-->

whaust

2020年11月17日 星期二

Palo Alto PSE-Strata

 1) Which two profile types can block a C2 channel? (Choose two.)

a) Anti-Spyware

b) Certification

c) Command and Control

d) Decryption

e) URL Filtering


2) Which Prisma product can secure user network traffic against potential threats?

a) Next Generation Firewall

b) Security Subscriptions

c) Panorama

d) SD-WAN

3) Which Prisma product detects zero-day malware protection?

a) Next Generation Firewall

b) Security Subscriptions

c) Panorama

d) SD-WAN


4) Which Prisma products implements and manages software-defined networking?

a) Next Generation Firewall

b) Security Subscriptions

c) Panorama

d) SD-WAN


5) Which Palo Alto Networks product directly protects corporate laptops people use at work?

a) Strata next-generation firewall

b) Cortex XSOAR

c) Panorama

d) WildFire


6) Which NGFW feature detects zero-day malware?

a) GlobalProtect

b) WildFire

c) URL Filtering

d) Antivirus Security Profile


7) Which two steps are essential parts of the PPA process? (Choose two.)

a) a structured interview with the customer about their security prevention capabilities

b) upload of a file generated by the customer’s firewall capturing the threats they are facing

c) a report to the customer about how to improve their security posture

d) a discussion about expectations of threat prevention in a proof-of-concept

e) a head-to-head comparison of NGFW detected threats vs their current solution(s).

8) Which report provides compelling evidence for existing security gaps for Prospects?

a) BPA

b) PPA

c) BPA Heatmap

d) SLR

9) Which Panorama deployment mode collects forwarded log events without firewall management capability?

a) Panorama mode

b) Legacy mode

c) Management only mode

d) Log collector mode


10) Which deployment mode is supported only by a virtual Panorama?

e) Panorama mode

f) Legacy mode

g) Management only mode

h) Log collector mode

11) Which of the following determines Dynamic user group membership?

i) Security subscription feeds

j) XML API

k) group type

l) tags

12) Which of the following security profiles provides protection against documents containing zero-day malware?

a) Antivirus

b) Anti-spyware

c) Vulnerability protection

d) URL filtering

e) File blocking

f) Wildfire Analysis

g) Data filtering

13) Which of the following security profiles provides protection against a web connection to a known command and control site? (Choose two.)

a) Antivirus

b) Anti-spyware

c) Vulnerability protection

d) URL filtering

e) File blocking

f) Wildfire Analysis

g) Data filtering

14) Which of the following security profiles provides protection against transferring documents containing credit card numbers?

a) Antivirus

b) Anti-spyware

c) Vulnerability protection

d) URL filtering

e) File blocking

f) Wildfire Analysis

g) Data filtering

15) Which of the following security profiles provides control for the types of web sites a user can access?

a) Antivirus

b) Anti-spyware

c) Vulnerability protection

d) URL filtering

e) File blocking

f) Wildfire Analysis

g) Data filtering

16) Which technology identifies potentially infected hosts by correlating user and network activity data in Threat, URL, and Data Filtering logs?

a) Botnet report

b) Correlation object

c) DNS security

d) Autofocus

e) DNS Sinkhole

17) Which of the following processing tasks shows an advantage of a file proxy engine over a stream-based single-pass engine?

e) mapping IP addresses to users

a) using protocol decoders, decryption, and heuristics to identify applications

b) blocking data sent over traditional email protocols

c) scanning traffic for vulnerability exploits, viruses, and spyware

18) Real-time threat signatures used by the Strata firewall are generated by what service?

a) WildFire

b) AutoFocus

c) Expedition

d) Prisma Access


19) If a customer is interested in software-defined networking integrating with security services appropriately for specific use-cases, which reference architecture would be your best reference?

a) Public Cloud

b) Secure Access Service Edge

c) Security Operations

d) Private Data Center

e) Zero Trust

f) Automation


20) Which interface mode do you use to generate the Stats Dump file that can be converted into an SLR? Assume that you want to make the evaluation as non-intrusive as possible.

a) tap

b) virtual wire

c) Layer 2

d) Layer 3


21) Which two success tools are most appropriate for a prospective customer that is using a competitor’s offerings but has no security prevention strategy? (Choose two.)

a) Expedition

b) Prevention Posture Assessment

c) Security Lifecycle Review

d) Best Practice Assessment with Heatmaps

e) Data Center Segmentation Strategy Analyzer

22) Which file types are not supported as an upload sample for file upload by WildFire from the wildfire.paloaltonetworks.com/wildfire/upload page?

a) iOS applications

b) Android applications

c) Windows applications

d) Microsoft Excel files


23) Which kind of attack cannot be stopped by the Palo Alto Networks Security Operating Platform?

a) attacks through SaaS applications, such as exfiltration through Box

b) attacks that do not cross the firewall, regardless of source or destination

c) attacks based on social engineering that mimic normal user behavior

d) denial-of-service attacks from a trusted source

e) intrazone attacks, regardless of source or destination

24) WildFire functionality is like that of a sandbox. Is the statement an accurate description?

a) Yes, WildFire functionality is exactly that of a virtual sandbox in the cloud, provided to test files that customers upload or download.

b) No, WildFire does not supply sandbox functionality, although it competes with products that do.

c) No, WildFire provides dynamic analysis, machine learning, and other techniques along with sandbox functionality.

d) Yes, WildFire provides all its functionality as part of its virtual-physical hybrid sandbox environment

25) Which option is an example of how the next-generation firewall can provide visibility and enforcement around SaaS applications?

a) Through partnership with SaaS application vendors, special virtual firewalls that support a subset of full firewall functionality are used inside the SaaS applications themselves.

b) A built-in default security rule in the firewall blocks dangerous SaaS applications based on an automatically updated database of dangerous SaaS applications.

c) Built-in default functionality in the firewall sends all files sent or received by SaaS applications to WildFire.

d) The firewall can filter SaaS applications based on whether they comply with industry certifications such as SOC1, HIPAA, and FINRAA.

26) When a cloud deployment is secured, which role does the next-generation firewall play?

a) A member of the VM-Series is attached to each VM in the cloud environment, to stop malware, exploits, and ransomware before they can compromise the virtual systems they are attached to.

b) The NGFW exports its Security policy through Panorama, which in turn distributes that policy to the cloud based Prisma SaaS service that enforces the NGFW Security policy against each VM used in the cloud environment.

c) The NGFW exports its Security policy to WildFire, which lives in the cloud and enforces the NGFW Security policy throughout the cloud environment.

d) The NGFW is used to consistently control access to applications and data based on user credentials and traffic payload content for private or public cloud, internet, data center, or SaaS applications.

27) Which dedicated High Availability port is used for which plane in HA Pairs?

a) HA1 for the data plane, HA2 for the management plane

b) HA1 for the management plane, HA2 for the data plane

c) MGT for the management plane; HA2 as a backup

d) HA1 for the management plane, HA2 for the data plane in the PA-7000 Series

28) Which value should be used as a typical log entry size if no other information is available about log sizes?

a) 0.5KB

b) 0.5MB

c) 0.5GB

d) 0.5TB

29) Which feature is not supported in active/active (A/A) mode?

a) IPsec tunneling

b) DHCP client

c) link aggregation

d) configuration synchronization

30) Which two updates should be scheduled to occur once a day? (Choose two.)

a) Antivirus

b) PAN-DB URL Filtering

c) WildFire

d) Applications and Threats

e) SMS channel


31) What does the phrase “Prisma Access extends security to remote network locations and mobile users” mean in the context of the security that firewalls provide to a network?

a) Prisma Access independently provides the same type of protection as the firewalls, rebuilt for the various infrastructures used for remote network locations and mobile users.

b) Prisma Access independently provides the exact same protection as the firewalls, rebuilt for the various infrastructures used for remote network locations and mobile users.

c) Prisma Access securely routes traffic for remote network locations and mobile users through the same PAN-OS based firewalls used to protect the network.

d) Prisma Access leverages native cloud security and other security infrastructure to provide security to remote network locations and mobile users.

