I have read several articles on becoming a Staff Security Engineer or Principal Security Engineer, and I understand that career growth is not just about personal aspirations but also about aligning with the organization's needs. In my current situation, my goal is to increase my visibility within the organization. I believe I've spent enough time working internally, but a significant part of my visibility in the security community is still pending. My ultimate goal is to enhance visibility, establish a brand as a security engineer, exert influence, engage in cross-collaboration projects, and grow my presence in the community. To boost visibility, I realize I need to engage with the community by writing blogs, creating tools, giving talks, and attending conferences.
I've observed exceptional performance by certain engineers and have often wondered how they can think outside the box, achieve skip-level promotions, and grow exponentially within the company. Do they have mentors? How can one find a mentor, and how do you determine if you need a mentor?
How can I start this journey and find the motivation to do so? Additionally, how can I maintain consistent motivation, as motivation may fluctuate? For instance, after two weeks of hard work, there might be a dull and weak period, and then you need a kickstart to regain the curiosity you had the week before.
I do find curiosity in my current role and the nature of work as an Application Security Engineer, but sometimes I also think, should I explore a bit of change towards offensive security or red teaming?
Furthermore, my personal passion and motivation always lead me towards delving into technical aspects. How can I align more with the business needs of the organization and develop my business acumen skills? How can I develop multiple skills to operationalize application security engineering in a team?
In my current location, there are limited job openings for security engineering positions, making it challenging to switch roles. What are other possible options for me in this situation?
In summary:
-
Is there a roadmap to grow as a security engineer within the organization, gain influence, create a personal brand, and secure promotions?
-
How can I enhance my visibility in the security community and maintain consistent motivation?
-
If I find myself stuck in my current role, because of limited openings in my current location, what alternative things can I explore?
-
Given that many interviews for security engineer positions now include coding rounds, is there a structured pathway for enhancing coding skills specifically tailored for security engineers?
-
How can I maintain consistent motivation, as motivation may fluctuate?
-
How can one find a mentor, and how do you determine if you need a mentor?
-
How can I develop multiple skills to operationalise application security engineering in a team? What does even operational excellence mean?
Any insight will be highly appreciated.