Jason Edwards

Certified: SANS GIAC GSEC Audio Course

The **GSEC Audio Course** from **BareMetalCyber.com** is your complete, audio-first companion for mastering the **GIAC Security Essentials (GSEC)** certification. Designed for cybersecurity professionals and motivated learners, this course transforms the full range of exam objectives into clear, structured lessons you can absorb anywhere. Each episode focuses on practical understanding—explaining how core security concepts like networks, encryption, access control, risk management, and incident response work together in real environments. Whether you’re building foundational knowledge or sharp...

Author

Jason Edwards

Category

Technology

Podcast website

baremetalcyber.com

Latest episode

Oct 22, 2025

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

Welcome to the SANS GSEC Audio Course 22.10.2025
Episode 90 — Exam Acronyms and Essential Terms: High-Yield Glossary for GIAC GSEC 22.10.2025

This episode consolidates high-yield acronyms and essential terms into a practical exam-readiness review, focusing on precision and context because GSEC questions often turn on subtle wording differences and overlapping definitions. You’ll connect common security vocabulary across access control, networking, cryptography, monitoring, incident response, and governance, and you’ll practice distingui...

Episode 89 — Audit Windows and Use PowerShell Safely: Telemetry, Basics, and Forensic Readiness 22.10.2025

This episode explains Windows auditing and PowerShell safety as two sides of the same operational reality: PowerShell is a legitimate admin tool and a common attacker tool, so visibility and discipline must be built in from the start, which is a frequent GSEC scenario pattern. You’ll learn what useful Windows telemetry looks like for investigations, including authentication events, privilege chang...

Episode 88 — Enforce Windows Security Policy: Group Policy Concepts and INF Template Thinking 22.10.2025

This episode focuses on Windows policy enforcement through Group Policy concepts and template-style configuration thinking, aligning with GSEC questions that test whether you understand how consistent settings are applied and audited at scale. You’ll connect policy objects to organizational units, inheritance, and precedence, then explain why policy design affects both security and operational sta...

Episode 87 — Apply Windows Access Controls Correctly: NTFS, Shares, Registry, AD, and Privileges 22.10.2025

This episode explains Windows access controls as layered enforcement mechanisms that must align, which is a common GSEC exam trap when questions mix NTFS permissions, share permissions, registry permissions, and directory-based authorization. You’ll learn how NTFS controls protect files and folders, how share permissions add an additional layer for network access, and why the effective permission...

Episode 86 — Understand Windows Security Infrastructure: Accounts, Groups, Domains, and Trust Relationships 22.10.2025

This episode builds an exam-ready understanding of Windows security infrastructure by focusing on how accounts, groups, and domain relationships determine access and attack paths, which is central to many GSEC scenario questions. You’ll review local versus domain identities, how group membership drives privileges, and why domain architecture and trust relationships can extend both capability and r...

Episode 85 — Understand macOS Security Features: Gatekeeper, SIP, Sandboxing, and Encryption 22.10.2025

This episode explains macOS security mechanisms in practical terms and ties them to the GSEC expectation that you can identify what a platform feature protects against and where its limits are. You’ll connect Gatekeeper to application trust and execution control, SIP to protecting critical system areas from tampering even by privileged processes, sandboxing to limiting what apps can access, and di...

Episode 84 — Secure Containers Correctly: Images, Registries, Isolation Limits, and Runtime Controls 22.10.2025

This episode teaches container security as a lifecycle problem that starts with image trust and continues through runtime enforcement, which is increasingly relevant to GSEC-style questions about modern infrastructure risk. You’ll define the difference between an image and a running container, then connect supply chain risks to registries, image provenance, and the danger of pulling untrusted or o...

Episode 83 — Secure Linux Remote Access: SSH Configuration, Keys, MFA, and Safe Admin Patterns 22.10.2025

This episode explains how SSH becomes either a secure administrative channel or a recurring breach path, and it aligns with GSEC questions that test whether you can select the right configuration choices to reduce credential theft and unauthorized access. You’ll review why key-based authentication improves security when implemented correctly, how poor key handling can be worse than passwords, and...

Episode 82 — Harden Linux Systems Safely: Services, Secure Defaults, and Verification Habits 22.10.2025

This episode focuses on Linux hardening as a controlled, testable process that reduces attack surface while keeping systems usable, which matches the GSEC emphasis on selecting practical safeguards that hold up in production. You’ll learn how unnecessary services, default configurations, and permissive permissions create avoidable exposure, then connect those issues to hardening priorities like di...

Episode 81 — Gain Linux Security Visibility: Auditing, Logs, and Evidence of Misuse 22.10.2025

This episode explains how Linux visibility is built from auditing, logging, and disciplined evidence collection, and why GSEC questions often hinge on recognizing which data source can confirm a suspected action. You’ll connect core log locations and common event types to investigation goals, including authentication events, privilege use, service starts, process execution clues, and network activ...

Episode 80 — Master Linux Fundamentals: Structure, Permissions, Ownership, and Common Weaknesses 22.10.2025

This episode builds Linux fundamentals with an exam-focused emphasis on how system structure and permission models drive security outcomes, which is relevant to GSEC because many questions rely on recognizing what a permission or ownership state implies. You’ll review how the filesystem is organized, how users and groups shape access, and how read, write, and execute permissions behave differently...