32) A customer’s interest in prevention, detection and response for Security Operations is best addressed by which reference architecture?

a) Public Cloud

b) Secure Access Service Edge

c) Security Operations

d) Private Data Center

e) Zero Trust

f) Automation


33) Which security posture is most likely to stop unknown attacks?

a) allow all the traffic that is not explicitly denied

b) deny all the traffic that is not explicitly allowed

c) deny all the traffic that is not explicitly allowed from the outside, and allow all the traffic that is not explicitly denied from the inside

d) deny all the traffic that is not explicitly allowed from the inside, and allow all the traffic that is not explicitly denied from the outside


34) Which profile type is used to protect against most protocol-based attacks?

a) Antivirus

b) URL Filtering

c) Vulnerability Protection

d) Anti-Spyware


35) How does an administrator specify in the firewall that certain credentials should not be sent to certain URLs?

a) with a URL Filtering Profile

b) with User-ID

c) with App-ID

d) with a Credential Theft Profile


36) Which SD-WAN configuration element contains data used to trigger a new path selection based on excessive latency?

a) SD-WAN Interface Profile

b) SD-WAN Interface

c) Path Quality Profile

d) Traffic Distribution Profile


37) Which Panorama screen provides an overall status display of SD-WAN Errors and their impacts?

a) SD-WAN Traffic Characteristics

b) SD-WAN Link Characteristics

c) SD-WAN Monitoring

d) SD-WAN Impacted Clusters

38) In Panorama, which policy gets evaluated first?

a) device group pre-rules

b) device group post-rules

c) shared pre-rules

d) shared post-rules

e) local firewall rules

39) Can the same rule allow traffic from different sources on different firewalls?

a) No, rules mean the same on all firewalls that receive the same policy.

b) No, because device groups are pushed from Panorama to all firewalls.

c) Yes, because different firewalls can have different zone definitions.

d) Yes, because there could be clauses in a rule with effects limited to a specific device group.

40) Which is not an advantage of using Panorama?

a) centralized management

b) higher throughput on the firewalls

c) centralized view of collected logs

d) automatic event correlation

41) How is the Cortex Data Lake integration with Panorama facilitated?

a) No integration is necessary; data flows from Panorama to the Cortex data lake and vice versa.

b) A Panorama plugin is installed in the Cortex Data Lake.

c) A Cloud Services plugin is installed in Panorama.

d) Agents run in both the Cortex Data Lake and Panorama.

42) What is the maximum number of servers supported by a single User-ID agent?

a) 10

b) 50

c) 100

d) 500

43) How does the firewall know that a specific connection comes from a specific user?

a) Every connection has a user ID encoded in it.

b) User-ID is supported only in protocols that use user authentication, which provides the user identity to the firewall and the back end.

c) The firewall always uses the IP address in the IP header to locate the user ID, but this initial identification is overridden by additional techniques such as HTTP proxies that provide the client’s IP address in the HTTP header.

d) Usually the firewall uses the IP address in the IP header to locate the user ID, but additional techniques are available as alternatives such as HTTP proxies providing the client’s IP address in the HTTP header.


44) A customer has a proprietary user authentication system that is not supported by User-ID. Can you provide User-ID information to their firewall, and if so, how?

a) It is impossible. The customer will need to upgrade to something more standard.

b) It can be done, but only for HTTP applications because HTTP supports XFF headers.

c) It can be done using the XML API.

d) It can be done, but it requires programming that can be performed only by the Palo Alto Networks Professional Services organization.


45) Should you limit the permission of the user who runs the User-ID agent? If so, why?

a) Yes, because of the principle of least privilege. You should give processes only those permissions that are necessary for them to work.

b) Yes, to an extent. You can give it most privileges, but there is no actual user, so you should not let it start an interactive login.

c) Yes, to an extent. You can give it most privileges, but there is no actual user, so you should not let it have remote access.

d) No, there is nothing wrong with using the administrator’s account.


46) Which types of file does WildFire analyze as executables? (Choose three.)

a) JAR

b) Portable Document Format

c) MP4

d) Portable Executable

e) Office Open XML (.docx)

f) Executable and Linkable Format

g) BMP


47) Which reasons could cause a firewall that is fully configured, including decryption, to not recognize an application? (Choose three.)

a) The application is running over SSL.

b) There is no App-ID signature for an unanticipated application.

c) The application is running over ICMP.

d) The application is running over UDP.

e) A TCP handshake completed but no application traffic reached the firewall.

f) Payload reached the firewall, but not enough data packets to identify the application.


48) Which decryption mode or modes require(s) the private key of the destination server? (Choose a single answer.)

a) Forward Proxy

b) Inbound Inspection

c) Both Forward Proxy and Inbound Inspection

d) SSH Proxy


49) Which parameter cannot be used in a Decryption policy rule?

a) User-ID

b) App-ID

c) Source Zone

d) Destination Zone

2020年11月10日 星期二

[PSE-Strata] Palo Alto Networks System Engineer Professional – Strata Exam

 NO.1 Which two features are found in a Palo Alto Networks NGFW but are absent in a legacy firewall product? (Choose two.)

A. Policy match is based on application

B. Traffic is separated by zones

C. Traffic control is based on IP port, and protocol

D. Identification of application is possible on any port 


Answer: A,D


NO.2 When log sizing is factored for the Cortex Data Lake on the NGFW, what is the average log size used in calculation?

A. 18 bytes

B. 8MB

C. 1500 bytes

D. depends on the Cortex Data Lake tier purchased


Answer: C

Explanation:

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClVMCA0


NO.3 Which license is required to receive weekly dynamic updates to the correlation objects on the firewall and Panorama?

A. URL Filtering on the firewall, and MineMeld on Panorama

B. WildFire on the firewall, and AutoFocus on Panorama

C. GlobalProtect on the firewall, and Threat Prevention on Panorama

D. Threat Prevention on the firewall, and Support on Panorama 


Answer: D


NO.4 An endpoint, inside an organization, is infected with known malware that attempts to make a command-and-control connection to a C2 server via the destination IP address Which mechanism prevents this connection from succeeding?

A. DNS Proxy

B. Anti-Spyware Signatures

C. Wildfire Analysis

D. DNS Sinkholing 


Answer: D


NO.5 A service provider has acquired a pair of PA-7080s for its data center to secure its customer base's traffic. The server provider's traffic is largely generated by smart phones and averages 6.000,000 concurrent sessions.

Which Network Processing Card should be recommended in the Bill of Materials?

A. PA-7000-40G-NPC

B. PA-7000-20GQ-NPC

C. PA-7000-20GQXM-NPC

D. PA-7000-20G-NPC

Answer: C


NO.6 Which three methods used to map users to IP addresses are supported in Palo Alto Networks firewalls? (Choose three.)

A. eDirectory monitoring

B. Active Directory monitoring

C. TACACS

D. Lotus Domino

E. SNMP server

F. RADIUS

G. Client Probing


Answer: C,F,G

Explanation:

https://www.paloaltonetworks.com/documentation/80/pan-os/pan-os/user-id/user-id-concepts/user-mapping


2020年10月29日 星期四

重置KRBTGT 帳號 (KRBTGT account reset)

#KRBTGT   #Zerologon


1. 確認KRBTGT帳號密碼最後設定日期是否在 180 天內

在  DC , 用 Powershell 

> Get-ADUser krbtgt -Property PasswordLastSet

確認 Password History 低於 180 天.


