Tell me about your security experience. What have you been responsible for protecting?
Note: Security interviews reward precision about scope. "I worked in security" covers everything from running a SIEM to writing policy, and the interviewer needs to place you.
Cover:
- The environment. Size of the organisation, number of endpoints and users, on-premises or cloud, and the regulatory context — PCI DSS, GDPR, HIPAA, or ISO 27001 change the job substantially.
- Your discipline. Security operations and monitoring, vulnerability management, application security, identity, incident response, or governance and compliance. These are different careers, and claiming all of them is a warning sign.
- What you actually did. Concrete: tuned detection rules, ran a phishing simulation programme, remediated findings from a penetration test, implemented MFA, or led an incident.
- A measurable outcome. Mean time to detect, patch compliance percentage, phishing click rate, or open critical findings — before and after.





