# Job roles in IT and cybersecurity

## Learning objectives

* Identify key IT and cybersecurity job roles
* Describe the roles' key responsibilities, skills, and industry certifications

This section gives a succinct overview of seven in-demand job roles in IT and cybersecurity. Key job responsibilities, skills, and certifications for the following IT and cybersecurity roles are covered: System Administrator, Network Administrator, Incident Responder, Penetration Tester, Cloud Engineer, Cybersecurity Manager, and Privacy Analyst.

## Topics covered in this section

* **System Administrator**
* **Network Administrator**
* **Incident Responder**
* **Penetration Tester**
* **Cloud Engineer**
* **Cybersecurity Manager**
* **Privacy Analyst**
* **Job roles in IT and cybersecurity summary table**

### System Administrator <a href="#ember603" id="ember603"></a>

System Administrators (“The server people”) are responsible for the installation, configuration, maintenance, and security of servers, operating systems, and critical software applications.

* Job responsibilities: Automation; Patch management and endpoint security; Server health/server set up, configuration, optimization, troubleshooting, and maintenance; Backup/DR: system backup and restoration in disaster recovery; App compatibility: ensuring system-wide software and hardware compatibility and interoperability; System hardening, including removing processes and services not needed; Creating users and groups; Windows Defender configuration
* Skills: Networking; Patch management; Backups and recovery; OS – Linux, Windows, Mac; Scripting and automation; PowerShell and Command line (CLI); Virtualization (VMWare); Cloud computing – containers, Kubernetes, AWS, Azure; Network monitoring, intrusion detection, intrusion prevention, firewalls
* Certificates: Azure Administrator Associate; Network+; Linux+; Security+; VMWare Certified Professional; RHCSA (Red Hat Certified System Administrator)

### Network Administrator <a href="#ember606" id="ember606"></a>

Network Administrators are responsible for day-to-day configuration, maintenance, and troubleshooting of different network devices and the network itself.

* Job responsibilities: Hardware: setting up, configuring, and maintaining network hardware/devices – routers, switches, firewalls, and different types of security appliances like IDS/IPS; Software/hardware installation; Network topology: mapping out the network topology; Troubleshooting (possibly 80% of the work); Network infrastructure design and optimization (equipment, budget, as well as from a data standpoint)
* Skills: Windows Active Directory – create/remove /manage user accounts; OS – Linux; Cisco/PAN (Palo Alto) Equipment; Servers -on-prem and cloud based; Virtualization like VMWare; Troubleshooting
* Certifications: CCNA; Network+; Azure Network Engineer Associate; AWS Certified Solutions Architect – Associate

### Incident Responder <a href="#ember609" id="ember609"></a>

Incident Responders are responsible for detecting, analyzing, and mitigating security breaches to minimize damage and restore normal operations swiftly.

* Job responsibilities: Monitor systems/networks; Security auditing; Forensic investigations; Risk analysis; Intrusion detection; Training staff and stakeholders; Documentation; PCAP analysis with Wireshark
* Skills: Networking; OS – Linux, Windows, Mac; Packet analysis; SIEM tools; Scripting automation (Python); Packet capturing tools (Wireshark); Backup process; Forensic tools
* Certifications: Security+; GSEC (GIAC Security Essentials); GCIH (GIAC Certified Incident Handler); ECIH (EC-Council Certified Incident Handler); CHFI (Computer Hacking Forensic Investigator); CEH

### Penetration Tester <a href="#ember612" id="ember612"></a>

Penetration Testers proactively simulate cyberattacks to identify vulnerabilities and strengthen an organization’s security defenses.

* Job responsibilities: Identify/exploit vulnerabilities (internal or external); Network, application, mobile, Wi-Fi (testing); Scoping; OSINT; Social engineering; Exploit; Persist; Reporting; Password cracking (Hydra, John the Ripper, Cain and Abel); Nmap
* Skills: Networking; OS – Linux; Documentation; OSINT; Scripting (Python, Bash) and programming languages (C); Tools (modifying code; or writing your own tools); CVEs; CLI (Command Line Interface)
* Certifications: OSCP (Offensive Security Certified Professional); CEH; eJPT (eLearnSecurity Junior Penetration Tester); GPEN (GIAC Penetration Tester); Pentest+; LPT (Licensed Penetration Tester – EC-Council)

### Cloud Engineer <a href="#ember615" id="ember615"></a>

Cloud Engineers design, deploy, and optimize cloud infrastructure and services to ensure scalability, security, and reliability.

* Job responsibilities: Maintain cloud infrastructure; Serverless infrastructure architecture; IAM (Identity and Access Management); Automation; Cost optimization; Performance optimization; Storage
* Skills: Networking; OS – Linux, Windows; Scripting and programming languages; Database; IAM; Troubleshooting
* Certifications: AWS Advanced Networking Specialty; Azure Network Engineer Associate; CCSK (Certificate of Cloud Security Knowledge); CCSP (Certified Cloud Security Professional); Cloud+

### Cybersecurity Manager <a href="#ember618" id="ember618"></a>

Cybersecurity Managers oversee security strategies, policies, and teams to protect an organization’s systems, data, and infrastructure from threats.