2. 重置KRBTGT帳號密碼

a. 按一下 [ 開始],指向 [ 主控台],指向 [系統 管理工具],然後按一下 [ Active Directory 消費者和電腦]。

b. 按一下 [檢視]****,然後按一下 [進階功能] 。

c. 在主控台樹中,按兩下 [網域] 容器,然後按一下 [ 使用者]。

d. 在詳細資料窗格中,以滑鼠右鍵按一下 krbtgt 使用者帳戶,然後按一下 [ 重設密碼]。

e. 在 [ 新密碼] 中輸入新密碼,在 [ 確認密碼] 中重新輸入密碼,然後按一下 [確定]。 您指定的密碼並不重要,因為系統會自動產生與您指定的密碼無關的強式密碼。




3. KRBTGT帳戶說明

KRBTGT帳戶是本地默認帳戶,充當密鑰分發中心(KDC)服務的服務帳戶。該帳戶無法刪除,並且帳戶名稱也無法更改。無法在Active Directory中啟用KRBTGT帳戶。

根據RFC 4120的規定,KRBTGT也是KDC用於Windows Server域的安全主體名稱。KRBTGT帳戶是KRBTGT安全主體的實體,並且在創建新域時自動創建。

Windows Server Kerberos身份驗證通過使用帶有對稱密鑰的特殊Kerberos票證授予票證(TGT)來實現。該密鑰來自請求訪問的服務器或服務的密碼。僅Kerberos服務知道KRBTGT帳戶的TGT密碼。為了請求會話票,必須將TGT提交給KDC。TGT從KDC發布給Kerberos客戶端。

4. KRBTGT帳戶維護注意事項

強密碼會自動分配給KRBTGT帳戶。確保定期更改密碼。KDC帳戶的密碼用於派生用於加密和解密已發出的TGT請求的密鑰。域信任帳戶的密碼用於導出域間密鑰,用於加密推薦票證。

有時,例如當嘗試更改KRBTGT帳戶上的密碼失敗時,需要重置KRBTGT帳戶密碼。為了解決此問題,您可以使用Active Directory用戶和計算機兩次重置KRBTGT用戶帳戶密碼。您必須重置密碼兩次,因為KRBTGT帳戶在密碼歷史記錄中僅存儲了兩個最新密碼。通過兩次重置密碼,可以有效地清除密碼歷史記錄中的所有密碼。

重置密碼要求您或者是Domain Admins組的成員,或者必須具有適當的權限委派。此外,您必須是本地Administrators組的成員,或者必須已委派了適當的權限。

重置KRBTGT密碼後,請確保將(Kerberos)Key-Distribution-Center事件源中的事件ID 6寫入系統事件日誌。

5. 安全注意事項

重置KRBTGT帳戶密碼也是一種最佳做法,以確保新還原的域控制器不會與受感染的域控制器進行複制。在這種情況下,在分佈於多個位置的大型林恢復中,您不能保證所有域控制器都已關閉,並且如果關閉它們,則在執行所有適當的恢復步驟之前,不能再次重新引導它們。重置KRBTGT帳戶後,另一個域控制器無法使用舊密碼來複製此帳戶密碼。

懷疑KRBTGT帳戶的域受到損害的組織應考慮使用專業的事件響應服務。恢復帳戶所有權的影響是整個領域的,需要大量勞動,這是較大恢復工作的一部分。

KRBTGT密碼是所有Kerberos信任鏈都可信任的密鑰。重置KRBTGT密碼類似於使用新密鑰續訂根CA證書,並且立即不信任舊密鑰,導致幾乎所有後續的Kerberos操作都將受到影響。

對於所有帳戶類型(用戶,計算機和服務)

  • 所有已發行和分發的TGT均將無效,因為DC將拒絕它們。這些票證已使用KRBTGT加密,因此任何DC都可以對其進行驗證。更改密碼後,票證將失效。

  • 在需要重新驗證服務票證之前,登錄用戶的所有當前已驗證會話(基於其服務票證)已建立到資源(例如文件共享,SharePoint網站或Exchange服務器)的會話良好。

  • NTLM身份驗證的連接不受影響



Source :  https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2012-R2-and-2012/dn745899(v=ws.11)?redirectedfrom=MSDN


2020年10月17日 星期六

EACの実際の値の計算方法

 推定完了値完了時の推定(EAC)

EACの計算方法は、現在の実際のコスト(実際のコスト(AC))を累積し、次に可能なコスト(推定完了(ETC))を計算することです。

式として記述
EAC = AC + ETC

そしてETCにはいくつかの仮定があります

A.フォローアップ計画が完全に信頼できないと仮定して、完全に再見積もりします

このとき、ETCは各ジョブの残存コストに応じて累積されます

言い換えれば、各仕事に何人の人が関与するか(リソース)、何時間の人員が投資されるか(残りの労働単位)を再評価するとします。

現時点では、残りの労働単位*各リソースの単価は、作業の残りのコストを取得します

すべての残りのコストの累積はETCを取得します

B.ベースラインの計画に従って継続すると仮定する

計算方法は

各ジョブの(完了時の元の予算-現在の実績値(獲得値))をパフォーマンスファクターで変換した後、各ジョブのETCを取得し、最終的に累積します。

これはそれが式として書かれている方法です

ETC =(BAC-EV)* PF

現時点では、PFには4つの仮定があります。

I.楽観的な仮定

PF = 1

現時点では、BAC-EVが次に費やされるすべてのお金であると想定しています。

これは、現在の過剰支出(または予算不足)が異常であり、将来的に元の計画に従うことができることを意味します。

例:元の推定100人時の作業、現在の完了度が最大20人時であるとすると、ETC = 100-20 = 80人時となります。

この方法では、実際の投資状況を考慮せず、20人時の重量比を達成しています。

II。客観的な仮定

PF = 1 / CPI

これは、現在のコスト使用状況によるものです(CPIは、投資された1ドルの価値を表す、お金を使う効率です)。効率がわずか80%であると仮定すると、この効率は引き続き発生すると想定されます。

例:100人時の作業の当初の見積もり、20人時の重量比の現在の完了度、およびCPI = 0.8であると仮定します。

次に、ETC =(100-20)/0.8 = 100人力時間です。これは、前の人員容量が当初の見積もりの​​80%しかないため、次の80時間の作業には実際に100人力時間が必要であることを意味します。

III。保守的な仮定

PF = 1 /(CPI * SPI)

コスト使用状況に加えて、スケジュール状況も考慮されます。

コスト利用状況が良くない場合(CPI <1)、時間経過状況が良くない場合(SPI <1)、PFは非常に控えめな調整ウェイトになります。非常に高いETCが計算されます。

IV。カスタム

PF =カスタム値

通常、パーティAがパーティBのパフォーマンスを評価するときに、契約で定義された値に使用されます。


実際の値の基本式

時間経過の差:SV = EV – PV
コストの差:CV = EV – AC
時間経過パフォーマンスインジケーター:SPI = EV / PV
コストパフォーマンスインジケーター:CPI = EV / AC
推定完了コスト:EAC = AC +(* BAC-EV )x * PF
完了率:パフォーマンス%完了=(累積EV)/ BAC

2020年9月28日 星期一

The Top 10 OWASP vulnerabilities in 2020

 

  • Injection
  • Broken Authentication
  • Sensitive Data Exposure
  • XML External Entities (XXE)
  • Broken Access control
  • Security misconfigurations
  • Cross Site Scripting (XSS)
  • Insecure Deserialization
  • Using Components with known vulnerabilities
  • Insufficient logging and monitoring

2020年9月10日 星期四

La "Génération Z" entre en grand nombre sur le lieu de travail! Enquête exclusive: les travailleurs nés après 95 ans sont plus pragmatiques et plus durs que vous ne le pensez?

La génération Z, née après 1995, a montré un caractère unique différent de la génération millénaire.


La génération Z, née après 1995, a connu le tremblement de terre de 921 et les turbulences financières, et n'était pas étrangère aux mauvaises nouvelles sur le lieu de travail; mais en même temps, 1995 a également été la première année d'Internet et Google a officiellement enregistré des domaines en 1997. Le développement d'Internet , Façonner une nouvelle génération de "natifs du numérique", montrant une personnalité différente de la génération du millénaire.

Afin de comprendre l'apparence de la génération Z, «Cheers Magazine» et Dcard, la plus grande plate-forme sociale en ligne de Taïwan, ont conjointement mené une «enquête complète de la génération Z sur dix milliers» et mené une enquête par questionnaire pour les 18-24 ans. Cette enquête comporte deux indicateurs principaux. Le premier est l’enquête la plus vaste menée auprès de la génération Z de Taïwan avec un total de 11 129 participants. Le second est qu’elle a les opinions les plus locales et reflète vraiment les aspirations de la génération Z de Taïwan.

