Archive for jobs

A Faculty Perspective: Preparing to Study Cyber at SIPA

Guest Post by Professor Jason Healey

Admissions note: Jason Healey is a Senior Research Scholar at SIPA specializing in cyber conflict, competition, and cooperation. He directs the Initiative on the Future of Cyber Risk and teaches two courses: Dynamics of Cyber Power and Conflict and Cybersecurity: Technology, Policy, and Law.

In my five years here, it’s been clear that SIPA’s Dean Merit Janow is committed to bringing all things cyber and digital to the school. We’ve developed a robust program of research, events, and coursework that have made SIPA a hub for the study of cybersecurity and technology policy and our students are not only the main recipients but our best partners.

I’m often asked how students can prepare to study cybersecurity policy at SIPA. In this post, I’ll provide some recommendations on resources students can use for self-study whether you want to get a head start before SIPA or help prepare yourself for one of the five main cyber career tracks for SIPA alumni.

Reading

There are different learning styles. For me, I prefer reading. Whenever I’ve re-directed my career (into cyber in 1998, working for the finance sector in 2001 and the White House in 2003, expanding into risk and business continuity in 2005, and so on) I’ve read as much as I can get my hands on starting with general topics then diving more deeply.

If you want to switch into a cyber career, or wondering if it’s for you, start your reading early. First, there’s the general cyber reading. Here, look at The Cuckoo’s Egg (Cliff Stoll), a very readable classic, and The Hacked World Order (Adam Segal) or The Darkening Web (Alexander Klimberg) on general cyber international relations. Both are good, but Adam Segal is adjunct faculty at SIPA and directs the Digital and Cyberspace Policy Program at the Council on Foreign Relations. David Sanger’s The Perfect Weapon is amazing, as is Kim Zetter’s Countdown to Zero Day and, more recently, Andy Greenberg’s Sandworm. Andy and Kim are some of the most-trusted journalists in the field, along with David Sanger and Ellen Nakashima.

Singer and Friedman’s Cybersecurity and Cyberwar is a bit out of date but very readable — as is my cyber military history, A Fierce Domain. There’s also a lot of academic works like Ben Buchanan’s The Cybersecurity Dilemma, which is excellent, but probably a better third or fourth book.

Second are reports from think tanks like the Atlantic Council, Center for a New American Security, Council on Foreign Relations, Center for Strategic and International Studies, New America, Carnegie Endowment for International Peace, and the East-West Institute. These organizations are also holding a lot of virtual events during the quarantine that are open to the general public.

Third, the Internet threat reports from major cybersecurity companies will give you a unique and up-to-date perspective. FireEye’s APT1 report made history, a private sector company calling out espionage – with in-depth analysis backed by evidence – by another country. CrowdStrike’s Global Threat Report is quite readable and there are now dozens of such reports focusing on adversary groups, that is, criminal hacking groups or state-backed espionage teams. The Verizon Data Breach Investigations Report and reports from Ponemon are on cybersecurity more generally and the costs of cyber crime.

Last, there is the more technical literature, especially tied to hacking skills and certifications. I started with Hacking Exposed, now on its seventh edition, but study guides for Security+ and Certified Ethical Hacker are also useful. Only dive into these if you care about such things and can deal with sometimes daunting technical material right out of the gate. They’re important but you might start with the other material first.

Social Media

Many of the most influential and interesting practitioners and scholars in the field are on Twitter, and this is a great way to follow the most recent developments. Start with the authors I’ve mentioned here. Follow me then follow those I retweet. As you read Sandworm (especially, as it is new) be sure to follow those mentioned as well as all the authors and journalists I’ve mentioned above.

Getting a Basic Technical Background

If you want a job in cybersecurity, then you must have some understand of what happens on the other side of your screen. If it still seems like magic, then your analyses won’t have enough foundation. Fortunately, even a modicum of basic computer science or programming can be enough for you dispel the fog of magic and learn key concepts and terms. The deeper you can go, the more job options open up for you.

Any of the basic computer science classes available on the various MOOC platforms (EdX, Coursera, Udemy, etc.) will be a great start. CS50x is a particularly popular option. And get as much Python as you can, not just for cyber but to help you at SIPA and any job afterwards. If you can handle the quant, consider pairing cyber classes with the concentration in Data Analytics and Quantitative Analysis.

Within the cybersecurity fields, a certificate is a routine credential to demonstrate you have special knowledge or skills. The Security+ certificate by CompTIA is one of the most achievable for most SIPA students. Usually, you can study as much as you want for free and only have to pay to take the certification test, usually a few hundred dollars. The higher-end certifications, such as those from SANS, are often highly specialized and more expensive (often paid for by companies to train their staff).

This brief list of recommendations will get you off to a great start in studying cybersecurity policy, and you’ll be well prepared for cyber-related classes at SIPA. More importantly, you’ll be on your way to an exciting career in a field which has difficult and interesting challenges and is well paid and chronically understaffed. I look forward to your joining cybersecurity as a colleague!

