Career exploration
Find your path in cybersecurity
Answer 20 questions about the work that interests you. Discover your strongest career matches, explore what those roles involve, and get beginner projects you can turn into portfolio pieces.
No experience needed. Choose up to two answers per question, or select “Not sure yet.”
Your results are a starting point. You can explore any path, switch your focus, or retake the questionnaire whenever your interests change.
How it works
Answer twenty questions
Pick the work that sounds interesting. There are no right answers, and nothing asks about experience.
See your starting points
Get your strongest matches, with the answers behind each one.
Try a starter project
Every path has a beginner project and guidance for turning it into a portfolio piece.
Browse
All 12 career paths
Browse any path without taking the questionnaire. These are areas of work to explore; several related job titles usually require experience, and a starter project is a first step rather than proof of job readiness.
SOC Analysis
Security operations center (SOC) analysts review an organization’s security alerts, decide which ones point to real problems, and pass confirmed issues to the people who can act on them.
Starter project: Investigate a Small Alert Queue
Related roles
SOC analyst, Security operations analyst
Offensive Security
Penetration testers and red team operators attack systems with written permission to find weaknesses before real attackers do, then explain how to fix them.
Starter project: Test a Vulnerable Practice App
Related roles
Penetration tester, Red team operator
Application / Product Security
Application and product security engineers work with software developers to design, build, and test features so they are hard to abuse.
Starter project: Protect Private Records in a Small App
Related roles
Application security engineer, Product security engineer
Threat Intelligence
Threat intelligence analysts research who is attacking organizations, how, and why, then turn that research into practical guidance for defenders.
Starter project: Investigate a Fake Internship Campaign
Related roles
Cyber threat intelligence analyst, Threat researcher
Incident Response
Incident responders take charge when a security incident is confirmed: they limit the damage, remove the attacker’s access, restore systems, and help the organization learn from what happened.
Starter project: Respond to a Simulated Account Compromise
Related roles
Incident responder, Incident response consultant
Cloud Security
Cloud security analysts and engineers make sure services running on platforms such as AWS, Microsoft Azure, and Google Cloud are configured safely, monitored, and kept that way.
Starter project: Review and Harden a Cloud Configuration
Related roles
Cloud security analyst, Cloud security engineer
Identity and Access Management
Identity and access management (IAM) specialists decide how people sign in and what each account is allowed to reach, from the day someone joins until the day they leave.
Starter project: Design and Test Role-Based Access
Related roles
IAM analyst, Identity security engineer
Governance, Risk, and Compliance
Governance, risk, and compliance (GRC) analysts help organizations decide which security risks matter most, set clear requirements, and gather evidence that security controls actually work.
Starter project: Assess a Fictional Student Organization
Related roles
GRC analyst, IT risk analyst, IT auditor
Digital Forensics
Digital forensic analysts examine computers, phones, and other devices to reconstruct what happened, handling evidence carefully so their conclusions can be checked.
Starter project: Reconstruct an Incident Timeline
Related roles
Digital forensic analyst, Forensic examiner
Threat Hunting / Detection
Threat hunters search activity records for attackers that existing alerts missed, and detection engineers turn what they learn into rules that catch the behavior automatically.
Starter project: Hunt for Suspicious Login Activity
Related roles
Threat hunter, Detection engineer
Network Security
Network security analysts and engineers design and monitor the connections between devices so attacks are harder to launch and harder to spread.
Starter project: Build and Test a Segmented Practice Network
Related roles
Network security analyst, Network security engineer
Malware Analysis
Malware analysts study malicious software to understand what it does, how to detect it, and how to defend against it.
Starter project: Compare Two Malware Analysis Reports
Related roles
Malware analyst, Reverse engineer
Home lab setup guides
Set up a safe practice environment on your own computer, with verified official download links, resource allocation, network isolation, snapshots, common errors, a first exercise and cleanup.
Coming soonStep by step guides are being written.
Network+ and Security+ study tracks
Plain-language overviews, topic maps, lessons, original practice questions with explanations, practical exercises and a review checklist. Useful foundations during college; they are not required for every role and do not guarantee a job.
Coming soonStep by step guides are being written.
Interview preparation
Technical, behavioral, scenario and project prompts with what strong answers include, common weak patterns and likely follow-ups. We never suggest claiming work you have not done.
Coming soonA step by step guide is being written.