D'après l'enquête, la génération Z est assidue et pragmatique. Quatre-vingt-sept pour cent des personnes interrogées ont une expérience de travail et près de 10% des personnes interrogées travaillent depuis trois à cinq ans. La grande majorité sont des employés de base, mais certains 3% sont devenus des superviseurs ou des chefs d'entreprise.

Voir la communication: la génération ultra-fluide qui aime la communauté, les images et l'audio

La génération Z est habituée à la communication communautaire, audiovisuelle et expérientielle. À partir de la question à choix multiples «Quels sont vos canaux d'information les plus fréquemment utilisés chaque jour» (Figure 1), on constate que jusqu'à 96% sont obtenus à partir de plateformes sociales, suivis des moteurs de recherche (73,8%) et des logiciels de communication (69,5%) ). En examinant de plus près le «comportement d'utilisation de la communauté» (Figure 2), nous pouvons constater que la tendance Facebook n'est plus. La plate-forme sociale la plus populaire est Instagram (86,5%), la deuxième est YouTube (73%) et la troisième est Dcard. (50,3%) surpassent Facebook (50,1%). Cela montre que la génération Z poursuit une communication graphique audiovisuelle plus privée et interactive.

En termes de communication interpersonnelle, le mode le plus utilisé de la génération Z est «Texte en ligne ou autocollants (48,4%)», suivi de «l'explication en face à face (41%)». Seulement 5,1% des personnes ont l'habitude d'appeler.

Graphique 1 - Stratosphère du mur de bronze et du mur de fer: les trois premiers proviennent d'amis et de recherche personnelle

Figure 2 - La migration sociale: IG se fait des amis, YouTube trouve des divertissements, discussion sur Dcard, la moitié de Facebook

Regard vers l'avenir: un groupe ethnique émergent diversifié et non modèle qui se bat et marche

En ce qui concerne les modèles à succès (figure 3), la principale caractéristique de la génération Z est «pas de modèle (19,1%)», suivie de «Singer Jolin (15,4%)» et «emplois (14,8%)». Montre ses valeurs universellement pluralistes, ouvertes et sans autorité.

Cette caractéristique se retrouve également sous l'aspect du comportement des consommateurs. Dans les questions à choix multiples «Facteurs qui influencent le plus votre achat d'un certain produit», les trois premiers sont «rentabilité (76,9%)», «utilisation du bouche-à-oreille sur Internet (69,4%)» et «valeur de la reconnaissance pratique (comme le commerce équitable) , Produits verts) (45,1%) ». Il convient de noter pour les spécialistes du marketing que les queues de grue «recommandation de célébrités sur Internet (8,7%)» et «approbation (8%)» montrent que les méthodes de marketing de la génération Z pour les célébrités ne paient pas nécessairement la facture.

En ce qui concerne les plus grandes attentes de la génération Z pour le lieu de travail, les trois principales choses qu’elle souhaite accomplir avant l’âge de 30 ans sont: «Trouver une aspiration de carrière (19,5%),« Le salaire annuel rompt un million (17,1%) »,« Avoir Propre entreprise (14%) ".

En réponse à «l'imagination d'une vie meilleure?», 40,9% des répondants ont mis l'accent sur «la liberté de richesse», suivi de «l'équilibre entre vie professionnelle et vie privée (27,3%)», «trouvez une carrière qui vous plaît et se spécialisent dans l'investissement (16,1%) ».

Graphique 3-Je définis ma valeur: privation d'autorité, pas de modèle

Regardez le lieu de travail: le plus occupé et le plus pragmatique

Dans la question à choix multiple «Le vocabulaire qui décrit le mieux votre étape de vie en ce moment» (Figure 4), plus de 60% des répondants pensent que «occupé (65%)» et «perdu (60,8%)» décrivent le mieux leur Au stade de la vie, la troisième place est «l'irritabilité (33,8%)»; quant au «plus grand facteur de stress de la vie», 40% des répondants pensent qu'il s'agit d'un «développement futur incertain», suivi du «revenu actuel (11,4%) ) "; Près de 30% des personnes interrogées se considèrent comme" une génération avec des niveaux élevés de responsabilité et de pression (29,7%) ", suivie par" une génération avec un avenir incertain (26%) ".

La génération Z s'est penchée sur «l'objectif principal du travail» et 64,2% pensaient que c'était «gagner de l'argent», suivi par «la réalisation de soi (18,8%)». Lu Zhifang, rédacteur en chef du magazine "Cheers", a analysé que le caractère pragmatique de l'ère Z découle de la crise financière et de divers défis de l'emploi et de mauvaises nouvelles au cours de leur processus de croissance, et ils évoluent naturellement vers le pragmatisme.

Le but du travail est le salaire et la réalisation de soi est le second.

73% de ceux qui sont prêts à travailler à l'étranger, la principale raison étant "de gagner un salaire plus élevé (68,9%)", suivi par "le désir d'une expérience de vie à l'étranger (58,7%)" et "cultiver la compétitivité internationale (52,9%)" . Lu Zhifang a souligné que la mobilité et la volonté transnationale de la génération Z sont plus fortes que celles de la génération précédente, ce qui montre également l'avènement des lieux de travail régionaux.

À la question à choix multiples «Quels facteurs vous incitent à rejoindre une entreprise?», La plupart des répondants ont répondu: «Le système de salaire et de bonus est excellent (71,5%)», «L'ambiance organisationnelle est ouverte et vivante (59,2%)» et «Promotion et formation Système complet (48,2%) ». À cet égard, Lu Zhifang a également lancé un avertissement à l'entreprise, soulignant que parmi toutes les options, «la réputation de la marque ou du chef d'entreprise» est la dernière, seulement 3,7%.

Graphique 4 - Générations d'inquiétude occupées et étourdies

Regardez le travail: haute sensibilité, respect de soi et ne payez que pour une signification personnelle

Quant au «Comment est-ce que je vois la réussite au travail» (graphique 5), «Pratiquez vos intérêts et vos rêves (66,8%)» et «Je me sens heureux au travail (57,7%)» et «J'ai un salaire élevé (42,2%)» , Occupant les trois premiers.

«Pour la génération Z, pragmatisme et rêves pratiques coexistent, contradictoires et harmonieux, très différents de la génération précédente», analyse Lu Zhifang.

Quant à la question à choix multiple «désaccord sur le concept de travail», la première recommandation est «Effectuer de manière proactive des travaux au-delà du cadre de l'emploi (61%)», suivie de «Donner la priorité aux tâches de l'entreprise, même si cela entre en conflit avec la vie personnelle (51,1%) ) »Et« Les collègues et les superviseurs n'ont pas quitté le travail, ils ne devraient donc pas partir (51,1%) ». Même pour 3% des managers de la génération Z dans le questionnaire, l'analyse croisée avec cette question montre que les trois premiers restent inchangés, à peine inférieurs à 5 points de pourcentage, ce qui montre que c'est la pensée commune de la génération Z.

Dans la «Critique déraisonnable de la génération Z» (pièce 6), les répondants étaient les plus réticents à se faire dire «Résistance insuffisante à la pression et à la frustration (41,6%)», suivi de «Je n'ai pas eu la patience d'attendre ou d'endurer des épreuves ( 34,4%) », et le troisième est« le recours aux médias sociaux dans tout, mais manque de capacité pratique de résolution de problèmes (30,3%) » Parlant des sujets les plus concernés à l'heure actuelle, les résultats des questions à choix multiples qui les intéressent le plus sont «Salaire de départ et milieu de travail des jeunes (66,4%)», «Justice sociale (40,9%)» et «Compétitivité nationale (30,2%)».

Graphique 5-Le succès consiste à pratiquer vos rêves et à gagner de l'argent de manière pragmatique

Graphique 6 - On dit que la haine est insuffisamment résistante au stress et incapable de supporter les épreuves

Le magazine "Cheers" et Dcard, la plus grande plate-forme sociale en ligne de Taïwan, ont fait la promotion de la "Génération Z Ten Thousands Survey", espérant que la société aura une compréhension et une compréhension plus approfondies de la Génération Z et augmentera la communication et le dialogue positifs. Lu Zhifang a suggéré que les gestionnaires doivent faire face aux problèmes de gestion de "cinq générations dans la même maison", et que le côté entreprise devrait raccourcir le temps d'attente pour les récompenses, fournir des mécanismes de promotion clairs et offrir des récompenses en "brisant la barrière" et en dialoguant avec la génération Z pragmatique.

