Dr. Jason Edwards

Certified - CompTIA CYSA+ Audio Course

The CYSA+ Audio Course is your complete, exam-focused companion for mastering the CompTIA Cybersecurity Analyst (CYSA+) certification. Designed for learners who are always on the move, this Audio Course transforms the official exam objectives into clear, structured, and easy-to-follow lessons. Each episode helps you understand, retain, and apply key cybersecurity analysis skills—covering threat detection, vulnerability management, security architecture, and incident response. Whether you’re studying during your commute, exercising, or reviewing between shifts, every session is crafted to keep...

Author

Dr. Jason Edwards

Category

Education

Podcast website

baremetalcyber.com

Latest episode

Oct 14, 2025

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

Episode 31: Log Correlation and Orchestration Platforms (SIEM/SOAR) 15.07.2025

Security Information and Event Management (SIEM) systems are the heart of modern detection and alerting. In this episode, we explore how SIEMs collect, correlate, and normalize data from across your environment—giving analysts a real-time window into activity from endpoints, servers, firewalls, cloud services, and more. You’ll learn how log correlation enables pattern detection, anomaly identifica...

Episode 30: Network Capture and Traffic Inspection Tools 15.07.2025

Being a strong analyst means being comfortable working with packets, flows, and raw network data. In this episode, we explore the tools analysts use for network capture and traffic inspection, including Wireshark and tcpdump. You’ll learn what kinds of data these tools collect, how they’re used during investigations, and what to look for when examining traffic patterns. We also explain how packet...

Episode 29: Social Engineering and Obfuscation Detection 15.07.2025

Not all threats come from code—many come from people. This episode explores how attackers use social engineering tactics to bypass technical defenses, trick users, and gain footholds in environments. From phishing and pretexting to spoofed links and impersonation, we walk through the indicators that security analysts must watch for. You’ll also learn about techniques attackers use to obscure their...

Episode 28: Application Behavior and Anomaly Detection 15.07.2025

Applications are often targeted directly by attackers—or exploited indirectly through user interaction. In this episode, we focus on indicators of compromise at the application layer, such as anomalous behavior, unexpected output, new account creation, service interruptions, and unusual outbound communication. We also explain how application logs reveal usage patterns, failures, and potential abus...

Episode 27: Host-Based Indicators of Malicious Activity 15.07.2025

While the network tells you what’s coming and going, the host shows you what’s actually happening. In this episode, we explore host-level indicators of compromise—from CPU spikes and unauthorized software to abnormal OS behavior and registry anomalies. You’ll learn how to recognize signs of privilege escalation, unauthorized changes, scheduled task manipulation, and malicious processes. We also br...

Episode 26: Network-Based Indicators of Malicious Activity 15.07.2025

Your network is constantly broadcasting signals—some of them benign, some of them suspicious. In this episode, we examine network-level indicators that can reveal malicious activity in progress. From bandwidth spikes and rogue devices to unexpected port activity and beaconing behaviors, you’ll learn what red flags to look for and how to distinguish noise from signal. We also discuss how attackers...

Episode 25: Sensitive Data Handling in the Enterprise 15.07.2025

Protecting sensitive data is one of the most urgent and regulated responsibilities in cybersecurity. This episode focuses on the tools and practices analysts use to detect, classify, and protect sensitive information like personally identifiable information (PII), cardholder data (CHD), and proprietary business data. We discuss how data loss prevention (DLP) tools are configured, how sensitive dat...

Episode 24: Encryption and Traffic Security Monitoring 15.07.2025

Encryption plays a dual role in cybersecurity—protecting data confidentiality and creating blind spots in visibility. In this episode, we examine how public key infrastructure (PKI) underpins secure communication, how certificates are issued and validated, and where SSL/TLS encryption fits into the data protection stack. We also explore how SSL inspection works in enterprise environments and what...

Episode 23: Identity and Access Management Models 15.07.2025

Authentication and authorization form the frontline of defense in every digital environment. In this episode, we explore key identity and access management (IAM) concepts including multifactor authentication (MFA), single sign-on (SSO), and federated identity systems. We’ll explain how these models reduce friction for users while improving control for security teams. You’ll also learn about advanc...

Episode 22: Network Architecture Design and Segmentation 15.07.2025

Networks are the circulatory system of any digital environment, and securing them is a fundamental responsibility of the cyber analyst. This episode walks through various network architecture models—on-premises, cloud, and hybrid—and explores how segmentation, zero trust principles, and secure access edge technologies help reduce exposure and limit lateral movement. We also discuss how software-de...

Episode 21: Infrastructure Concepts in Modern SOCs 15.07.2025

Today’s IT environments are complex ecosystems that include virtual machines, containers, and serverless platforms. In this episode, we demystify these infrastructure models from a security analyst’s perspective. You’ll learn how virtualization enables rapid provisioning (and creates unique attack surfaces), how containers isolate workloads, and how serverless computing changes the way we detect a...

Episode 20: System-Level Behavior and Architecture Fundamentals 15.07.2025

In this episode, we go deeper into the building blocks of computing environments that matter for cyber defense. We cover where critical configuration files are typically stored, how analysts monitor and investigate system processes, and what aspects of hardware architecture matter when tracking threats or hardening systems. You’ll also hear how attackers exploit weaknesses at the process level or...

