Dr. Jason Edwards
Certified - CompTIA CYSA+ Audio Course
The CYSA+ Audio Course is your complete, exam-focused companion for mastering the CompTIA Cybersecurity Analyst (CYSA+) certification. Designed for learners who are always on the move, this Audio Course transforms the official exam objectives into clear, structured, and easy-to-follow lessons. Each episode helps you understand, retain, and apply key cybersecurity analysis skills—covering threat detection, vulnerability management, security architecture, and incident response. Whether you’re studying during your commute, exercising, or reviewing between shifts, every session is crafted to keep...
Author
Dr. Jason Edwards
Category
Podcast website
Latest episode
Oct 14, 2025
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Episode 56: Asset Discovery in the Wild 15.07.2025 17:22
Before you can scan for vulnerabilities, you need to know what assets you’re protecting. In this episode, we focus on the first step of the vulnerability management lifecycle: asset discovery. You’ll learn how analysts use map scans and device fingerprinting to build an accurate inventory of hardware, software, and services within a network—information that is critical for everything that follows....
Episode 55: Domain 2 Overview – Vulnerability Management in Practice 15.07.2025 18:01
Welcome to Domain 2: Vulnerability Management. In this foundational episode, we set the stage for everything you’ll learn in the coming sessions—from scanning tools and techniques to validation, prioritization, and secure development practices. You’ll learn how vulnerability management bridges the gap between detection and prevention, and how analysts evaluate risk and recommend effective remediat...
Episode 54: Single Pane of Glass: Visibility in the SOC 15.07.2025 17:43
In complex environments, visibility is everything. But when your tools are spread across different dashboards and platforms, critical context can be lost. This episode introduces the concept of a “single pane of glass”—a unified interface that aggregates security data from across your infrastructure to support efficient detection and decision making. We’ll talk about what makes a single-pane dashb...
Episode 53: Integrating APIs and Plugins for Efficiency 15.07.2025 17:08
Modern security platforms rarely operate in silos. In this episode, we explore how APIs, webhooks, and plugins allow your tools to communicate—enabling integrations that speed up investigation, automate response, and support real-time correlation. You’ll learn how analysts and engineers use these integrations to extend visibility and automate information sharing across systems. We discuss use case...
Episode 52: Streamlining with SOAR and Threat Feed Enrichment 15.07.2025 18:21
Security Orchestration, Automation, and Response (SOAR) platforms help security teams move faster and more intelligently. In this episode, we go deeper into how SOAR solutions connect with your SIEM and other tools to automate triage, enrich alerts with contextual threat intel, and reduce response times across the board. You’ll learn how data from multiple feeds is consolidated to support a single...
Episode 51: Standardizing and Automating Security Processes 15.07.2025 17:53
Consistency is key in security operations, especially when teams are responding to high volumes of alerts under time pressure. In this episode, we dive into the benefits of standardizing and automating security processes. You'll learn how to identify repeatable tasks that don’t require human discretion, and how to delegate them to automation platforms that reduce workload and error. We also explor...
Episode 50: Threat Hunting Focus Areas and Active Defense 15.07.2025 17:33
Hunting threats means knowing where to look—and what to expect. In this episode, we identify the key focus areas for threat hunting operations, including misconfigured systems, isolated or high-value network segments, and business-critical applications. You’ll learn how analysts choose targets, define hypotheses, and build hunting campaigns that align with risk profiles and threat models. We also...
Episode 49: Indicators of Compromise and Threat Hunting 15.07.2025 19:20
Threat hunting begins where automation ends. In this episode, we break down the lifecycle of Indicators of Compromise (IoCs)—how they are discovered, validated, and applied across tools and teams. From file hashes and domain names to process anomalies and registry keys, IoCs form the forensic breadcrumbs that analysts use to uncover hidden threats and trace attacker behavior. You’ll also learn how...
Episode 48: How Threat Intelligence Powers Security Functions 15.07.2025 17:13
Threat intelligence is more than just information—it’s fuel for proactive defense. In this episode, we show how threat intel informs and enhances nearly every security function: from incident response and vulnerability management to engineering, detection, and monitoring. You’ll see how teams use intelligence to prioritize vulnerabilities, block malicious IPs and domains, improve alerting logic, a...
Episode 47: Closed Source Threat Intel and Information Sharing 15.07.2025 18:11
Some of the most actionable threat intelligence is found behind closed doors. In this episode, we examine closed source threat intel—feeds and services provided by vendors, threat intelligence platforms, and information-sharing communities like ISACs. These sources offer high-fidelity, curated intelligence that often includes proprietary data, malware signatures, actor profiles, and zero-day warni...
Episode 46: Open Source Threat Intelligence Collection 15.07.2025 17:44
Not all threat intelligence comes with a price tag. In this episode, we explore the value and limitations of open source intelligence (OSINT) in cybersecurity operations. You’ll learn how analysts use publicly available sources such as social media feeds, blogs, government advisories, and dark web monitoring platforms to gather early indicators of compromise and attacker activity. These sources ar...
Episode 45: Threat Intelligence Confidence Levels and TTPs 15.07.2025 16:56
All threat intelligence is not created equal. In this episode, we explore how analysts evaluate the reliability of threat intelligence based on confidence levels—specifically timeliness, relevancy, and accuracy. We also break down how to assess threat feeds and indicators in context, helping you understand when to trust data and when to investigate further. We then introduce the concept of tactics...