* Job responsibilities: Operations; Infrastructure; Oversee assessments and audits; Ambassador; Compliance; Policies; Business continuity planning/DR (Disaster Recovery)
* Skills: Negotiation; Time management; Incident response; Regulations and standards; Auditing; Policies and processes
* Certifications: CISSP (Certified Information Systems Security Professional); CISM (Certified Information Security Manager); CRISC (Certified in Risk and Information Systems Control); CISA (Certified Information Systems Auditor); SC-100: Microsoft Cybersecurity Architect

### Privacy Analyst <a href="#ember621" id="ember621"></a>

Privacy Analysts ensure compliance with data protection laws, assess risks, and implement policies to safeguard sensitive information.

* Job responsibilities: Assessing the business policies, procedures, and operations to ensure that the organization is meeting its privacy requirements; Making sure that the business is compliant with regulations or industry standards or laws that they have to follow to protect critical information; Risk management: help manage legal or operational risk; Research and analysis of sensitive data and figuring out how to comply with relevant rules; Training: developing policies and procedures and then training the organization on those policies and procedures
* Skills: Critical thinking; Privacy laws and regulations; Data life cycle management; Researching – identifying relevant laws, regulations, and standards; Communication skills; Gap analysis
* Certifications: CIPP (Certified Information Privacy Professional); GRC Professional; CDPSE (Certified Data Privacy Solutions Engineer); CISA (Certified Information Systems Auditor)