From SIPA Student to Cyber Professional—CJ Dixon’s Cyber 9/12 Journey

In November 2019, SIPA hosted the fourth annual Atlantic Council Cyber 9/12 Strategy Challenge in New York City. Planned and run by SIPA’s Digital and Cyber Group, this year’s event featured 31 teams from 18 different schools including Tufts, Harvard, Georgetown, NYU, West Point, and the University of Pennsylvania. Each team was tasked with developing policy recommendations to respond to a rapidly developing cyber incident at both the local and federal level. The teams were judged by experts including former Homeland Security Advisor Tom Bossert, former Deputy National Security Advisor and Deputy Director of the CIA Avril Haines, and senior executives from numerous private sector entities.

CJ Dixon (MIA ’19), a member of the winning team in 2018, returned to judge this year’s competition in his new role as a senior advisor at NYC Cyber Command. CJ took several cybersecurity courses at SIPA, competed in both the NYC and DC Cyber 9/12 competitions, and served as a Google Public Policy Fellow following graduation. CJ’s journey is a great example of how SIPA’s Tech & Policy Initiative provides students with the academic and professional preparation to pursue cybersecurity and technology policy careers.

Tips for making the most out of your internship search

Applying for internships can be daunting. Here are a few tips to make it more manageable:

  1. Look through the OCS Internship Report Database on SIPAlink

In order to fulfill the internship credit, all students need to complete a comprehensive questionnaire about their internship experience. I found the OCS Internship Report Database on SIPAlink a great resource to get a better idea of what other students have done. (SIPA’s Office of Career Services, or OCS, is dedicated just to SIPA students.) Before I started applying for internships, I filtered through the different career fields and looked at what organizations or companies students interned at. If you see an internship that you’re extremely interested in, you can reach out to the student or even maybe the supervisor.

  1. Attend OCS’s concentration/specialization career panels and info sessions

Every week or so OCS sends out an email with all the career panels and info sessions they planned. Make sure to look out for the email and register for as many of the events as you can. It’s a great way to learn more about the field, talk to alumni, and make connections. I recently went to a resume workshop that an alumni led. He went through our resumes one by one and provided great advice.

  1. Reach out to Alumni on the Linkedin page

We have a “SIPA Alumni and Student Network” group on LinkedIn that, as of today, has over 8,000 members. I recommend reaching out to alumni to set up an informational interview. Alumni generally are very responsive and willing to help our their fellow Seeple. Please note that incoming students will be approved as group members beginning the week of orientation.

  1. Make a list of interesting places

We often have guest speakers in our classes who are doing amazing work around the world. I started making a list of organizations and companies I found interesting. When I was looking for internships, I started with that list.

Best of luck with your internship search!

Watch: The 43rd Annual SIPA D.C. Career Conference

Ana Guerrero MIA ’19 gave a micro view of the SIPA D.C. Career Conference; check out the video below for a macro view. More than 220 SIPA students took part this year, joined by over 200 SIPA alumni throughout the Conference’s panels, site visits, and networking events from January 16-18, 2019.

Read the full recap here.

A recap of the 2019 SIPA D.C. Career Conference

SIPA’s 43rd Annual D.C. Career Conference & Alumni/Student Networking Reception was held on January 16 – 18, 2019.

My name is Ana Guerrero, and I am a second-year MIA student, concentrating in International Security Policy and specializing in International Conflict Resolution. I am originally from the Dominican Republic but I grew up in Brooklyn. I had a myriad of jobs before SIPA, and I am hoping to use my degree to pivot into the Security sector.

For that reason, I was really looking forward to the 43rd annual SIPA D.C. Career Conference, so much so that I successfully applied to be the panel coordinator for the Security & Political Risk session. (I couldn’t attend last year because a group of classmates and I organized a relief trip to Puerto Rico to help clean up after Hurricane Maria.) Needless to say, for someone who doesn’t have direct work experience in the field, I felt that I couldn’t miss the D.C. Career Conference *Don Corleone voice* on this the year of my graduation.

I am very glad I made the most of my time at the conference. I had two coffee chats with SIPA alumnae in D.C., and I managed to make a connection with each of my panelists. My favorite panel – aside from my own – was the Foreign and Civil Service session, where we heard from people from the State Department, the FBI, and a former CIA employee. Their insights into government work and the fellowships to apply for were invaluable.

Panels aside, the site visits are another excellent resource because I got to see the workplace and talk to people I otherwise would not have met if I just attended the conference day’s events. I went to the National Counterterrorism Center, Elizabeth Warren’s Senate office, Albright Stonebridge Group (ASG), and led the site visit and panel of State Department employees. At the ASG session, a human resources representative talked about internship and employment opportunities to look out for in the coming months. Additionally, the networking reception on the last night allowed me to follow up on connections I had made throughout the week. THIS is why you attend a conference like this!

My one piece of advice to prospective students is to absolutely attend the SIPA D.C. Career Conference if they are open to working in Washington D.C. And if you want to work in D.C. and can attend both years as a SIPA student, do it!

"The most global public policy school, where an international community of students and faculty address world challenges."

—Merit E. Janow, Dean, SIPA, Professor of Practice, International and Economic Law and International Affairs

Boiler Image