Jason Edwards

Certified: The GIAC GSLC Audio Course

This audio-first cybersecurity course is built for busy professionals who need security that works in real environments, not just on slides. You’ll learn how to design monitoring, logging, SIEM, and SOAR operations that produce usable visibility, reduce noise, and support fast, defensible response. Along the way, you’ll connect technical controls to practical program execution: ownership, SLAs, governance, decision rights, and evidence that holds up during incidents and audits. You’ll also strengthen your ability to explain risk in business terms and prioritize work using context like exposure...

Author

Jason Edwards

Category

Technology

Latest episode

Feb 10, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

Welcome to Certified: The GIAC GSLC Audio Course 10.02.2026

This audio-first cybersecurity course is built for busy professionals who need security that works in real environments, not just on slides. You’ll learn how to design monitoring, logging, SIEM, and SOAR operations that produce usable visibility, reduce noise, and support fast, defensible response. Along the way, you’ll connect technical controls to practical program execution: ownership, SLAs, go...

Episode 82 — Include Physical Vulnerabilities: Facilities, Devices, and Environmental Dependencies 10.02.2026

This episode teaches how to include physical vulnerabilities in a security program, aligning with exam objectives that explicitly extend vulnerability management beyond purely technical software findings. You will learn how to assess risks across facilities, endpoints, server rooms, wiring closets, and critical environmental dependencies like power, cooling, and fire suppression, and why physical...

Episode 81 — Drive Remediation Workflows: Ownership, SLAs, Exceptions, and Verification Evidence 10.02.2026

This episode explains how to drive remediation workflows that reliably close vulnerabilities and produce proof, a key exam concept because effective programs are judged by remediation outcomes, not discovery volume. You will learn how to assign single-point ownership for each finding, set SLAs that reflect exposure and exploitability, and use standardized ticketing fields that capture required con...

Episode 80 — Prioritize Vulnerabilities Using Context: Exposure, Criticality, and Exploit Signals 10.02.2026

This episode teaches how to prioritize vulnerabilities using context, which is central to exam performance because the certification expects you to rank work by real risk rather than by raw severity labels alone. You will learn how exposure captures reachability and attacker access paths, how criticality reflects business importance and dependency impact, and how exploit signals such as known expl...

Episode 79 — Build Vulnerability Management as a Program, Not a Scanning Habit 10.02.2026

This episode explains vulnerability management as a complete program that drives remediation and verification, which aligns with exam objectives that test whether leaders can move beyond scanning toward measurable risk reduction. You will learn the lifecycle from discovery through assessment, prioritization, remediation, and validation, and why asset inventory and ownership are prerequisites for m...

Episode 78 — Defend Security Priorities With Evidence: Metrics, Narratives, and Tradeoffs 10.02.2026

This episode teaches how to defend security priorities using evidence, clear narratives, and explicit tradeoffs, aligning with exam objectives that test leadership communication and the ability to secure resources and agreement. You will learn how to select metrics that reflect outcomes such as reduced exposure, faster detection and containment, improved control coverage, and lower recurrence, the...

Episode 77 — Apply Risk Techniques: Treatment Options, Registers, and Decision Documentation 10.02.2026

This episode explains how to apply risk techniques that make decisions consistent and auditable, an exam-relevant skill because leaders must demonstrate disciplined treatment choices and documentation habits. You will learn the four common treatment options, accept, mitigate, transfer, and avoid, and how to choose among them based on business tolerance, cost, feasibility, and time sensitivity. We...

Episode 76 — Adopt Security Frameworks to Mature Programs Without Checkbox Compliance 10.02.2026

This episode teaches how to adopt security frameworks to mature a program while avoiding checkbox compliance, which aligns with exam objectives that emphasize both structured improvement and practical execution. You will learn what frameworks provide, such as organized coverage of capabilities and a shared language for gaps, and how to choose a framework that fits industry expectations, business g...

Episode 75 — Evaluate Risk in Business Terms Using Likelihood, Impact, and Exposure 10.02.2026

This episode explains how to evaluate risk in business terms using likelihood, impact, and exposure, a core exam competency because the certification expects leaders to justify priorities and treatments using consistent, defensible reasoning. You will learn how likelihood depends on your context, how impact includes operational disruption, financial loss, legal obligations, and trust damage, and h...

Episode 74 — Identify Common Network Threats and Map Them to Defensive Priorities 10.02.2026

This episode teaches how to recognize common network threats and translate them into prioritized defensive actions, aligning with exam objectives that test risk-based thinking in network contexts. You will learn how scanning, exploitation, credential abuse, man-in-the-middle attempts, and lateral movement typically appear, and how to prioritize defenses based on exposure, impact, and likelihood ra...

Episode 73 — Explain Networking Protocols and Technologies Managers Must Command Confidently 10.02.2026

This episode builds the networking concepts managers must understand to lead security decisions, which supports exam performance because many questions assume you can reason about protocols, services, and common failure modes without getting lost in low-level detail. You will learn how IP addressing and routing affect reachability, why DNS is both essential and frequently abused, and how TCP and U...

Episode 72 — Select Network Controls for Threats: Segmentation, Filtering, and Inspection 10.02.2026

This episode teaches how to select network controls that match real threats, a key exam theme because effective defense depends on understanding what segmentation, filtering, and inspection each accomplish and where they fail. You will learn how segmentation limits lateral movement by separating zones, how filtering restricts traffic to only what is needed, and how inspection examines traffic patt...

