What you would want to do is first.. take some security measures and have a pretty good opsec from the very start..
If you are still on windows you should move to linux.. and learn how to use it! If you want the best security you should check out some privacy operating systems.. Qubes.. Tails are good, maybe WhonixVM.
Next of course would be some good exchanges without kyc. KYC in itself is a scam.. so you could check out kycnot (dot) me and on there you will find some pretty awesome services and exchanges. Learn the pros and cons of each one.
For a newbie the easiest way to have crypto without kyc will be monero! GUI is pretty straightforward and you don't have to worry to much about where you messed up with bitcoin or lightening network.. here are two pretty cool links.. These people have pretty good security, most of the times... there's great info on there, just don't open the obvious links and check out their "stuff"..
If you would want passive income with monero...