Quant à la puissance numérique, la génération Z est immergée dans la stratosphère du monde, donc la consommation évolue également vers la segmentation. Le langage du marketing et de la communication doit être changé, car ils sont plus familiers avec la technologie qu'avec les gens. Par rapport au texte brut, les images audiovisuelles sont plus accrocheuses. Lu Zhifang a suggéré qu'il était nécessaire de faire bon usage des médias sociaux pour communiquer et recruter des talents, et de fournir une atmosphère de groupe et des mesures conviviales pour les nouveaux arrivants, afin d'avoir une chance de devenir une entreprise chanceuse aux yeux de la génération Z.

※ Instructions pour la méthode d'enquête: Cette enquête a été menée auprès des 18-24 ans du 9 au 21 octobre 2019 via Cheers Magazine et la plateforme Dcard. Un total de 11 129 questionnaires valides ont été répondus.

2020年9月7日 星期一

SA, SD และ SE

 


SA, SD และ SE

เมื่อวางแผนโครงการพัฒนาซอฟต์แวร์ฉันมักจะพบผู้ช่วยถามคำถามว่า SA, SD และ SE ต่างกันอย่างไร

ฉันเคยมีคำถามนี้มาก่อนและมันค่อนข้างน่างงความแตกต่างระหว่างการวิเคราะห์ระบบและการออกแบบระบบและวิศวกรรมระบบคืออะไรความแตกต่างระหว่างการทำงานของ SA และ SD คืออะไรการศึกษาการฝึกอบรมของทั้งสองแตกต่างกันอย่างไรในอดีต SA SD และ SE เป็นเรื่องยากที่จะแยกความแตกต่างและแม้แต่บทบาทเหล่านี้ก็มักจะผสมกันโดยวิศวกรซอฟต์แวร์

ด้วยการพัฒนาด้านไอที SA, SD และ SE ได้ค่อยๆกลายเป็นแผนกวิชาชีพที่จำเป็นสำหรับโครงการขนาดใหญ่ทั้งสามอย่างมีความแตกต่างกันมากไม่ว่าจะเป็นกระบวนการพัฒนาหรือแม้แต่การพัฒนาในอนาคตก็มีความแตกต่างกันมาก ในการเป็น PM ที่มีความสามารถจำเป็นต้องสามารถแยกแยะความแตกต่างระหว่างทั้งสามนี้เพื่อจัดเรียงงานได้อย่างถูกต้อง

1. สานักวิจัยระบบ

SA เป็นคำย่อของ System Analysis โดยทั่วไปเรียกว่าการวิเคราะห์ระบบงานหลักคือการแสดงผลลัพธ์ที่ลูกค้าต้องการผ่านชุดของงานวิเคราะห์และแสดงในเอกสารต่างๆเพื่อให้ทีมพัฒนาสามารถสร้างผลลัพธ์ตามเอกสารเหล่านี้ได้จริง .

คำอธิบายแบบนี้ค่อนข้างละเอียดกว่าเล็กน้อยโดยใช้วิธีการเปรียบเทียบที่เป็นที่นิยมมากขึ้นเช่นเดียวกับเมื่อคุณต้องการทำไก่ Gongbao จะมีสูตรอาหารซึ่งจะแนะนำส่วนผสมที่ต้องการและลำดับการทำอาหารจากนั้นก็จะเน้นย้ำด้วย วิธีสร้างเอฟเฟกต์บางอย่างเพื่อส่งเสริมสีและกลิ่นหอม

ในกระบวนการนี้ SA ให้ความสำคัญกับเวิร์กโฟลว์และตรรกะในการประมวลผลมากกว่า SA ทีมพัฒนาสามารถค้นหาสถาปัตยกรรมของระบบทั้งหมดบริบทสำหรับการทำสิ่งต่างๆและการเชื่อมต่อระหว่างระบบกับงานสิ่งที่สำคัญที่สุดคือ ผลลัพธ์เหล่านี้จะถูกนำเสนอโดย SA ในไฟล์แทนที่จะอยู่ในหัวของคนเพียงไม่กี่คน

SA ไม่เพียง แต่ดำเนินการและวางแผนสำหรับสิ่งต่างๆในคอมพิวเตอร์เท่านั้น แต่ยังรวมถึงกระบวนการทางกายภาพและองค์กรในโลกแห่งความเป็นจริงด้วย ในหลาย ๆ กรณีองค์กรและกระบวนการที่ร่วมมือกับระบบใหม่จะดำเนินการโดย SA โดยสรุปในกรณีการพัฒนา SA จะทำงานต่อไปนี้:

·ขึ้นอยู่กับเอกสารข้อกำหนดของระบบขั้นตอนการปฏิบัติงานมาตรฐานที่มีอยู่ของผู้ใช้เพื่อสร้างกระบวนการปฏิบัติการใหม่ที่ตรงตามความคาดหวังและการทำงานของระบบและการวางแผนโมดูลของกระบวนการจับคู่
ตามการวางแผนฟังก์ชันและโมดูลกำหนดเนื้อหาฐานข้อมูลเบื้องต้นและ ข้อมูลจำเพาะของการจับคู่สิทธิ์ระหว่างระบบและผู้ใช้
·กำหนดคุณสมบัติเฉพาะของส่วนประกอบซอฟต์แวร์แต่ละตัวเช่นอ็อบเจ็กต์ไลบรารีฟังก์ชัน ... ฯลฯ
·ออกแบบขั้นตอนการปฏิบัติงานมาตรฐานใหม่และผูกฟังก์ชันระบบหรือโมดูลเข้ากับกระบวนการเหล่านี้
·พื้นฐาน SA สภาพแวดล้อมและความต้องการของลูกค้าค้นหา SD ที่เหมาะสมที่จะจับคู่

SA ยังมีคุณสมบัติดังต่อไปนี้
·ฉันไม่สนใจเกี่ยวกับสภาพแวดล้อมและเครื่องมือในการพัฒนาที่ระบบใช้มากนักไฟล์ที่สร้างโดย SA ที่ดีสามารถทำได้โดยใช้เครื่องมือการพัฒนาที่แตกต่างกันและให้ผลลัพธ์ที่เหมือนกัน สิ่งที่เหมาะสมที่สุดถูกกำหนดโดย SD
SA มุ่งเน้นไปที่การแสดงออกของตรรกะของกระบวนการและการดำเนินการ
SA มุ่งเน้นไปที่ตรรกะของซอฟต์แวร์และการเรียนรู้เครื่องมือการพัฒนาไม่สำคัญมากดังนั้นภาษาเดียวก็เพียงพอแล้วและตรรกะส่วนใหญ่ได้รับการฝึกฝนด้วยเครื่องมือภาษานี้ ดู.
· SA ต้องมีมุมมองแบบองค์รวมกล่าวคือไม่สามารถ จำกัด เฉพาะมุมเดียวหรือส่วนหนึ่งในการคิดเกี่ยวกับปัญหาได้นี่เป็นสิ่งที่ยากที่สุดในการมองหา SA ที่ยอดเยี่ยม เนื่องจากเมื่อวางแผนโมดูลและฟังก์ชันจะต้องพิจารณาปัญหาของโปรแกรมและตรรกะที่เกี่ยวข้องโดยตรงและโดยอ้อมทั้งหมดในเวลาเดียวกันดังนั้นจึงต้องมีมุมมองแบบองค์รวม

