Sign up for Career Mentoring

Lesley Carhart's Cybersecurity Blog

[Public Universal Cyber-Pal]

  • Home
  • GIAC Test Advice
  • InfoSec Careers & Education
  • SOC & IR
  • DFIR
  • OT / ICS
  • PancakesCon
  • About Lesley
  • ics-scada

    ASIS Article – Preparing for OT Incident Response

    Published by

    hacks4pancakes

    on

    October 10, 2022
    ASIS Article – Preparing for OT Incident Response

    https://www.asisonline.org/security-management-magazine/monthly-issues/security-technology/archive/2022/october/Your-Cyber-Response-Plan-Needs-These-6-Components/ Cybersecurity incidents are no longer a matter of if, but when. Building a good strategy and architecture to deter intrusions is incredibly important in reducing the frequency and severity of incidents, but there is no scenario where any organization is totally immune. That means that every organization must have…

    Continue reading →: ASIS Article – Preparing for OT Incident Response
  • ask lesley, infosec, security operations

    Ask Lesley: How Much Should SOC Work Suck?

    Published by

    hacks4pancakes

    on

    September 22, 2021

    “Dear Lesley, I’ve been in a MSSP Security Operations Center (SOC) for a few months as my first cybersecurity job. The work is monotonous, I have access to only a few SIEM tools, and most of what I do is handle repetitive tickets for a ton of customers all by…

    Continue reading →: Ask Lesley: How Much Should SOC Work Suck?
  • infosec

    Reasonable IR Team Expectations

    Published by

    hacks4pancakes

    on

    May 11, 2021

    With the surplus of ransomware attacks consistently increasing, I have unfortunately witnessed another increase – in shoddy and predatory cybersecurity incident response firms with good SEO taking advantage of victims. In some cases this may be opportunistic, and in others simply a side effect of the shortage of senior and…

    Continue reading →: Reasonable IR Team Expectations
  • ask lesley, digital forensics, infosec

    Ask Lesley: From Ops to DFIR, a Tough Transition

    Published by

    hacks4pancakes

    on

    March 19, 2021

    Lesley, I am having the hardest time getting my foot in the door in an investigative role. I have spent almost 4 years at the same job, in the same role, and cannot find a way to transition out of the operations side of the house. I went into operations…

    Continue reading →: Ask Lesley: From Ops to DFIR, a Tough Transition
  • infosec

    PancakesCon 2!

    Published by

    hacks4pancakes

    on

    January 12, 2021

    I’m thrilled to announce that PancakesCon 2 will be Sunday, March 21, 2021. It will once again be 100% free and virtual. Call for volunteers (logistics, CFP review) are LIVE. Follow pancakescon.com or @pancakescon on Twitter for updates.

    Continue reading →: PancakesCon 2!
  • hacking, malware

    Uh oh, Orion.

    Published by

    hacks4pancakes

    on

    December 13, 2020

    Just a few brief thoughts on the initial reports of a SolarWinds Orion supply chain attack allegedly impacting a multitude of high profile government and corporate targets. We’re still waiting on quite a few important details; some great initial IOCs have been graciously provided by cybersecurity firm and attack victim…

    Continue reading →: Uh oh, Orion.
  • ask lesley

    Ask Lesley: “I want to hire more diverse senior people”

    Published by

    hacks4pancakes

    on

    December 2, 2020
    Ask Lesley: “I want to hire more diverse senior people”

    Dear Lesley, Do you have any tips on how an org can encourage a more diverse candidate pool for a senior and specialized infosec position? We are located in a mid-sized city and we want to do a better job at reaching a good cross-section of candidates. Thanks,Hiring Today Dear…

    Continue reading →: Ask Lesley: “I want to hire more diverse senior people”
  • ics-scada, iot

    VetSecCon – All About Securing ICS

    Published by

    hacks4pancakes

    on

    November 19, 2020

    I spoke to the veteran’s group VetSec about Industrial Control System (ICS) cybersecurity careers.

    Continue reading →: VetSecCon – All About Securing ICS
  • hacking, ics-scada

    SC Media: Here’s a five-step security plan for industrial environments

    Published by

    hacks4pancakes

    on

    October 27, 2020

    I covered the current state of industrial cybersecurity for SC Media.

    Continue reading →: SC Media: Here’s a five-step security plan for industrial environments
  • ask lesley, infosec, security education

    About Cybersecurity Management and Expectations

    Published by

    hacks4pancakes

    on

    October 27, 2020
    About Cybersecurity Management and Expectations

    For the past decade, I have listened to a number of stories from a minority of cybersecurity professionals I talk to about unbelievably hostile and abusive workplaces. More insidious to me, are the workplaces that “pass” as okay on paper, but are continually undermining, failing, and gaslighting their junior employees.…

    Continue reading →: About Cybersecurity Management and Expectations
Previous Page Next Page

Hello,

I’m Lesley, aka Hacks4Pancakes

Nice to meet you. I’m a long-time digital forensics and incident response professional, specializing in industrial control and critical infrastructure environments. I teach, lecture, speak, and write about cybersecurity.

I’m from Chicago, living in Melbourne.

Follow Me on Social!

  • Bluesky
  • LinkedIn
  • Instagram
  • Threads
  • Mastodon
  • Reddit

ai career careers certification cfp challenge coins conferences cybersecurity cybersecurity careers dfir digital forensics education featured ff giac hacking health and wellness ics incident response information security infosec infosec education iot management mastodon mentoring nation state attacks off topic osint phishing podcast privacy security security education security operations self study social media talks technology threat attribution threat intelligence university video volatility women in tech

Recent posts

  • Reasonable Expectations for Cybersecurity Mentees

    Reasonable Expectations for Cybersecurity Mentees

  • The Top 10 Things I’d Like to See in University OT Cybersecurity Curriculum (2025 Edition)

    The Top 10 Things I’d Like to See in University OT Cybersecurity Curriculum (2025 Edition)

  • Open Online Mentoring Guide

    Open Online Mentoring Guide

  • Stories Ink Interviewed Me, and I love Stories.

  • The National Cryptologic Foundation Podcast

    The National Cryptologic Foundation Podcast

  • I’m in Melbourne, and PancakesCon 6 is On!

Join the fun!

Stay up-to-date with my recent posts, podcasts, and blogs!

Copyright Lesley Carhart, 2025

Content Credit & Legal

Create a website or blog at WordPress.com

  • Subscribe Subscribed
    • Lesley Carhart's Cybersecurity Blog
    • Join 514 other subscribers
    • Already have a WordPress.com account? Log in now.
    • Lesley Carhart's Cybersecurity Blog
    • Subscribe Subscribed
    • Sign up
    • Log in
    • Report this content
    • View site in Reader
    • Manage subscriptions
    • Collapse this bar

Notifications