### Job roles in IT and cybersecurity summary table

| **Job role**                                                                                                                                                                                                                                    | **Job responsibilities**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 | **Skills**                                                                                                                                                                                                                                                                                                                                                | **Industry certifications**                                                                                                                                                                                                                                                                   |
| ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| <p><strong>System Administrator</strong><br><br>“The server people”</p>                                                                                                                                                                         | <p>Automation<br><br>Patch management and endpoint security<br><br>Server health/server set up, configuration, optimization, troubleshooting, and maintenance<br><br>Backup/DR: system backup and restoration in disaster recovery<br><br>App compatibility: ensuring system-wide software and hardware compatibility and interoperability<br><br>System hardening, including removing processes and services not needed<br><br>Creating users and groups<br><br>Windows Defender configuration</p>                                                                                      | <p>Networking<br><br>Patch management<br><br>Backups and recovery<br><br>OS – Linux, Windows, Mac<br><br>Scripting and automation<br><br>PowerShell and Command line (CLI)<br><br>Virtualization (VMWare)<br><br>Cloud computing – containers, Kubernetes, AWS, Azure<br><br>Network monitoring, intrusion detection, intrusion prevention, firewalls</p> | <p>Azure Administrator Associate<br><br>Network+<br><br>Linux+<br><br>Security+<br><br>VMWare Certified Professional<br><br>RHCSA (Red Hat Certified System Administrator)</p>                                                                                                                |
| <p><strong>Network Administrator</strong><br><br>Do day-to-day configuration, maintenance, and troubleshooting of different network devices and the network itself.</p>                                                                         | <p>Hardware: setting up, configuring, and maintaining network hardware/devices – routers, switches, firewalls, and different types of security appliances like IDS/IPS<br><br>Software/hardware installation<br><br>Network topology: mapping out the network topology<br><br>Troubleshooting (possibly 80% of the work)<br><br>Network infrastructure design and optimization (equipment, budget, as well as from a data standpoint)<br><br>Wireshark</p>                                                                                                                               | <p>Windows Active Directory – create/remove /manage user accounts<br><br>OS – Linux<br><br>Cisco/PAN (Palo Alto) Equipment<br><br>Servers -on-prem and cloud based<br><br>Virtualization like VMWare<br><br>Troubleshooting</p>                                                                                                                           | <p>CCNA<br><br>Network+<br><br>Azure Network Engineer Associate<br><br>AWS Certified Solutions Architect – Associate</p>                                                                                                                                                                      |
| <p><strong>Incident Responder</strong><br><br>Digital Forensics and Incident Response (DFIR)</p>                                                                                                                                                | <p>Monitor systems/networks<br><br>Security auditing<br><br>Forensic investigations<br><br>Risk analysis<br><br>Intrusion detection<br><br>Training staff and stakeholders<br><br>Documentation<br><br>PCAP analysis with Wireshark</p>                                                                                                                                                                                                                                                                                                                                                  | <p>Networking<br><br>OS – Linux, Windows, Mac<br><br>Packet analysis<br><br>SIEM tools<br><br>Scripting automation (Python)<br><br>Packet capturing tools (Wireshark)<br><br>Backup process<br><br>Forensic tools</p>                                                                                                                                     | <p>Security+<br><br>GSEC (GIAC Security Essentials)<br><br>GCIH (GIAC Certified Incident Handler)<br><br>ECIH (EC-Council Certified Incident Handler)<br><br>CHFI (Computer Hacking Forensic Investigator)<br><br>CEH</p>                                                                     |
| **Penetration Tester**                                                                                                                                                                                                                          | <p>Identify/exploit vulnerabilities (internal or external)<br><br>Network, application, mobile, Wi-Fi (testing)<br><br>Scoping<br><br>OSINT<br><br>Social engineering<br><br>Exploit<br><br>Persist<br><br>Reporting<br><br>Password cracking (Hydra, John the Ripper, Cain and Abel)<br><br>Nmap</p>                                                                                                                                                                                                                                                                                    | <p>Networking<br><br>OS – Linux<br><br>Documentation<br><br>OSINT<br><br>Scripting (Python, Bash) and programming languages (C)<br><br>Tools (modifying code; or writing your own tools)<br><br>CVEs<br><br>CLI (Command Line Interface)</p>                                                                                                              | <p>OSCP (Offensive Security Certified Professional)<br><br>CEH<br><br>eJPT (eLearnSecurity Junior Penetration Tester)<br><br>GPEN (GIAC Penetration Tester)<br><br>Pentest+<br><br>LPT (Licensed Penetration Tester – EC-Council)</p>                                                         |
| **Cloud Engineer**                                                                                                                                                                                                                              | <p>Maintain cloud infrastructure<br><br>Serverless infrastructure architecture<br><br>IAM<br><br>Automation<br><br>Cost optimization<br><br>Performance optimization<br><br>Storage</p>                                                                                                                                                                                                                                                                                                                                                                                                  | <p>Networking<br><br>OS – Linux, Windows<br><br>Scripting and programming languages<br><br>Database<br><br>IAM<br><br>Troubleshooting</p>                                                                                                                                                                                                                 | <p>AWS Advanced Networking Specialty<br><br>Azure Network Engineer Associate<br><br>CCSK (Certificate of Cloud Security Knowledge)<br><br>CCSP (Certified Cloud Security Professional)<br><br>Cloud+</p>                                                                                      |
| **Cybersecurity Manager**                                                                                                                                                                                                                       | <p>Operations<br><br>Infrastructure<br><br>Oversee assessments and audits<br><br>Ambassador<br><br>Compliance<br><br>Policies<br><br>Business continuity planning/DR</p>                                                                                                                                                                                                                                                                                                                                                                                                                 | <p>Negotiation<br><br>Time management<br><br>Incident response<br><br>Regulations and standards<br><br>Auditing<br><br>Policies and processes</p>                                                                                                                                                                                                         | <p>CISSP (Certified Information Systems Security Professional)<br><br>CISM (Certified Information Security Manager)<br><br>CRISC (Certified in Risk and Information Systems Control)<br><br>CISA (Certified Information Systems Auditor)<br><br>SC-100: Microsoft Cybersecurity Architect</p> |
| <p><strong>Privacy Analyst</strong><br><br>(Data Privacy Engineer, Data Privacy Architect, Data Privacy Specialist, Platform Privacy Specialist, Privacy Compliance Specialist, Privacy Compliance Analyst, and Privacy and Risk Engineer.)</p> | <p>Assessing the business policies, procedures, and operations to ensure that the organization is meeting its privacy requirements<br><br>Making sure that the business is compliant with regulations or industry standards or laws that they have to follow to protect critical information<br><br>Risk management: help manage legal or operational risk<br><br>Research and analysis of sensitive data and figuring out how to comply with relevant rules<br><br>Training: developing policies and procedures and then training the organization on those policies and procedures</p> | <p>Critical thinking<br><br>Privacy laws and regulations<br><br>Data life cycle management<br><br>Researching – identifying relevant laws, regulations, and standards<br><br>Communication skills<br><br>Gap analysis<br></p>                                                                                                                             | <p>CIPP (Certified Information Privacy Professional)<br><br>GRC Professional<br><br>CDPSE (Certified Data Privacy Solutions Engineer)<br><br>CISA (Certified Information Systems Auditor)</p>                                                                                                 |

These job roles are based on the free Cybrary course [Introduction to IT & Cybersecurity](https://www.cybrary.it/course/introduction-to-it-and-cybersecurity/) (1h 41m | CEU/CPE credits: 2), which is part of a Career Path: Information Security Fundamentals.

### Key takeaways

* Key IT and cybersecurity job roles include sysadmin, netadmin, Incident Responder, and Penetration Tester.
* Key IT and cybersecurity skills include IT networking, operating systems, troubleshooting, virtualization, and scripting languages.

### References

[Introduction to IT & Cybersecurity](https://www.cybrary.it/course/introduction-to-it-and-cybersecurity/) (Cybrary)


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://dti-techs.gitbook.io/practical-foundations-in-cybersecurity/1.-it-career-planning/job-roles-in-it-and-cybersecurity.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