เมื่อเทียบกับ SD แล้ว SA จะมุ่งเน้นไปที่การแสดงออกของตรรกะและลำดับงานมากกว่า SA ไม่จำเป็นต้องกังวลว่าจะใช้ระบบปฏิบัติการหรือเครื่องมือการพัฒนาใดดังที่กล่าวไว้ในคุณสมบัติก่อนหน้านี้ไฟล์ SA ที่ดีสามารถใช้เครื่องมือพัฒนาใด ๆ เติมเต็ม. แน่นอนว่า SA ไม่ จำกัด เฉพาะเทคโนโลยีไอที แต่จะมีข้อ จำกัด ในสาขาวิชาชีพ

มี SA เพียงไม่กี่คนที่เชี่ยวชาญในหลายสาขาในเวลาเดียวกัน SA ที่คุ้นเคยกับการดำเนินงานของอุตสาหกรรมรถยนต์เป็นเรื่องยากที่จะพอใจในการพัฒนาอุตสาหกรรมการเงินและในทางกลับกัน แต่ SD ไม่มีข้อ จำกัด ดังกล่าวโดยพื้นฐานแล้ว SD สามารถทำงานร่วมกับทีมพัฒนาโครงการในอุตสาหกรรมใดก็ได้

เหตุผลก็คือ SA เน้นการวิเคราะห์กระบวนการและการจัดการและการรื้อปรับระบบ กระบวนการทำงานยกเว้นบางสาขามีความคล้ายคลึงกันสูงและกระบวนการหลักต้องมีการศึกษาระยะยาว อุตสาหกรรมรถยนต์และการเงินดังกล่าวเป็นเพียงตัวอย่างหนึ่ง

ดังนั้น SA ต้องมีความสามารถคุณสมบัติและการฝึกอบรมวิชาชีพดังต่อไปนี้:

  1. คุ้นเคยกับภาษาโปรแกรมอย่างน้อยหนึ่งภาษา
  2. คุ้นเคยกับวิศวกรรมซอฟต์แวร์คุ้นเคยกับองค์ประกอบและคุณสมบัติของเครื่องมือพัฒนา
  3. คุ้นเคยกับระบบการจัดการหรือการออกแบบผังงาน
  4. คุ้นเคยกับ UML หรือเครื่องมือคำอธิบายระบบที่คล้ายกัน
  5. ทักษะตรรกะที่ดี
  6. มีทักษะในการสื่อสารที่ดีโดยส่วนใหญ่จะเข้าใจความต้องการ
  7. ความคุ้นเคยในอุตสาหกรรมที่เกี่ยวข้อง

ในสามกลุ่มนี้ SA อยู่ใกล้ PM มากที่สุดดังนั้นเมื่อ SA ทำการวางแผนอาชีพอาจถือว่า PM เป็นเป้าหมายต่อไปของการพัฒนาอย่างมืออาชีพ

2. SD ผู้ออกแบบระบบ

โดยทั่วไป SD ไม่ใช่ SA หรือ PM ในการวางแผนอาชีพ แน่นอนว่าต้องทำครั้งเดียวไม่มีอะไรผิด แต่ถ้าคุณต้องการไปทางนี้คุณต้องเปลี่ยนงานโดยเร็วที่สุดเพราะ SD เป็นงานเบื้องหลังที่ค่อนข้างอยู่เบื้องหลังและไม่มีการสื่อสารและประสานงานกับลูกค้าที่สูงเกินไป ข้อกำหนดและความจำเป็นน้อยลงสำหรับมุมมองทั่วโลกเกี่ยวกับการจัดการ บริษัท

บนพื้นผิว SD ไม่มีข้อกำหนดในการทำงานมากเท่า SA แต่จริงๆแล้ว SD เป็นงานที่มีความสามารถมากที่สุดไม่ว่าจะเป็นองค์ประกอบของหน้าจอความสะดวกในการใช้งานและการปรับแต่งแม้กระทั่งการกำหนดส่วนประกอบและคุณสมบัติของวัตถุล้วนต้องใช้บางส่วน พรสวรรค์. ซอฟต์แวร์จำนวนมากมีประสิทธิภาพมาก แต่ไม่ถูกใจหรือถูกบีบขณะใช้งานประโยชน์ของฟังก์ชั่นถูกบดบังด้วยข้อบกพร่องเหล่านี้ทั้งหมดนี่คือปัญหาของ SD

นอกจากนี้ SD ยังมีบทบาทในการเพิ่มประสิทธิภาพระบบ ข้อกำหนดและรูปแบบที่ SA วางแผนไว้เป็นเพียงแนวคิดเชิงตรรกะในเครื่องมือที่แตกต่างกันอาจมีวิธีดำเนินการที่ดีกว่าหรืออาจแสดงได้ยากซึ่งต้องใช้ SD เพื่อใช้สภาพแวดล้อมและเครื่องมือในการพัฒนา ทำความเข้าใจเพื่อปรับเปลี่ยนและวางแผน

ตัวอย่างเช่นซอฟต์แวร์ทางการเงินชุดเดียวกันภายใต้ WINDOWS XP, MAC, X WINDOWS จะมีโหมดและเทคนิคการแสดงผลที่แตกต่างกันมาก หากคุณจับคู่กับเครื่องมือการพัฒนาต่างๆเช่น C ++, JAVA, .NET, PHP, …มีความแตกต่างมากยิ่งขึ้น สำหรับ SA เขาไม่จำเป็นต้องคำนึงถึงสิ่งเหล่านี้ แต่ SD นั้นแตกต่างกันความแตกต่างเหล่านี้ไม่ได้มีเพียงแค่นั้นและบางครั้งยังรวมถึงต้นทุนในการพัฒนาและปัญหาด้านเวลาและความสำคัญของ SD ด้วย น่ารู้.

ในโครงการที่กำหนดเองเนื้อหางานของ SD มีดังนี้:

·ข้อกำหนดองค์ประกอบของหน้าจอออกแบบ
·โครงสร้างและกฎของหน้าออกแบบ·ออกแบบหน้า
จอการทำงานของระบบและแก้ไขข้อมูลจำเพาะของฟิลด์และการประมวลผลที่ไม่เข้าใจผิด
·การจัดการอำนาจการออกแบบและกลไกการทำงานของระบบ
·เขียนคู่มือผู้ใช้
·ปรับความหมายของ DB เพื่อให้สอดคล้อง ข้อกำหนดฟิลด์หน้าจอและการจัดระเบียบการทำงาน
·ร่วมมือกับ SA ในการเขียนเอกสารการพัฒนาระบบสำหรับโปรแกรมเมอร์ที่เขียนโค้ด
·เขียนแผนการทดสอบ UI (ส่วนต่อประสานผู้ใช้)

ในฐานะ SD ที่มีความสามารถจำเป็นต้องมีเงื่อนไขต่อไปนี้:

  1. ทำความคุ้นเคยกับระบบปฏิบัติการอย่างน้อยหนึ่งระบบและเข้าใจคุณสมบัติและ API ของแต่ละส่วนประกอบของระบบปฏิบัติการนี้เป็นอย่างดี
  2. คุ้นเคยกับเครื่องมือการพัฒนามากกว่า 2 ชนิดและเครื่องมือที่จำเป็นสำหรับโครงการต้องเป็นหนึ่งในจุดที่ดีความคุ้นเคยรวมถึงไลบรารีฟังก์ชันต่างๆในการติดตั้งมาตรฐานค่าคงที่ของระบบคำจำกัดความของอ็อบเจ็กต์ไวยากรณ์และผู้จำหน่ายการพัฒนาเครื่องมือเสริมหลัก , และวิธีการใช้เครื่องมือที่สำคัญ
  3. มีสุนทรียภาพบางอย่าง
  4. สามารถใช้ซอฟต์แวร์เครื่องมือวาดภาพได้อย่างน้อยหนึ่งซอฟต์แวร์
  5. ทำงานเป็นวิศวกรซอฟต์แวร์มืออาชีพมานานกว่าสามปี

กล่าวได้ว่า SA ให้จิตวิญญาณและระบบประสาทของระบบในขณะที่ SD ให้ร่างกายและรูปลักษณ์ของระบบการรวมกันของทั้งสองสามารถสร้างระบบที่ถูกต้องสวยงามและใช้งานง่าย หากคุณรู้สึกว่าคุณเป็นคนไอทีที่ไม่ชอบติดต่อกับผู้คนมากเกินไปและมีความพากเพียรและมีความสามารถด้านอินเทอร์เฟซผู้ใช้เล็กน้อย SD เป็นตัวเลือกที่ดีสำหรับคุณ

3. SE, บริการระบบ

จากมุมมองหนึ่ง SE เป็นยาครอบจักรวาลสำหรับ PM ตราบใดที่คุณทำโปรเจ็กต์ไอทีมันจะมีประโยชน์อย่างแน่นอนข้อแตกต่างเพียงอย่างเดียวคือ SE มืออาชีพที่คุณเลือก จำเป็นต้องมี SE สำหรับการสร้างและติดตั้งระบบ SE จำเป็นสำหรับสภาพแวดล้อมของผู้ใช้และแม้กระทั่งสำหรับการเลือกและการปรับใช้ฮาร์ดแวร์ก็จำเป็นต้องมี SE มีโปรเจ็กต์ไอทีใดที่ไม่เกี่ยวข้องกับสิ่งนี้หรือไม่?

