2 karma · joined June 3, 2021
The key was absolutely no matter what, no matter how tired I felt, I had to wake up at 7am and get out of bed. No naps.
We found the optimal spot to be 11pm lay in bed, and wake up at 7am. I always keep that schedule, deviating only by 30min or so even on weekends. Haven’t had trouble sleeping since!
I also think going from graduate school (little solid schedule) to a corporate 9-5 job helped. Covid has mangled that a bit, but I still keep the same sleep schedule.
tl;dr- CBT-I was a life-changer for me.
The crazy thing is, going from 50k to 200k, I can't honestly pinpoint whether I'm signficantly happier or not. So I try to not get envy about even the more ridiculous salaries. How does one get off the hamster wheel and feel content enough with salary to just live?
----------------- I can understand this position, but I'd be curious what your thoughts are on how to best (I realize there is no perfect) keep your data private from snooping employees, hackers, or law enforcement.
I've thought about this over and over, and it's hard to come to a solid conclusion about keeping personal data safe (in this context I mean emails and files you may store in the cloud, not browsing history, social media posts, etc.). There are so many options with downfalls for each, and I'm not a security expert. So every time I get excited about trying a new service geared towards privacy, or setting up my own instances, inevitably somebody points out the terrible pitfall in it and I get discouraged.
1. Don't use the internet or internet services, period. <- Not tenable for most of us.
2. Use services who market themselves as geared towards privacy. <- Can't actually trust those services, even with E2E encryption because they could be running different code from what you think they're running.
3. Use regular cloud options, but stack stuff on top - VeraCrypt volumes or Cryptomator with Google drive, GPG for email, etc. <- Really difficult to setup and have a nice reliable way of accessing data on mobile/desktop/etc. No security audits on a lot of the open source software.
4. Host your own services - i.e. a Nextcloud 14 instance on EC2 with an S3 backend, then use client-side E2E <- Difficult to make sure you set the service up in a safe way, and not even a fraction of as much resources in auditing code as, say, a giant corporation.
5. Spread what you do out over multiple services - FastMail for email, DropBox for cloud storage, Standard Notes for notes, etc. <- A real pain.
I know there will never be a consensus on this, but I'd love to hear what your thoughts are on the best way to keep my personal files and notes personal to me. Let's assume I'm not a target of any spy agencies or whatnot, but I want to make it very, very difficult for anyone to read my person notes and files but me.
I've thought about this over and over, and it's hard to come to a solid conclusion about keeping personal data safe (in this context I mean emails and files you may store in the cloud, not browsing history, social media posts, etc.). There are so many options with downfalls for each, and I'm not a security expert. So every time I get excited about trying a new service geared towards privacy, or setting up my own instances, inevitably somebody points out the terrible pitfall in it and I get discouraged.
1. Don't use the internet or internet services, period. <- Not tenable for most of us.
2. Use services who market themselves as geared towards privacy. <- Can't actually trust those services, even with E2E encryption because they could be running different code from what you think they're running.
3. Use regular cloud options, but stack stuff on top - VeraCrypt volumes or Cryptomator with Google drive, GPG for email, etc. <- Really difficult to setup and have a nice reliable way of accessing data on mobile/desktop/etc. No security audits on a lot of the open source software.
4. Host your own services - i.e. a Nextcloud 14 instance on EC2 with an S3 backend, then use client-side E2E <- Difficult to make sure you set the service up in a safe way, and not even a fraction of as much resources in auditing code as, say, a giant corporation.
5. Spread what you do out over multiple services - FastMail for email, DropBox for cloud storage, Standard Notes for notes, etc. <- A real pain.
I know there will never be a consensus on this, but I'd love to hear what your thoughts are on the best way to keep my personal files and notes personal to me. Let's assume I'm not a target of any spy agencies or whatnot, but I want to make it very, very difficult for anyone to read my person notes and files but me.
1. A little bit of the selfish "oh no, the secret's out, at what point is my salary going to drop when the demand is met by the dedicated Master's degrees and bootcamps?"
and
2. These articles seem so incredibly corny, it's almost embarrassing. The "hottest job"? Ahhhh, stop it. But these things go in an out of phase, similar to back in the day when "anesthesiologist assistants" (CRNAs, AAs) were the hottest thing for Bloomberg to talk about. It will not last forever.
The irony is that I probably only knew "data science" (always in quotes) existed because I read one of these cheesy articles. I mean, we all know that statistics have been around forever, but that there were dedicated positions where you could run stats, build models, and then deploy them all in a single role was foreign to me.
So it's a combination of a potentially irrational fear of self-preservation, and laughing at the state of affairs where some basic stats work will pull in that kind of money.
I tend to have fears about the future, always wanting to hedge myself so I don't become outdated. In the data science sense, I see the field becoming super super broad and eventually saturated with new supply, so I debate on whether I should pivot into management of analytics in general or not. I.E. getting my hands off the keyboard. Ultimate goal would be to help define, strategically, how statistics/data mining/machine learning/yada/yada/yada are used at a company.
In college, I revered my professors - always thought of them on a higher plane, so much smarter than everybody. Same with doctors. Then I go to grad school, and realize that my fellow classmates (who have become professors, or the ones in MD/PhD programs doctors/surgeons), are smart indeed - but not on some super-human super-intelligent level who's batting way above my level like I felt in undergrad. It's like all of a sudden I realized that people in those positions are humans like me and aren't on some higher plane. I mean, maybe there are a few people who truly are. But most of the people I revered are regular joes (who most definitely work hard). Similar to looking up to adults when you're a kid, then realizing they're human beings with flaws once you grow up.
