Skip to main content

Career exploration

Find your path in cybersecurity

Answer 20 questions about the work that interests you. Discover your strongest career matches, explore what those roles involve, and get beginner projects you can turn into portfolio pieces.

No experience needed. Choose up to two answers per question, or select “Not sure yet.”

Your results are a starting point. You can explore any path, switch your focus, or retake the questionnaire whenever your interests change.

How it works

  1. Answer twenty questions

    Pick the work that sounds interesting. There are no right answers, and nothing asks about experience.

  2. See your starting points

    Get your strongest matches, with the answers behind each one.

  3. Try a starter project

    Every path has a beginner project and guidance for turning it into a portfolio piece.

Browse

All 12 career paths

Browse any path without taking the questionnaire. These are areas of work to explore; several related job titles usually require experience, and a starter project is a first step rather than proof of job readiness.

  • SOC Analysis

    Security operations center (SOC) analysts review an organization’s security alerts, decide which ones point to real problems, and pass confirmed issues to the people who can act on them.

    Starter project: Investigate a Small Alert Queue

    Related roles

    SOC analyst, Security operations analyst

  • Offensive Security

    Penetration testers and red team operators attack systems with written permission to find weaknesses before real attackers do, then explain how to fix them.

    Starter project: Test a Vulnerable Practice App

    Related roles

    Penetration tester, Red team operator

  • Application / Product Security

    Application and product security engineers work with software developers to design, build, and test features so they are hard to abuse.

    Starter project: Protect Private Records in a Small App

    Related roles

    Application security engineer, Product security engineer

  • Threat Intelligence

    Threat intelligence analysts research who is attacking organizations, how, and why, then turn that research into practical guidance for defenders.

    Starter project: Investigate a Fake Internship Campaign

    Related roles

    Cyber threat intelligence analyst, Threat researcher

  • Incident Response

    Incident responders take charge when a security incident is confirmed: they limit the damage, remove the attacker’s access, restore systems, and help the organization learn from what happened.

    Starter project: Respond to a Simulated Account Compromise

    Related roles

    Incident responder, Incident response consultant

  • Cloud Security

    Cloud security analysts and engineers make sure services running on platforms such as AWS, Microsoft Azure, and Google Cloud are configured safely, monitored, and kept that way.

    Starter project: Review and Harden a Cloud Configuration

    Related roles

    Cloud security analyst, Cloud security engineer

  • Identity and Access Management

    Identity and access management (IAM) specialists decide how people sign in and what each account is allowed to reach, from the day someone joins until the day they leave.

    Starter project: Design and Test Role-Based Access

    Related roles

    IAM analyst, Identity security engineer

  • Governance, Risk, and Compliance

    Governance, risk, and compliance (GRC) analysts help organizations decide which security risks matter most, set clear requirements, and gather evidence that security controls actually work.

    Starter project: Assess a Fictional Student Organization

    Related roles

    GRC analyst, IT risk analyst, IT auditor

  • Digital Forensics

    Digital forensic analysts examine computers, phones, and other devices to reconstruct what happened, handling evidence carefully so their conclusions can be checked.

    Starter project: Reconstruct an Incident Timeline

    Related roles

    Digital forensic analyst, Forensic examiner

  • Threat Hunting / Detection

    Threat hunters search activity records for attackers that existing alerts missed, and detection engineers turn what they learn into rules that catch the behavior automatically.

    Starter project: Hunt for Suspicious Login Activity

    Related roles

    Threat hunter, Detection engineer

  • Network Security

    Network security analysts and engineers design and monitor the connections between devices so attacks are harder to launch and harder to spread.

    Starter project: Build and Test a Segmented Practice Network

    Related roles

    Network security analyst, Network security engineer

  • Malware Analysis

    Malware analysts study malicious software to understand what it does, how to detect it, and how to defend against it.

    Starter project: Compare Two Malware Analysis Reports

    Related roles

    Malware analyst, Reverse engineer

Home lab setup guides

Set up a safe practice environment on your own computer, with verified official download links, resource allocation, network isolation, snapshots, common errors, a first exercise and cleanup.

Coming soonStep by step guides are being written.

Network+ and Security+ study tracks

Plain-language overviews, topic maps, lessons, original practice questions with explanations, practical exercises and a review checklist. Useful foundations during college; they are not required for every role and do not guarantee a job.

Coming soonStep by step guides are being written.

Interview preparation

Technical, behavioral, scenario and project prompts with what strong answers include, common weak patterns and likely follow-ups. We never suggest claiming work you have not done.

Coming soonA step by step guide is being written.

Careers and Learning · Cybersecurity Club