Episode 44: Insider Threats and Supply Chain Risks 15.07.2025 17:42
Some of the most damaging threats come from within—or through trusted partners. In this episode, we explore the two primary forms of insider threats: intentional actors who sabotage or steal for personal gain, and unintentional insiders whose negligence leads to exposure. You’ll learn the warning signs, the types of data most often targeted, and how security teams detect and investigate these risk...
Episode 43: Threat Actor Categories and Profiles 15.07.2025 17:48
Understanding the adversary is the first step to anticipating their next move. In this episode, we profile the major categories of threat actors you need to know for the CySA+ exam: advanced persistent threats (APTs), hacktivists, organized crime groups, nation-state actors, insider threats, and even low-skill opportunists known as “script kiddies.” You’ll hear how motivations, tactics, and resour...
Episode 42: Security Scripting and Automation Basics 15.07.2025 17:48
Not all threats require a human response—and not all analysis can scale without scripting. In this episode, we dive into the scripting and automation fundamentals analysts need to understand for CySA+ and real-world workflows. You’ll learn how JSON and XML are used to structure data across APIs and security platforms, how PowerShell and shell scripts are used in detection and attack simulation, an...
Episode 41: Detecting Abnormal User Behavior 15.07.2025 17:20
Attackers often succeed not because they're invisible, but because they mimic normal user behavior—until they don’t. In this episode, we explore how user and entity behavior analytics (UEBA) help security analysts detect when users start acting outside of their established patterns. You’ll learn about common indicators of abnormal behavior such as impossible travel, login attempts from unexpected...
Episode 40: Hashing and File Integrity Techniques 15.07.2025 16:55
When a file changes unexpectedly, something important may have happened—and hashing is one of the best tools we have to track it. In this episode, we explain how file hashing works, which algorithms are most commonly used (like SHA-256), and how analysts use hashes to verify file integrity, detect tampering, and cross-reference files with malware databases. You’ll also learn how to generate hashes...
Episode 39: Email Analysis for Phishing and Spoofing 15.07.2025 17:05
Phishing remains one of the most common and effective attack vectors—and analysts are often the last line of defense. In this episode, we walk through how to analyze suspicious emails, focusing on headers, sender behavior, and embedded links. You’ll learn how to interpret SPF, DKIM, and DMARC records to verify sender legitimacy, and how to detect spoofed domains or manipulated display names. We al...
Episode 38: Suspicious Command Interpretation 15.07.2025 18:09
Sometimes a single command is all it takes to compromise a system—but recognizing the danger isn’t always easy. This episode focuses on how to interpret suspicious command-line activity and identify intent from syntax. We walk through common command abuses, such as privilege escalation via net user, credential harvesting with mimikatz, lateral movement through wmic or psexec, and various PowerShel...
Episode 37: Pattern Recognition and Command Analysis 15.07.2025 18:06
Threat actors often reuse specific commands, tactics, and patterns of behavior—and analysts learn to recognize those patterns quickly. In this episode, we take a closer look at how command recognition works, especially in the context of attacker scripts, PowerShell payloads, and Linux shell commands. You’ll discover how seemingly normal commands can be misused to exfiltrate data, escalate privileg...
Episode 36: Common Detection Techniques in the SOC 15.07.2025 17:12
Detecting threats isn’t just about having the right tools—it’s about applying the right techniques. In this episode, we cover the core detection methods used in security operations centers (SOCs), focusing on how analysts use pattern recognition, log correlation, statistical baselining, and anomaly detection to identify potentially malicious activity. You'll learn how these techniques are implemen...
Episode 35: Dynamic Malware Analysis Platforms (Sandboxing) 15.07.2025 17:54
When static analysis doesn’t provide clear answers, analysts turn to sandboxing—isolated environments where suspicious files can be safely executed and observed. In this episode, we explore how dynamic malware analysis platforms like Joe Sandbox and Cuckoo Sandbox capture behavior, identify command-and-control activity, and log system-level changes in memory, registry, and file structure. We break...
Episode 34: Static File Inspection Tools 15.07.2025 17:17
Some threats are obvious in logs—others hide in files. In this episode, we introduce static file analysis tools and techniques that allow analysts to inspect suspicious files without executing them. You'll learn how tools like strings can extract readable content from binaries and why examining metadata, embedded code, or odd character patterns can help detect malicious payloads. We also cover how...
Episode 33: DNS and IP Intelligence Sources 15.07.2025 17:25
DNS and IP addresses may seem simple at first glance, but they’re powerful resources for cyber defense—if you know how to use them. In this episode, we explore how analysts use DNS and IP intelligence to detect threats, validate indicators of compromise, and make informed decisions during an investigation. You’ll learn how WHOIS records, reverse lookups, and passive DNS data can help trace adversa...
Episode 32: Endpoint Detection and Response Systems (EDR) 15.07.2025 16:56
When malware strikes or an insider behaves maliciously, the endpoint is where the evidence lives. In this episode, we dig into Endpoint Detection and Response (EDR) platforms—what they are, how they differ from traditional antivirus, and what kinds of data they provide to security analysts. You'll learn how EDR tools monitor process activity, registry changes, file access, memory usage, and more,...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.