Cloud & DevSecOps
IAM, logging, and common cloud misconfigs.
Roadmaps
Interactive cybersecurity career tracks — 50+ curated paths with graphs, progress, and resources. Browse by goal, bookmark what matters, and start where you are.
Cloud & DevSecOps
IAM, logging, and common cloud misconfigs.
Cybersecurity
Portfolio, interviews, and role targeting.
Cybersecurity
CIA triad, threats, and security mindsets.
Foundations · Operating systems
Shells to systemd, hardening, and troubleshooting.
Offensive · Adversary simulation
Recon, exploitation, AD attacks, and reporting.
Defensive · Operations
Monitoring, triage, and incident response.
Offensive
OWASP-focused web offensive skills.
Offensive
Kerberos, ACL abuse, and domain dominance.
Cybersecurity
Secure SDLC, reviews, and AppSec programs.
Cloud & DevSecOps
Entra ID, Defender, and Azure hardening.
Cloud & DevSecOps
Detect and respond to cloud intrusions.
Cloud & DevSecOps
Images, runtime, and supply chain.
Cybersecurity
Modern crypto for practitioners, not theorists.
Foundations · Data
PostgreSQL and MySQL ops, replication, and backup.
Defensive
Write, test, and tune high-signal detections.
Offensive
Memory corruption literacy for pentesters.
Foundations
Version control hygiene for security teams.
Cybersecurity
AuthN/AuthZ, federation, and least privilege.
Defensive
Contain, eradicate, and recover with discipline.
Cloud & DevSecOps
Terraform/CloudFormation misconfig hunting.
Cloud & DevSecOps
Cluster hardening and workload isolation.
Foundations · Networking
TCP/IP, routing, switching, and network troubleshooting.
Offensive
External/internal network assessments.
Cybersecurity
Data minimization and privacy by design.
Cybersecurity
Adversary emulation with detection feedback.
Foundations
Scripting for recon, automation, and tooling.
Cloud & DevSecOps
Vaults, rotation, and leak response.
Defensive
Run a SOC that people can sustain.
Defensive
Collect, analyze, and operationalize intel.
Cybersecurity
STRIDE, attack trees, and design-time security.
Defensive
Scan, prioritize, and drive remediation.
Defensive
Processes, persistence, and defender telemetry.
Cloud & DevSecOps
Identity-first access and continuous verify.