<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: aurinsomnia</title><link>https://news.ycombinator.com/user?id=aurinsomnia</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Wed, 08 Apr 2026 14:34:05 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=aurinsomnia" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by aurinsomnia in "Tell HN: Information security audit / consulting is largely a scam industry"]]></title><description><![CDATA[
<p>I am close friends with someone who has been an IT/Cybersecurity Auditor for several years now and is apparently doing well (receiving praise/bonuses from upper management recently), despite on multiple occasions demonstrating they lack basic technical knowledge and don't understand what they are auditing. Apparently they just have a list of questions they ask and then fill out a spreadsheet despite having no technical understanding of what they are asking; e.g. on multiple occasions this person has said to me that they don't understand the difference between a server and a database. It boggles my mind that someone can be responsible for auditing a company when they don't understand simple concepts like servers or databases, but who am I to judge?</p>
]]></description><pubDate>Mon, 11 Jul 2022 04:50:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=32052331</link><dc:creator>aurinsomnia</dc:creator><comments>https://news.ycombinator.com/item?id=32052331</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=32052331</guid></item></channel></rss>