Episode 71 — Build Network Security Architecture Using Trust Models and Control Placement 10.02.2026

This episode explains how to think about network security architecture as a set of intentional trust decisions and control placement choices that determine whether attacks spread or stop, which maps directly to exam objectives on network security architecture and common threat mitigation. You will learn what a trust model is in practical terms, how implicit trust differs from verified trust, and h...

Episode 70 — Evaluate Machine Learning in Monitoring: Benefits, Limits, and Data Requirements 10.02.2026

This episode explains how machine learning can support monitoring when applied with clear goals, quality data, and disciplined validation, reflecting exam expectations around modern monitoring approaches and realistic limitations. You will learn what ML-based monitoring typically does, such as anomaly detection, prioritization assistance, and pattern discovery across large event streams, and why o...

Episode 69 — Apply SOAR Thoughtfully: Automation Scope, Guardrails, and Human Override 10.02.2026

This episode teaches how to apply SOAR in a way that increases speed and consistency without automating mistakes, which aligns with exam objectives around monitoring tools, process design, and risk-aware decision making. You will learn how to choose automation candidates such as enrichment, ticket creation, containment preparation, and routine response steps, then add guardrails that prevent autom...

Episode 68 — Lead SIEM Operations: Parsing, Correlation, Use-Case Quality, and Maintenance 10.02.2026

This episode explains how to run SIEM operations so the platform delivers detection value over time, a topic commonly assessed on the exam through questions about monitoring maturity, tuning discipline, and operational leadership. You will learn why parsing and normalization are foundational, how to build correlations that match real attacker behaviors, and how to define use cases with clear trigg...

Episode 67 — Centralize Logging Strategically: What to Collect, Why, and How Long 10.02.2026

This episode teaches how to centralize logging with purpose so security teams can investigate, detect, and prove control effectiveness, aligning with exam objectives around monitoring strategy and operational resilience. You will learn how to choose log sources based on threat scenarios and business priorities, including identity events, endpoint activity, network flows, application logs, and key...

Episode 66 — Operationalize Program Management: Roadmaps, Backlogs, Dependencies, and Proof 10.02.2026

This episode explains how to run security as an operational program with roadmaps and backlogs that deliver measurable outcomes, a concept the exam tests through program structure, governance, and the ability to demonstrate progress. You will learn how to build a roadmap that sequences outcomes aligned to business priorities, maintain a backlog with owners and acceptance criteria, and manage depen...

Episode 65 — Manage Security Personnel: Hiring, Coaching, Performance, and Retention Levers 10.02.2026

This episode focuses on managing security personnel as a strategic capability, aligning with exam expectations that leaders can build teams that scale, maintain quality, and reduce burnout. You will learn how to define roles by outcomes rather than titles, hire for judgment and communication as well as technical skill, and coach performance through clear expectations, feedback loops, and growth pl...

Episode 64 — Establish Security Governance: Committees, Charters, Metrics, and Ownership Clarity 10.02.2026

This episode teaches how to build governance that produces decisions, assigns ownership, and sustains security outcomes over time, aligning with exam objectives that emphasize program structure, policy control, and measurable management. You will learn how to define governance scope, create committee charters that specify authority and responsibilities, and design meeting rhythms and agendas that...

Episode 63 — Design Program Structure Around Culture, Reporting Lines, and Decision Rights 10.02.2026

This episode explains how security program structure determines execution speed, accountability, and consistency, a theme that the exam tests through governance and leadership judgment rather than pure technical detail. You will learn what “decision rights” mean, how reporting lines influence priorities and enforcement, and how culture affects whether security guidance becomes adopted behavior or...

Episode 62 — Balance Endpoint Protection: Prevention, Detection, Isolation, and Recovery Evidence 10.02.2026

This episode teaches how to balance endpoint protection layers so teams can prevent what they can, detect what they miss, isolate quickly when needed, and prove recovery with evidence, which aligns with exam expectations around practical security operations. You will learn how prevention controls like application control and hardening differ from detection controls like EDR analytics, and how isol...

Episode 61 — Monitor Endpoints Effectively: Telemetry, Coverage, Tuning, and Noise Reduction 10.02.2026

This episode explains how to monitor endpoints in a way that produces actionable visibility instead of alert overload, reinforcing exam-relevant concepts around endpoint strategy, detection quality, and operational management. You will learn what “telemetry” means in practice, how to select high-value signals such as process creation, privilege changes, persistence attempts, suspicious parent-chil...

Episode 60 — Reduce Malware Risk With Controls: Hardening, EDR Strategy, and Response Hooks 10.02.2026

This episode teaches a balanced approach to reducing malware risk through hardening, endpoint detection and response strategy, and response hooks that enable rapid containment, which the exam tests through system security and operations topics. You will learn how hardening reduces attack surface by disabling unnecessary features and removing risky defaults, how EDR focuses on behavior-based detect...

Episode 59 — Recognize Client-Side Attacks Leaders Must Anticipate and Prevent 10.02.2026

This episode explains client-side attacks and why they remain a dominant path for compromise, aligning with exam objectives on system security, awareness, and monitoring. You will learn to define client-side attack surfaces such as endpoints, browsers, email clients, and user applications, then recognize common patterns including phishing-driven credential theft, malicious documents, drive-by down...

Listen to the Certified: The GIAC GSLC Audio Course podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.