Jason Edwards
Certified: The CompTIA Security+ V8 / SY0-801 Audio Course
Certified: The CompTIA Security+ V8 / SY0-801 Audio Course is built for learners who want a clear, practical path into modern cybersecurity fundamentals without being tied to a desk. It is designed for entry-level security professionals, IT support staff, help desk technicians, junior system administrators, career changers, and anyone preparing for the Security+ exam. The course assumes you may already understand basic networking and computer systems, but it does not assume deep security experience. Each lesson explains the ideas behind the exam objectives in plain language, then connects them...
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Episode 19 — Key Exchange, Algorithms, Key Length, and Protocol Selection (1.3) 26.04.2026 15:31
This episode covers how systems agree on encryption keys, choose algorithms, and select protocols without exposing sensitive material directly. Key exchange allows two parties to establish shared session protection even when communicating over an untrusted network. Algorithm choice and key length affect security strength, performance, compatibility, and resistance to attack. Students should recogn...
Episode 18 — Encryption Levels: Disk, File, Volume, Database, and Record (1.3) 26.04.2026 13:10
This episode explains where encryption can be applied and what each level protects. Full-disk encryption protects an entire drive when a device is powered off or stolen, while volume or partition encryption protects selected storage areas. File-level encryption protects individual files, database encryption protects stored database content, and record-level encryption can protect specific sensitiv...
Episode 17 — Symmetric vs. Asymmetric Encryption (1.3) 26.04.2026 13:31
This episode compares symmetric and asymmetric encryption by focusing on how each method is used in practical security designs. Symmetric encryption uses the same secret key to encrypt and decrypt data, making it fast and useful for files, disks, databases, and bulk traffic protection. Asymmetric encryption uses a public key and private key pair, making it useful for trust, secure key exchange, au...
Episode 16 — CSRs, Wildcards, Root of Trust, and Key Escrow (1.3) 26.04.2026 13:05
This episode covers certificate signing requests, wildcard certificates, root of trust concepts, and key escrow. A certificate signing request is generated when an organization wants a certificate authority to issue a certificate for a public key and identity. Wildcard certificates can secure multiple subdomains but increase impact if the private key is compromised. The root of trust is the truste...
Episode 15 — Revocation and Validation: CRLs, OCSP, and Trust Problems (1.3) 26.04.2026 13:08
This episode explains why certificates sometimes must be revoked before their normal expiration date and how systems check whether a certificate should still be trusted. A certificate may be revoked because a private key was compromised, the certificate was issued incorrectly, the owner changed, or the service no longer exists. Students should recognize certificate revocation lists and the Online...
Episode 14 — Certificates and Certificate Authorities (1.3) 26.04.2026 12:59
This episode explains what digital certificates prove and how certificate authorities help establish trust between systems, users, applications, and websites. A certificate binds an identity to a public key, allowing other parties to validate that they are communicating with the expected entity. Students should understand the difference between third-party certificates trusted by common devices an...
Episode 13 — PKI Foundations: Public Keys, Private Keys, and Trust (1.3) 26.04.2026 13:24
This episode introduces public key infrastructure as a trust system that supports encryption, authentication, digital signatures, and secure communication. Public keys can be shared, while private keys must be protected because they prove identity, decrypt protected information, or create signatures. The exam expects students to understand that PKI depends on key pairs, certificates, certificate a...
Episode 12 — Technical and Documentation Impacts of Change (1.2) 26.04.2026 13:40
This episode covers the technical and documentation effects that often follow a change, especially when security controls, access rules, or system dependencies are modified. Students should understand how allow lists, deny lists, restricted activities, restarts, downtime, legacy applications, and dependency issues can affect normal operations and security posture. A change may require updating net...
Episode 11 — Backout Plans vs. Fail Forward: Recovering from Bad Changes (1.2) 26.04.2026 12:35
This episode explains two common recovery strategies used when a change causes problems: backing out and failing forward. A backout plan returns the environment to a known-good state, such as restoring a prior firewall rule set, reverting an application version, or removing a failed patch. Failing forward means applying an additional fix to stabilize the environment without returning to the old st...
