Weekly thread for any and all career, learning and general guidance questions. Thinking of taking a training or going for a cert? Wondering how to level up your career? Wondering what NOT to do? Got other questions? This is the time and place to ask!

  • edric
    link
    fedilink
    English
    arrow-up
    2
    ·
    edit-2
    3 months ago

    For those who are more into the Governance part of Security, how is the pay compared to traditional roles (pentest, SOC, engineering, etc.)? Is it more or less in the same range? Also, if your organization has separate groups for Security and Compliance, do you (or your org) consider your team more Compliance than Security?

    • shellsharks@shellsharks.social
      link
      fedilink
      arrow-up
      1
      ·
      3 months ago

      @scytale I think it kinda depends on the company and whether they put GRC folks on the “engineer” or “analyst” bands. In companies I’ve personally worked for they have fallen on the engineer track so make the same as other folks in infosec. YMMV