On the flip side, I constantly feel like I don't know what I'm doing compared to other people. Doesn't matter what level I reach in my career, it's all the same - that data scientist over there truly knows his stuff, I'm just faking it. That manager over there truly knows his stuff, I'm just faking it. And you know what? Maybe there's some truth to it. But the truth I've found is that if that's the case, there's probably an exceeding number of people who are 'faking it' too, so I'm in good company at least.
I also tend to conflate 'faking it' with confidence. In grad school, all of my published papers would have so many caveats - "the results suggest that maybe possibly potentially .... " or "the results suggest that ____, with the caveat" or "we possibly found evidence..." My advisor always had to change my wording around to be at least a little more definitive because journals would pick up on the wishy-washy statements. Now in the corporate world, people expect definitive statements because putting 'possibly, maybe' in every sentence doesn't exude confidence that higher ups or customers want. So in a way when I say something in a confident manner when I'm only 80% to 90% confident, I feel like I'm faking it.
1. How to best protect my local personal data from being subject to this?
2. Whether I should seriously consider pulling all my cryptocurrency off of any exchanges?
I did multiple sleep studies, used sleeping medications, took supplements, tried to meditate, etc. and had no luck.
I went and did CBT-I, where they had me change my sleep hygeine (all your standard recommendations of "no TV in the bedroom", etc). But the biggest thing was they had me start off by going to bed at 1 am and waking up at 5am every day for a week or two. I'd be so insanely tired, I would start falling asleep quicker and staying asleep less interrupted (this was recorded on a worksheet). Then they had me go to bed an hour earlier, record it. After a while, we found my optimal schedule (bed at 11am, wake up at 630am), and I stick to it no matter what, every single day.
It's solved my sleep issues, full-stop. I get tired by 11 pm, and wake up at 6:30 am feeling just fine.
FWIW, grad school - with no solid schedule - was disastrous on my sleep. Moving to my 9-5 corporate job has made scheduling my sleep a whole lot better.
Just my experience.
I'll be honest - when the paper was published I was thinking "no shit - why do we need a paper to tell us what we all learned in stats 101 about multiple comparisons??" And then realized the quantity of fMRI papers that used uncorrected thresholds.
Very similar feeling when the "Voodoo Correlations" paper came out. Except I was admittedly guilty of having presented correlation coefficients from clusters that had already been identified using thresholding. So that paper really did make me take a closer look at some of my figures/conclusions.
If I go to Bob's website on my computer without any VPN, and Bob wants to find me, all he would need to do is get my IP, call my ISP with a warrant, and then get my information.
If I go to Bob's website while logged in with a VPN, and Bob wants to find me, he first sees that he's getting tons of hits from this IP because thousands of users are sharing this same VPN. So then he uses some kind of fingerprint to figure out my unique user sessions. Then he calls the VPN company, and asks them to associate the IP and specific browser sessions with me. In that case a) the VPN really does store logs even though they advertise they don't, so they're able to associate me with my activity, or b) they really don't store logs and have no idea which one of its thousands of users logged into his website with that IP.
It seems in the latter case, even with a malicious VPN, it's one additional (maybe trivial step) to associate me. But it's still better than just using your own ISP. Isn't that why people use VPNs to avoid DMCA letters from their ISP?
So what is the downside to using a VPN if you're aware that they aren't foolproof vs not using a VPN at all?
If you roll your own VPN on AWS or the like, don't you lose the benefit of sharing the VPN with thousands of users? Wouldn't it be easier for Bob to call AWS with a warrant and get your account info than mess with some offshore VPN provider?
If I were to point out women that I find physically attractive solely from a set of pictures, they'd probably skew to the younger side.
But in reality, the important aspects of a life mate for me go way, way, way beyond just being attractive physically. That 23 year old on OKC might spur a momentary sexual fantasy, but never in my right mind would I truly want to date someone of that age.
In other words, I picked my mate because I find her very attractive - physically, intellectually, and emotionally. But that doesn't mean younger women aren't attractive in a putely physical sense.
I'm rambling now.
What if your threat model is a nation state? What's the proper way to ensure your privacy that does not require abstaining from the internet? Is a high degree of privacy even possible?
The funny thing is, it took me about a year to find this position after a good amount of rejections. About a year after I got my data scientist title, I've been contacted by recruiters from places I would have never expected to be contacted from (Amazon, Microsoft, FB, etc.). Did a few interviews, and realized during those interviews that I still have a lot to learn.
For one of the interviews, they gave me a take home assignment where they literally duplicated a column in the feature matrix... I didn't catch it, and during the phone part of the interview I get asked 'do you know notice something interesting about those two feature distribution plots you have there?'
"Hrmm, no I don't. Oh, wait, they look pretty similar."
"They're exactly the same."
"... shit."
I use a commercial VPN primarily so that my IP is shared across hundreds of other users (as opposed to using it so that my data is safe being transmitted through coffeehouse WiFi), and thus would make it at least marginally more difficult for someone to track me.
Is this reasoning false?
Though looking at glassdoor data for Atlanta, it does look like data scientists have an average that's almost $34k lower than san francisco. So maybe I just got lucky.
I have always assumed that VPN services like PIA, AirVPN, etc. are useful for, among other things:
1. To make the content you are viewing private from your ISP, employer, public WiFi, etc.
2. To make it more difficult for some remote host/website/actor to link your activity on their site with you.
Isn't point (2) negated if you host your own VPN on AWS? In the sense that if you're in a country with a nefarious government, wouldn't it be easier for them to subpoena AWS than to get info from some VPN service over in ________ country that doesn't store logs, and has a million other users using the same IP?
An example situation might be the RIAA notices that an IP is downloading Janet Jackson MP3s, and all they need to do is subpoena AWS if you're hosting your own VPN which has a unique IP, versus tracking down some Caribbean company who has given you an IP that's shared among thousands of users and has a public reputation for trustworthiness to hold?