Episode 10 — Impact Analysis, Test Results, and Maintenance Windows (1.2) 26.04.2026 12:25
This episode explains how impact analysis, testing, and maintenance windows reduce the security and operational risk of production changes. Impact analysis identifies affected systems, dependencies, users, data, controls, downtime expectations, and possible security consequences before implementation. Test results provide evidence that a patch, configuration change, firewall rule, or application d...
Episode 9 — CABs, Approvals, Ownership, and Stakeholders (1.2) 26.04.2026 11:53
This episode covers the people and approval structures that help manage change risk, including change advisory boards, change owners, technical approvers, business stakeholders, and affected teams. For the exam, students should understand that approvals are not just bureaucracy; they ensure the right people review downtime, security impact, dependencies, business timing, and recovery plans before...
Episode 8 — Change Management: Why Security Breaks During Normal Updates (1.2) 26.04.2026 12:51
This episode explains why normal system changes can create security problems even when no attacker is involved. For Security+ preparation, change management should be understood as a risk control process that reduces outages, misconfigurations, control failures, and newly introduced vulnerabilities. Examples include a firewall rule that exposes a service, a patch that breaks authentication, a clou...
Episode 7 — Control Categories and Control Types (1.1) 26.04.2026 12:41
This episode explains how security controls are grouped by category and by function, which is a common Security+ exam pattern. Technical controls use systems or tools, managerial controls guide planning and oversight, operational controls are performed through processes and people, and physical controls protect facilities and equipment. Control types describe what the control does: preventive cont...
Episode 6 — Zero Trust Principles: Never Trust, Always Verify (1.1) 26.04.2026 12:09
This episode introduces Zero Trust as a security model based on continuous verification, least privilege, and the assumption that compromise may already exist inside or outside the network. For the exam, students should understand that Zero Trust is not a single product but an approach to evaluating every access request using identity, device posture, location, application sensitivity, behavior, a...
Episode 5 — Non-Repudiation, Least Privilege, and Trust Decisions (1.1) 26.04.2026 12:51
This episode explains non-repudiation, least privilege, and trust decisions as core principles behind secure design and accountability. Non-repudiation means there is evidence that an action, transaction, or message came from a specific party and cannot easily be denied later, often through digital signatures, logs, and strong identity controls. Least privilege means users, services, and systems r...
Episode 4 — CIA and AAA: The Core Security Models (1.1) 26.04.2026 13:15
This episode covers two foundational security models that appear throughout Security+: CIA and AAA. Confidentiality protects information from unauthorized access, integrity protects information from unauthorized or improper change, and availability ensures systems and data remain usable when needed. Authentication verifies identity, authorization determines what that identity is allowed to do, and...
Episode 3 — Defense in Depth: Layering Controls So One Failure Doesn’t Sink You (1.1) 26.04.2026 12:03
This episode explains defense in depth as the practice of using multiple overlapping controls so a single failure does not expose the entire organization. For the exam, students should recognize how administrative, technical, physical, and operational safeguards work together across people, process, and technology. Examples include multifactor authentication protecting accounts, endpoint detection...
Episode 2 — How to Study with an Audio-First Security+ Plan 26.04.2026 12:10
This episode explains how to use an audio-first study plan to build recall, reinforce weak areas, and connect exam objectives to practical security scenarios. For Security+ preparation, short lessons are most useful when students listen by domain, revisit topics that feel unclear, and actively ask what decision they would make in a real environment. The episode covers spaced repetition, scenario t...
Episode 1 — SY0-801 at a Glance: What Changed from Security+ 701 26.04.2026 12:52
This episode introduces the SY0-801 version of Security+ by explaining how the exam direction moves beyond traditional baseline security topics into modern cloud operations, identity-centered security, AI-related risk, automation, and practical security operations. For exam preparation, the focus is on understanding how the draft 801 objectives organize security knowledge into decisions a practiti...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.