Episode 19: Core OS Concepts Every Analyst Should Know 15.07.2025

Understanding the underlying behavior of operating systems is critical for detecting and investigating malicious activity. In this episode, we explore the core OS concepts that every cybersecurity analyst must master. You'll learn about the Windows Registry, how system hardening reduces attack surfaces, and what file system structures can reveal during an investigation. We also discuss how malware...

Episode 18: Log Ingestion and Logging Control 15.07.2025

Effective cybersecurity starts with visibility—and that begins with logs. In this episode, we explore the basics of log ingestion, including what data is collected, how it's normalized, and where it's stored. You’ll learn about the importance of time synchronization across log sources, why logging levels (debug, info, error) matter, and how poor logging practices can create blind spots in your sec...

Episode 17: Domain 1 Overview – Security Operations in the Analyst’s World 15.07.2025

Welcome to Domain 1, the largest and most foundational section of the CySA+ exam. In this episode, we preview what you’ll learn across the next several modules and explain how Security Operations serves as the nerve center of a modern cyber defense strategy. From architecture to access control to threat detection, this domain sets the tone for your analyst mindset. We’ll introduce the major themes...

Episode 16: CySA+ Glossary Episode 3 15.07.2025

In the final glossary-focused episode, we turn our attention to the specialized language used in incident response, threat detection, and analyst operations. This includes key terms like IoC, MFA, PID, RCE, RTO, PKI, and more—acronyms and phrases that show up frequently in forensic documentation, incident timelines, and CySA+ test questions. We not only define each term, but place it in context so...

Episode 15: CySA+ Glossary Episode 2 15.07.2025

In this second glossary episode, we focus on the security tools, frameworks, and compliance standards you’ll need to recognize and understand throughout your CySA+ journey. From OpenVAS and Nessus to NIST, ISO, and PCI DSS, this episode gives you concise definitions and context that go beyond memorization. We explain what these terms mean, how they’re used in the field, and why they matter to secu...

Episode 14: CySA+ Glossary Episode 1 15.07.2025

Before we tackle deeper technical episodes, it's essential to get fluent with the vocabulary used in the exam and in real-world security operations. This first glossary episode focuses on foundational network and infrastructure terms. We’ll cover protocols, addressing concepts, and key architectural elements such as ICMP, IP, LAN, MAC, RDP, REST, and others that often appear in log data and config...

Episode 13: Comprehensive Domain 3–4 Review (Pre-Exam Checklist) 15.07.2025

This second review episode brings together the essential content from Domain 3 (Incident Response and Management) and Domain 4 (Reporting and Communication). We’ll reinforce your understanding of frameworks like the MITRE ATT&CK matrix and cyber kill chains, review containment and eradication strategies, and revisit reporting requirements such as executive summaries and regulatory disclosures....

Episode 12: Comprehensive Domain 1–2 Review (Pre-Exam Checklist) 15.07.2025

In this fast-paced review episode, we recap the most critical concepts from Domain 1 (Security Operations) and Domain 2 (Vulnerability Management). This is your checkpoint to ensure you understand everything from network architecture and log ingestion to vulnerability scanning, CVSS scoring, and control frameworks. If you're preparing for the exam, this episode is a perfect way to consolidate what...

Episode 11: Communicating Cybersecurity to Non-Technical Stakeholders 15.07.2025

Technical knowledge alone isn’t enough. As a cybersecurity analyst, your ability to explain threats, risks, and remediation strategies to non-technical audiences can make or break your effectiveness. In this episode, we explore how to communicate clearly and professionally with managers, executives, clients, and legal teams—people who need actionable information but don’t speak your technical lang...

Episode 10: Life After CySA+ Certification: Career Paths and Professional Growth 15.07.2025

What happens after you pass the CySA+? This episode explores the real-world benefits of certification and how it translates into career opportunities. We discuss common job titles that value CySA+, such as SOC analyst, threat hunter, vulnerability management specialist, and cyber risk analyst. You’ll hear how the certification helps you stand out on resumes, qualify for government and private sect...

Episode 9: Building Your Own Cybersecurity Lab Environment 15.07.2025

Hands-on practice is essential for CySA+ success, and that means having your own lab environment. In this episode, we help you build one using tools you can install on your own laptop, run in the cloud, or deploy in virtual machines. You’ll learn how to create test environments with Kali Linux, simulate attacks using Metasploitable, and practice monitoring with open-source SIEM tools like Splunk o...

Episode 8: CySA+ Multiple-Choice Question Strategies 15.07.2025

The multiple-choice section of the CySA+ exam isn’t just about knowing the right answer—it’s about identifying it under pressure. In this episode, we focus on smart test-taking strategies specifically designed for the CySA+ question format. You’ll learn how to dissect complex questions, spot distractors, and leverage the process of elimination to your advantage. We’ll also talk about the language...

Episode 7: Example Performance-Based Questions (PBQs) Walkthrough 15.07.2025

Performance-based questions can catch even well-prepared test takers off guard. Unlike traditional multiple-choice items, these questions ask you to interact with tools, analyze artifacts, or simulate workflows—replicating what you’d actually do in a live security environment. In this episode, we walk through several PBQ scenarios and help you break down how to interpret what’s being asked and how...

Listen to the Certified - CompTIA CYSA+ Audio Course podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.