Skip to content

christiant.io / reference

Cybersecurity Resources

A maintained collection of practical cybersecurity frameworks, training, threat intelligence, detection engineering, DFIR, and career resources.

Cybersecurity Resources

A practical set of resources I would point defenders, engineers, students, and security leaders toward today. This page intentionally avoids hard-coded pricing, resource counts, and other details that become stale quickly.

Last reviewed: September 25, 2026.

Start Here: Frameworks and Live Reference Data

  • NIST Cybersecurity Framework 2.0 - Risk-management framework with implementation guidance, profiles, mappings, and quick-start resources.
  • MITRE ATT&CK - Adversary behavior knowledge base for threat intelligence, detection engineering, hunting, and control validation.
  • CISA Known Exploited Vulnerabilities Catalog - High-value input for vulnerability prioritization because entries represent vulnerabilities known to be exploited in the wild.
  • FIRST EPSS - Probability-oriented vulnerability prioritization signal that complements CVSS and KEV.
  • CIS Controls - Prioritized defensive safeguards and implementation groups.
  • OWASP - Application-security projects including the Top 10, ASVS, testing guidance, cheat sheets, and API security material.

Hands-on Learning

Free or broadly accessible

Structured lab platforms

Detection Engineering and Security Operations

  • Sigma - Portable detection-rule format and community rule ecosystem.
  • YARA - Pattern-matching language widely used for malware identification and file analysis.
  • Suricata - Network IDS/IPS and network-security monitoring.
  • Zeek - Network telemetry and protocol analysis.
  • Security Onion - Integrated network security monitoring and investigation platform.
  • osquery - SQL-style endpoint instrumentation.
  • Velociraptor - Endpoint visibility, collection, DFIR, and threat hunting.
  • Volatility 3 - Memory forensics framework.
  • Timesketch - Collaborative forensic timeline analysis.

christiant.io references

Threat Intelligence and Vulnerability Research

Use a mix of government advisories, vendor research, and primary technical reporting rather than relying on a single feed.

Government and public-interest sources

Research teams worth following

Vulnerability Management

A useful prioritization workflow generally combines:

  1. Exposure - Is the affected product actually present and reachable?
  2. Known exploitation - Check CISA KEV and credible threat reporting.
  3. Exploit likelihood - Use signals such as EPSS.
  4. Technical severity - Use CVSS and vendor analysis as context, not the only decision point.
  5. Business impact - Identity, privilege, data, criticality, and blast radius.
  6. Compensating controls - EDR, segmentation, WAF, hardening, or feature disablement.

Useful sources:

Software Supply Chain and Secure Development

Cloud, Containers, and Infrastructure

AI and Agent Security

AI tooling changes quickly, so prefer current documentation and observed behavior over static model assumptions.

The two benchmark explorers intentionally use Artificial Analysis source measurements directly for intelligence/performance, cost per task, and token utilization. They do not apply local GPT price modifiers.

Career and Workforce

  • NIST NICE Framework - Common language for cybersecurity work roles, tasks, knowledge, and skills.
  • CyberSeek - U.S. cybersecurity career pathways and workforce data.
  • SANS / GIAC - Deep technical training and certifications.
  • ISC2 - Security certifications and professional development.
  • CompTIA Cybersecurity - Foundational and intermediate certification paths.
  • OffSec - Hands-on offensive-security training and certifications.

For interview preparation on this site:

Research and Conference Material

Arizona and Phoenix Community

For local conferences, meetups, professional groups, and community events, see the maintained Phoenix Cybersecurity Events & Community page.


If a resource on this page becomes stale or materially changes, the goal is to replace or remove it rather than preserve outdated pricing, membership counts, or marketing claims.