Episode 79 — Understand AI Fundamentals for Security: Risks, Limits, and Defensive Awareness 22.10.2025

This episode explains AI fundamentals through a security lens, focusing on what security practitioners should understand to assess risk and make good control decisions, which is increasingly relevant to GSEC-style scenario reasoning. You’ll clarify what model-driven systems are good at, where they are brittle, and why outputs can be confident yet incorrect, then connect those limits to security us...

Episode 78 — Secure Cloud Storage: Buckets, Shares, Encryption Defaults, and Data Leaks 22.10.2025

This episode teaches cloud storage security as a combination of access control, configuration hygiene, and lifecycle management, which is relevant to GSEC because many real-world leaks and many exam scenarios come from overly permissive storage settings. You’ll define common storage patterns like object storage buckets and shared file services, then connect access policies, public exposure flags,...

Episode 77 — Secure Cloud Networking: Security Groups, NACLs, Routing, and Exposure Mistakes 22.10.2025

This episode explains cloud networking controls as the mechanisms that define reachability and segmentation, and it aligns with GSEC because exam questions often describe an exposure problem that is really a routing or rule-scope issue. You’ll compare security groups and network ACLs as layered controls with different behaviors, then connect them to routing tables, gateways, and peering paths that...

Episode 76 — Secure Cloud Identity First: IAM Basics, Roles, Keys, and Permissions Drift 22.10.2025

This episode focuses on cloud IAM as the primary security control plane, which is directly relevant to GSEC because many cloud scenarios reduce to “who can do what” and whether permissions match intent. You’ll define identities, roles, policies, and service principals in practical terms, then connect long-lived keys and access tokens to the risk of silent compromise when secrets leak through code...

Episode 75 — Secure Cloud Architectures: Shared Responsibility and Common Misconfiguration Traps 22.10.2025

This episode explains cloud security as an architecture and governance challenge built on shared responsibility, a concept that GSEC often tests by asking who is responsible for which control in a hosted environment. You’ll connect provider responsibilities, such as underlying physical security and core service availability, to customer responsibilities, such as identity, configuration, data prote...

Episode 74 — Understand Virtualization Concepts: Isolation, Shared Resources, and Security Implications 22.10.2025

This episode explains virtualization as a foundational architecture for modern infrastructure and clarifies the security implications that show up in GSEC questions about isolation assumptions and shared risk. You’ll define key concepts like hypervisors, virtual machines, virtual switches, and snapshots, then connect them to what isolation provides and where it can fail due to misconfiguration, we...

Episode 73 — Build Practical Metrics: Measuring Control Adoption Without Gaming the Numbers 22.10.2025

This episode explains security metrics as decision tools that should reflect real risk reduction, which is relevant to GSEC because exam prompts often ask how to demonstrate improvement and effectiveness, not just activity. You’ll define the difference between output metrics, like counts of patches applied, and outcome metrics, like reduced exposure time for critical vulnerabilities, then connect...

Episode 72 — Use MITRE ATT&CK Effectively: Adversary Behavior Language and Defensive Mapping 22.10.2025

This episode teaches MITRE ATT&CK as a behavior-based language for describing how adversaries operate, and it aligns with GSEC because many scenario questions implicitly test whether you can reason about attacker actions, not just name security products. You’ll learn how tactics describe an attacker’s objective, how techniques describe the method used, and why mapping detections and mitigation...

Episode 71 — Navigate NIST CSF Clearly: Functions, Outcomes, and Practical Organizational Use 22.10.2025

This episode explains the NIST Cybersecurity Framework as a practical way to organize security work into repeatable outcomes that can be assessed and improved over time, which matters for GSEC because exam questions often test your ability to choose structured approaches over ad hoc controls. You’ll connect the core Functions to how organizations actually operate by translating high-level outcomes...

Episode 70 — Operationalize CIS Critical Controls: Implementation Thinking and High-Impact Priorities 22.10.2025

This episode shows how to use the CIS Critical Controls as a practical blueprint for reducing common attack paths, which fits GSEC’s emphasis on choosing controls that provide measurable, high-impact risk reduction. You’ll learn how the controls group defensive actions into categories like asset management, secure configuration, vulnerability management, access control, logging, and incident respo...

Episode 69 — Use Security Frameworks Purposefully: Why They Exist and How They Guide Action 22.10.2025

This episode explains security frameworks as shared language and structured guidance that help organizations choose, implement, and measure controls, and it aligns to GSEC questions that test governance thinking rather than tool trivia. You’ll define frameworks as organized sets of practices, outcomes, or controls that reduce ambiguity about what “good security” means, then connect that to how tea...

Episode 68 — Detect with Logs: High-Signal Events, Baselines, and Investigation Workflows 22.10.2025

This episode teaches how to use logs to detect meaningful threats without drowning in noise, which is a GSEC-relevant skill because many questions describe partial evidence and require you to select the most reliable next step. You’ll define high-signal events as those strongly associated with malicious behavior, such as impossible travel logins, new admin group membership, suspicious process laun...

Episode 67 — Understand SIEM Analysis Basics: Normalization, Correlation, Alerts, and Analyst Reality 22.10.2025

This episode explains what a SIEM does in practical terms and why GSEC questions often focus on the concepts behind analysis rather than product features. You’ll define normalization as converting logs from many sources into consistent fields so events can be compared, searched, and correlated, then connect that to why poor parsing and inconsistent time zones create investigation failure. We’ll de...

Listen to the Certified: SANS GIAC GSEC Audio Course podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.