Given the wide range of possible IT security careers, how do you know which path to follow? Should you specialise or generalise? Should you be a policy maker (aka management speak geek) or a techie? Should you be internal security or external consultancy?
Would love to give the impression I am just asking out of curiousity but of course I'm not.
