity
Core Security
7 years
Are your employees vulnerable to a phishing attack? Find out here:
0
2
5
6
54
292
@InfoSecSherpa
InfoSecSherpa
5 years
Why does a SOC Analyst 1 position have a CISSP as a requirement? 🙄 (that's a rhetorical question, I know the answer.)
56
28
294
@InfoSecSherpa
InfoSecSherpa
3 years
Personal announcement 🗣 Today is my last day with the @nytimes Stay tuned for more details. My recent fortune cookie wasn’t wrong ⬇️
Tweet media one
36
1
294
@InfoSecSherpa
InfoSecSherpa
4 years
Tonight is Cybersecurity Awareness Month Eve. Make sure you leave some milk and persistent cookies out, and Yubikeys under your pillow. (That’s how this works, right? Seems right. 🤔 #NCSAM )
12
73
292
@InfoSecSherpa
InfoSecSherpa
6 years
Stop telling me how many minutes you are “giving back” when a conference call ends.
30
28
283
@InfoSecSherpa
InfoSecSherpa
5 years
These ATMs are insecure because they don’t have lox. Thank you. I’ll be here all week.
@visakanv
Visakan Veerasamy
5 years
Friends, I have found,,, a salmon vending machine
Tweet media one
121
6K
6K
15
57
279
@InfoSecSherpa
InfoSecSherpa
3 years
I am overwhelmed and grateful for your wonderful responses to my news. Thank you. It is very much appreciated 🙏🏻
@InfoSecSherpa
InfoSecSherpa
3 years
I'm as pleased as a 🍍to announce that I have joined the @KrebsStamos Group as a Security Researcher! I am very much looking forward to this fantastic opportunity to work alongside @C_C_Krebs , @alexstamos , @micahmccutchan , and the team!
Tweet media one
180
38
892
16
8
276
@InfoSecSherpa
InfoSecSherpa
4 years
YOU’RE WELCOME, AMERICA! 🇺🇸
Tweet media one
11
17
275
@InfoSecSherpa
InfoSecSherpa
3 years
@ChrisMuellerPGH That looks like a hate crime against New Orleans.
2
5
259
@InfoSecSherpa
InfoSecSherpa
7 months
@SwiftOnSecurity Dance like nobody’s watching, but write an email like it will be read aloud in court one day.
8
69
276
@InfoSecSherpa
InfoSecSherpa
5 years
How does Lent work in InfoSec? Do we give up patching? Does that make today Hash Wednesday? Are there only Phish on Fridays? These are things I think about.
25
50
272
@InfoSecSherpa
InfoSecSherpa
1 year
@inreGray @VoxPrudentia The @Kimpton hotels are super pet friendly and even have amenities for pups. I once saw a gigantic Great Dane in one!
6
0
272
@InfoSecSherpa
InfoSecSherpa
5 years
I was feeling a little down, so I perked myself up by remembering that an end user once emailed the SOC about a problem and wrote the salutation as, "Dear Phish People." That made me feel better. 🐟👩
5
24
268
@InfoSecSherpa
InfoSecSherpa
3 years
@KristyT Try your local library. They likely have an online portal with access to a wide variety of publications. Also, check out @MILibrary in SF. They have online subscriptions to their databases for what I think is a reasonable price.
4
10
267
@InfoSecSherpa
InfoSecSherpa
6 years
Panera Bread didn’t really rise to the challenge of this incident response. I’ll show myself out.
34
34
266
@InfoSecSherpa
InfoSecSherpa
2 years
Goodnight, all. Sleep well. We will fight the good fight. We ride at dawn.
Tweet media one
3
32
267
@InfoSecSherpa
InfoSecSherpa
5 years
@XavierAshe That was funny when I first saw it 3 years ago 😉
1
0
255
@InfoSecSherpa
InfoSecSherpa
3 years
*voice message to self* InfoSec-themed bakery café named Dough Main 🍩💻
23
15
261
@InfoSecSherpa
InfoSecSherpa
3 years
Jinkees, Scoob, this just got real 😳
Tweet media one
26
0
257
@InfoSecSherpa
InfoSecSherpa
3 years
Wow, and just when I thought this day couldn't get any better - I have a confirmed covid vaccine appointment.
21
0
262
@InfoSecSherpa
InfoSecSherpa
5 years
I did some kernel hacking earlier.
Tweet media one
8
13
256
@InfoSecSherpa
InfoSecSherpa
2 years
I swear to Xenu that I’m blocking people who post mocking commentary about physical password notebooks. I’m tired of having this conversation, for Pete’s sake. Worry about helping people get 2FA enabled and do some actual good for people rather than belittle them over a notebook.
24
13
253
@InfoSecSherpa
InfoSecSherpa
5 years
Preach it, @iHeartMalware ! This slide got a round of applause at #DerbyCon . 👍
Tweet media one
1
69
252
@InfoSecSherpa
InfoSecSherpa
3 years
Rachel @maddow just called 2FA “annoying” on her show. 😡
Tweet media one
18
16
254
@InfoSecSherpa
InfoSecSherpa
5 years
I just received a note from someone with whom I shared a job lead that they got that job! I do my best to RT every job post and every job searching Tweet that I see. Sometimes I will DM people a job I’ve seen. Be the rising tide that lifts all boats in #InfoSec .
5
15
251
@InfoSecSherpa
InfoSecSherpa
2 years
I’ve never done one of those “felt cute, might delete later” posts. So, here it is. On my way to a very important elf board meeting, apparently. 🎄 #UglySweater
Tweet media one
20
2
252
@InfoSecSherpa
InfoSecSherpa
5 years
Look at this cool OSI model graphic from @TheCyberSecHub ! Love this.
Tweet media one
5
97
247
@InfoSecSherpa
InfoSecSherpa
3 years
Tweet media one
4
37
246
@InfoSecSherpa
InfoSecSherpa
7 years
I just gave out candy and called out to the kids as they walked away, "Use two-factor authentication! Happy Halloween!" I am a dork. 🎃
12
49
246