แน่นอนว่าแม้ว่า SE จะกินได้ทุกที่ แต่ก็เป็นกลุ่มที่เงียบที่สุดและไม่ค่อยมีใครเปล่งเสียงในโครงการ โดยพื้นฐานแล้วงานของพวกเขาคือการสร้างสภาพแวดล้อมที่ระบบสามารถดำเนินการได้ SE สามารถให้คำแนะนำ SA และ SD เกี่ยวกับวิธีแสดงระบบได้ แต่เวลาของคำแนะนำมักเกิดขึ้นหลังจากที่ระบบหมดปัญหาที่ระบบสามารถจัดการได้

ในแง่ของเงื่อนไขพื้นฐานวิศวกรระบบมีความใกล้เคียงกับ SD มากที่สุด แต่มีความแตกต่างตรงที่พวกเขาไม่จำเป็นต้องมีประสบการณ์ในการพัฒนาซอฟต์แวร์ที่ดีนั่นคือพวกเขาไม่จำเป็นต้องสามารถเขียนโปรแกรมได้ แต่คุณต้องมีความเข้าใจระบบปฏิบัติการระบบเซิร์ฟเวอร์และสภาพแวดล้อมการทำงานของเครือข่ายในระดับมาก

SE มักเป็นสมาชิกที่มีความรู้มากที่สุดในสามคนแม้ว่า SE ที่ดีจะไม่จำเป็นต้องตั้งโปรแกรม แต่ก็ไม่สามารถเพิกเฉยต่อการเขียนโปรแกรมได้นอกจากนี้ยังต้องมีความคุ้นเคยในระดับหนึ่งกับระบบปฏิบัติการและเครื่องมือในการพัฒนาและแม้แต่ผู้ดูแลระบบเครือข่ายบางคน ต้องครอบคลุมงานที่เกี่ยวข้องด้วยจึงถือได้ว่าเป็นยาครอบจักรวาลในโครงการ

ในโครงการงานที่ SE จะดำเนินการมีดังนี้:

·การวางแผนและสร้างสภาพแวดล้อมการทำงานของระบบ
·การติดตั้งและการตั้งค่าสภาพแวดล้อมไคลเอนต์
·การติดตั้งและการตั้งค่าเซิร์ฟเวอร์
·จัดเตรียมการตั้งค่าสภาพแวดล้อมสำหรับ SA และ PM
·เพิ่มความน่าเชื่อถือและความถูกต้องของระบบให้เหมาะสม
·การเขียนแผนการทดสอบความน่าเชื่อถือและประสิทธิภาพ
·คุ้นเคยกับคอมพิวเตอร์และอุปกรณ์ต่อพ่วงที่เกี่ยวข้อง

SE มีข้อกำหนดพื้นฐานดังต่อไปนี้:

  1. คุ้นเคยกับระบบปฏิบัติการอย่างน้อยหนึ่งระบบโดยเฉพาะเทคโนโลยีที่เกี่ยวข้องเช่นการตั้งค่าระบบและการปรับแต่งอย่างละเอียด
  2. คุ้นเคยกับระบบปฏิบัติการเว็บเซิร์ฟเวอร์อย่างน้อยหนึ่งระบบคุ้นเคยกับวิธีกำหนดค่าและเพิ่มประสิทธิภาพ
  3. เคยทำงานเป็นวิศวกรซอฟต์แวร์มานานกว่าหนึ่งปีหรือคุ้นเคยกับเครื่องมือพัฒนา
  4. มีความเข้าใจเกี่ยวกับสภาพแวดล้อมเครือข่ายโดยเฉพาะการตั้งค่าการสื่อสารบางอย่าง
  5. คุ้นเคยกับวิธีการประเมินความน่าเชื่อถือและประสิทธิภาพและเข้าใจการตั้งค่าที่เกี่ยวข้องกับสภาพแวดล้อมของระบบ

โดยพื้นฐานแล้วหากคุณมีพื้นฐานทางเทคนิคและบุคลิกภาพเดียวกันกับ SD แต่ความสวยงามไม่ได้เป็นที่ประจบ SE เป็นตัวเลือกที่ยอดเยี่ยม โดยทั่วไปแล้วแผนอาชีพขั้นต่อไปของ SE จะมุ่งเน้นไปที่หน่วยงานด้านเทคนิคเช่น DBA หรือการจัดการเครือข่ายสำหรับผู้ที่คลั่งไคล้หรือทำงานอดิเรกในผลิตภัณฑ์ไอทีมากขึ้น SE เป็นทางออกที่ยอดเยี่ยม

4. ใช้ในโครงการเมื่อใด

โดยทั่วไป SE เป็นยาครอบจักรวาลตราบใดที่เป็นเคสไอทีต้องรวม SE ไว้ด้วยเนื่องจากไม่มีโปรเจ็กต์ไอทีที่ไม่ต้องใช้เทคโนโลยีวิศวกรรมข้อแตกต่างเพียงอย่างเดียวคือประเภทของเทคโนโลยีวิศวกรรมที่ใช้ ในโครงการนำเข้าซอฟต์แวร์แพคเกจ SE มีหน้าที่จัดการสภาพแวดล้อมการใช้งานซอฟต์แวร์แก้ปัญหาที่ไม่เป็นระบบติดตั้งและปรับฐานข้อมูลและสภาพแวดล้อมเครือข่ายจากนั้นติดตั้งและเริ่มต้น เงื่อนไขทั้งหมดที่จำเป็นสำหรับการทำงานของระบบจะต้องได้รับการแก้ไขและจัดการโดย SE แต่ภารกิจเหล่านี้จะไม่ปรากฏต่อหน้าทุกคน แต่สิ่งเหล่านี้มีความสำคัญอย่างยิ่งและสามารถถือได้ว่าเป็นฮีโร่เบื้องหลัง

โครงการที่จะนำไปใช้กับ SA, SD และ SE ในเวลาเดียวกันยังคงขึ้นอยู่กับการพัฒนาที่กำหนดเอง

ในโครงการพัฒนาทีม SA มีหน้าที่รับผิดชอบในการตรวจสอบความต้องการเบื้องต้นและการวางแผนสถาปัตยกรรมโดยรวมโดยเปลี่ยนเนื้อหางานการพัฒนาระบบทั้งหมดให้เป็นเอกสารที่มีการจัดระเบียบอย่างดีและแบ่งและจัดส่งอย่างเหมาะสมและทำให้มั่นใจว่าผลการพัฒนาที่แบ่งออกเหล่านี้สามารถนำไปใช้ได้ในอนาคต มันจะทำงานได้อย่างถูกต้องในอนาคต

SD แสวงหาความสอดคล้องและความสะดวกในการใช้งานการนำเสนอระบบในเอกสาร SA และทำให้มั่นใจได้ว่าเครื่องมือในการพัฒนาสามารถแสดงข้อกำหนดของ SA ได้อย่างถูกต้อง ดังนั้น SD จึงเป็นผู้รับผิดชอบในการออกแบบลักษณะที่ปรากฏของอินเทอร์เฟซการทำงานกำหนดข้อกำหนดการแสดงผลที่สอดคล้องกันออกแบบหน้าจอการทำงานของระบบและขั้นตอนการปฏิบัติงานและร่วมมือกับ SA เพื่อทำไฟล์การพัฒนาระบบให้เสร็จสมบูรณ์ โดยทั่วไปไฟล์การพัฒนาจะมีร่างแรกของคู่มือระบบ

