Jason Edwards
Certified: The GIAC GCLD Audio Course
This course teaches you how to secure cloud environments the way real incidents unfold: misconfigurations, over-permissioned identities, weak network boundaries, and data exposure paths that are easy to miss until it’s too late. You’ll build a practical, defensible security posture across compute, containers, storage, and managed services by using hardened baselines, policy enforcement, continuous validation, and clear ownership. Along the way, you’ll learn how to reduce attack surface with immutable deployment patterns, least privilege workload identities, safe sharing defaults, and recovery-...
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Episode 13 — Structure organizational units and account groupings for predictable security inheritance 10.02.2026 12:22
This episode teaches how organizational units and account groupings enable consistent policy inheritance, which is a frequent theme in governance and control-mapping exam questions. You’ll define what inheritance means for security controls, including how policies cascade, how exceptions are handled, and where enforcement actually occurs. We’ll walk through a practical design approach that groups...
Episode 12 — Design multi-account strategy that reduces blast radius and simplifies governance 10.02.2026 13:24
This episode focuses on why multi-account designs are a core cloud defense pattern and how they support exam scenarios involving segmentation, governance, and risk reduction. You’ll define blast radius in cloud terms and see how separating workloads, environments, and administrative functions limits lateral movement and policy mistakes. We’ll compare common multi-account models, including workloa...
Episode 11 — Master cloud account fundamentals: tenants, subscriptions, projects, and billing boundaries 10.02.2026 14:03
This episode explains how cloud account structures define ownership, isolation, and accountability, which frequently appears in GCLD questions about governance design. You’ll distinguish tenants from subscriptions or projects and connect those boundaries to identity scope, policy inheritance, and financial controls. We’ll cover why billing constructs are not just finance details, but also indicat...
Episode 10 — Recover safely after cloud compromise with controlled rebuilds and trust restoration 10.02.2026 11:45
This episode focuses on recovery as a structured process that restores trust, not just service uptime, which is a key theme in cloud defense and exam scenarios. You’ll define safe recovery practices such as controlled rebuilds, validated configurations, clean identity re-issuance, and careful reintroduction of connectivity so you do not re-enable attacker access. We’ll explain why “restore from ba...
Episode 9 — Preserve cloud evidence correctly so investigations remain reliable and defensible 10.02.2026 9:25
This episode explains how to preserve evidence in cloud environments so your investigation remains trustworthy and your conclusions can withstand scrutiny. You’ll define evidence sources in cloud terms, including identity logs, control-plane activity, data access logs, workload telemetry, and configuration history, then discuss why integrity and chain-of-custody considerations still apply. We’ll c...
Episode 8 — Contain cloud intrusions fast using isolation, credential resets, and scoped actions 10.02.2026 9:38
This episode covers containment tactics that work in cloud without causing unnecessary outages or spreading the blast radius. You’ll define containment as limiting attacker ability to act, then apply that idea using isolation controls, segmentation decisions, temporary deny policies, and rapid credential resets. We’ll discuss why “shut it all down” is often the wrong move in cloud, and how scoped...
Episode 7 — Recognize privilege escalation patterns unique to cloud identity and policy systems 10.02.2026 10:18
This episode explains how cloud privilege escalation often happens through identity, policy, and role assumptions rather than local exploitation. You’ll learn core concepts like permissions boundaries, role chaining, delegated administration, and policy evaluation logic that can create unintended paths to higher privilege. We’ll use practical examples, such as overly broad wildcard actions, pass-r...
Episode 6 — Track common initial access paths attackers use in public cloud environments 10.02.2026 10:44
This episode focuses on the entry points attackers prefer in cloud, which directly supports exam questions about exposure reduction and incident hypotheses. You’ll define initial access in cloud terms, including stolen credentials, over-permissioned tokens, exposed management interfaces, insecure public endpoints, and compromised CI/CD or third-party integrations. We’ll walk through how these path...
Episode 5 — Identify high-probability cloud attacker goals, incentives, and target choices 10.02.2026 10:22
This episode breaks down why cloud environments are targeted and what attackers most often try to achieve once they enter. You’ll map common goals—data theft, service disruption, cryptomining, persistence, and privilege expansion—to the incentives and constraints attackers face in public cloud. We’ll explore how target choices are driven by exposure, weak identity controls, and high-value data pat...
Episode 4 — Apply threat-informed defense by matching controls to real cloud adversaries 10.02.2026 11:03
This episode teaches how to prioritize defenses based on how cloud attackers actually operate, which is central to designing effective control stacks and answering scenario-driven exam items. You’ll connect adversary behaviors to control outcomes, focusing on how identity abuse, misconfigurations, and automation failures become reliable attacker advantages. We’ll discuss how to choose controls tha...
Episode 3 — Understand shared responsibility clearly across IaaS, PaaS, and SaaS realities 10.02.2026 10:55
This episode explains shared responsibility in a way that supports exam questions and real incident accountability. You’ll define what the provider secures versus what you must secure, then apply that model across IaaS, PaaS, and SaaS where the boundaries shift in meaningful ways. We’ll use practical scenarios, such as misconfigured storage exposure or identity misuse, to show how defenders can be...
Episode 2 — Build a spoken study plan that sticks for busy cloud defenders 10.02.2026 14:02
This episode focuses on turning exam objectives into a realistic plan you can execute alongside a full workload. You’ll learn how to convert broad domains into weekly outcomes, how to sequence topics so foundations support advanced material, and how to use short review cycles to keep retention high. We’ll connect study planning to exam performance by emphasizing spaced repetition, targeted practic...
Episode 1 — Decode the GCLD exam format, rules, scoring, and timing calmly 10.02.2026 13:20
This episode breaks down what to expect on the GCLD exam so you can spend your effort on mastery instead of guesswork. You’ll clarify how question styles, timing pressure, and scoring mechanics shape test strategy, including why pacing matters even when you “know the material.” We’ll cover practical approaches for reading for intent, eliminating distractors, and deciding when to mark-and-move vers...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.