Skip to content

Instantly share code, notes, and snippets.

View ktstevenson's full-sized avatar

Katherine Stevenson ktstevenson

View GitHub Profile
@ktstevenson
ktstevenson / MIRRworkshop.md
Created May 17, 2023 20:19 — forked from mzbat/MIRRworkshop.md
Mock Interview & Resume Review Workshop

Mock Interview & Resume Review Workshop

##Background September 2016, I tweeted that I'd volunteer time to help a few people at DerbyCon who struggle with anxiety during interviews. I'd just come off of a 2 week hiring sprint and saw a lot of candidates with great technical skills who failed miserably when it came to answering "soft" questions. I thought spending a couple of hours with struggling folks at DerbyCon would be a simple way to give back to the community that's given me so much.

Response was overwhelming and it became pretty clear that the community needed more help than I would be able to give in a few short hours. I published 2 Google forms - One for volunteers to help and the other for participants. Somewhere along the way, DerbyCon organizers caught wind of the project and generously offered a room to conduct mock interviews and resume reviews. Just like that, a workshop was born.

I'm setting up this Gist with the hope that sharing my format, forms, guidelines, and lessons learned will insp

@ktstevenson
ktstevenson / CheckDefenderAVHealthState.kusto
Created November 29, 2021 13:58 — forked from f-bader/CheckDefenderAVHealthState.kusto
Advanced hunting query to check on a few vital Defender AV health settings
// Check Defender AV related health issues
// Microsoft Defender Antivirus is disabled - scid-2010
// Microsoft Defender Antivirus definitions are outdated - scid-2011
// Microsoft Defender Antivirus real-time behavior monitoring is disabled - scid-91
// Microsoft Defender Antivirus real-time protection is disabled - scid-2012
// Microsoft Defender Antivirus cloud service connectivity is impaired - scid-2014
DeviceTvmSecureConfigurationAssessmentKB
| where ConfigurationName contains "Defender"
| join kind=innerunique DeviceTvmSecureConfigurationAssessment on ConfigurationId
| where ConfigurationId in ("scid-2010","scid-2011","scid-2012","scid-91","scid-2014")