เมื่อ SD กำลังออกแบบต้องร่วมมือกับ SA อย่างเต็มที่เพื่อให้แน่ใจว่าระบบที่ออกแบบนั้นตรงตามข้อกำหนดและข้อกำหนดในการปฏิบัติงาน

นอกเหนือจากเนื้อหางานข้างต้นแล้วทั้งสามต้องเขียนแผนการทดสอบ SA มุ่งเน้นไปที่การไหลของข้อมูลตามลำดับและการทดสอบผลลัพธ์ที่วางแผนไว้เดิมและ SD มุ่งเน้นไปที่การทดสอบที่เข้าใจผิดในหน้าจอการทำงานและความถูกต้องของอินเทอร์เฟซการทำงาน SE วางแผนเกี่ยวกับความน่าเชื่อถือของระบบ

5. วิศวกรซอฟต์แวร์จะเปลี่ยนงานเมื่อใด?

ทุกคนที่เขียนโปรแกรมต่างรู้อยู่ในใจว่างานนี้ไม่สามารถทำได้ชั่วชีวิต ไม่ใช่แค่ปัญหาทางร่างกายและจิตใจ แต่สิ่งที่สำคัญที่สุดคือการเขียนโปรแกรมมูลค่าทางเศรษฐกิจมี จำกัด จริงๆ

ฉันจะไม่ปฏิเสธว่ามีโปรแกรมเมอร์มากมาย แต่ประเด็นไม่ได้อยู่ที่ว่าคุณเก่งแค่ไหน แต่มีเจ้านายกี่คนที่ยอมจ่ายเงินเดือนตามสัดส่วนที่คุณพยายามดูแลคุณ ไม่ใช่ว่าจะไม่มีงานแบบนี้ แต่หายากยิ่งไปกว่านั้นคุณมักจะทำงานประเภทนี้เร็ว ๆ นี้เพราะเครียดเกินไปและกินแรงเยาวชนมากเกินไป

การถอยหลังคุณไม่คุ้มที่จะจ่ายเงินมากนักด้วยการวางแผน SA และ SD ที่ดีวิศวกรสามารถแก้ปัญหาความต้องการในการพัฒนาซอฟต์แวร์ได้มากกว่า 90% ตราบเท่าที่พวกเขาเป็นไปตามมาตรฐานทั่วไปเว้นแต่จะเป็นเรื่องบังเอิญหรือคุณเป็นอย่างมาก หากคุณสนใจมิฉะนั้นจะเป็นเรื่องยากที่คุณจะมีโอกาสได้พบกับงานอื่น ๆ อีก 10% หรือแม้ว่าคุณจะทำคุณจะไม่สามารถสนับสนุนคุณได้ตลอดชีวิต

วิศวกรซอฟต์แวร์จะเปลี่ยนงานวันหนึ่งนี่คือชะตากรรมของพวกเขา

เมื่อต้องการเปลี่ยนงานพวกเขามีทางเลือกมากมาย SA, SD, SE ออกไปเป็นเจ้านายและเปลี่ยนงานใหม่ แม้ว่าจะดูเหมือนจะมีมากมาย แต่ฉากกลางคืนก็ดูเยือกเย็นเพราะการเขียนโปรแกรมเขียนในห้องปิดและผลของความหมกหมุ่นในระยะยาวเมื่อพวกเขาต้องการเปลี่ยนงานก็ยากที่จะมีผู้ติดต่อเพียงพอที่จะสนับสนุนพวกเขาในอาชีพในอนาคตที่สดใส คนส่วนใหญ่ชื่นชมคนไอทีเงินเดือนสูง แต่ไม่รู้ว่าจ่ายแค่ค่าจ้างโดยไม่มีการวางแผนที่เหมาะสมและอนาคตก็ตกต่ำ

ห้าตัวเลือกแรกโดยพื้นฐานแล้วสองตัวสุดท้ายเป็นเพียงโอกาสเดียวมีเพียงไม่กี่คนเท่านั้นที่สามารถเลือกสองตัวนี้ได้วิศวกรซอฟต์แวร์ส่วนใหญ่ยังคงต้องเลือกหนึ่งในสามตัวแรกเพื่อพัฒนา

SA ดูสวยที่สุดและมีศักยภาพที่ดีที่สุดในอนาคต แต่น่าเสียดายที่มีวิศวกรซอฟต์แวร์เพียงไม่กี่คนที่เหมาะสมกับตำแหน่งนี้ เนื่องจากงานนี้ต้องติดต่อกับผู้อื่นและวิศวกรซอฟต์แวร์ที่ดีมักจะแย่มากในเรื่องนี้

ดังนั้นหากคุณคิดว่าคุณเก่งในการสื่อสารคุณป้าทั้งสามและนักแต่งกลอนหกคนเป็นคนสนิทของคุณมีทักษะเชิงตรรกะที่ดีและมีความสนใจในการบริหารจัดการ SA เป็นตัวเลือกที่ดีสำหรับคุณและทักษะการเขียนโปรแกรมไม่ใช่จุดสำคัญในการพิจารณาของคุณ

ในทางตรงกันข้ามคุณมีความรู้เกี่ยวกับอินเทอร์เฟซผู้ใช้เป็นอย่างดีและคุณได้รับคำชมอย่างเป็นเอกฉันท์จากเพื่อนร่วมงานของคุณในแง่ของสุนทรียภาพและคุณมีความมั่นใจเล็กน้อยในทักษะการเขียนโปรแกรมของคุณ กลับบ้านดี.

สุดท้ายคุณรู้สึกว่าโลกของไอทีเต็มไปด้วยความน่าดึงดูดสำหรับคุณไม่ว่าจะเป็นระบบปฏิบัติการเครื่องมือพัฒนาซอฟต์แวร์และอุปกรณ์ไอทีเป็นสิ่งที่น่าดึงดูดสำหรับคุณการติดต่อกับผู้คนไม่ใช่ความต้องการหลักในชีวิตของคุณ เทคโนโลยีไอทีที่ไม่มีที่สิ้นสุดทำให้คุณมึนเมาดังนั้น SE จึงเป็นตัวเลือกแรกของคุณ

วิธีการเปลี่ยนงานวิศวกรซอฟต์แวร์ทุกคนต้องเผชิญกับตัวเองอย่างตรงไปตรงมาแทนที่จะตัดสินใจว่าเขาต้องการเลือกตำแหน่งใดตามอนาคตของเขาหากคุณเลือกวิธีนี้จากประสบการณ์ส่วนตัวของฉันในที่ทำงานบุคคลดังกล่าวเป็นอย่างมาก เป็นการยากที่จะเปล่งแสงและยากที่จะประสบความสำเร็จอย่างที่เขาคาดหวัง ดังนั้นวิศวกรที่กำลังเขียนโปรแกรมและต้องการเปลี่ยนงานโปรดเผชิญหน้ากับตัวเองอย่างรอบคอบและตรงไปตรงมาและตัดสินใจเลือกอย่างเหมาะสม

6. บทศ

ข้อมูลข้างต้นจัดทำขึ้นเป็นการส่วนตัวสำหรับเพื่อนที่สับสนเกี่ยวกับ SA, SD และ SE เพื่อเป็นข้อมูลอ้างอิงและพื้นฐานในการมอบหมายงาน การเกิดขึ้นของทั้งสามนี้เกิดจากการเติบโตอย่างรวดเร็วของเทคโนโลยีไอทีในปัจจุบันดังนั้นจึงจำเป็นต้องมีการแบ่งงานที่เหมาะสมสำหรับวิศวกรรมซอฟต์แวร์เพื่อรับมือกับสภาพแวดล้อมไอทีที่ซับซ้อนมากขึ้น

Popular