Jason Edwards
Certified: The ISC(2) CC Audio Course
Certified: The ISC(2) CC Certification Audio Course is an audio-first study program built for people who want a clean, practical path into cybersecurity without getting buried in jargon. It’s designed for beginners and career changers, as well as IT and business professionals who need a solid security foundation. If you’re aiming for the ISC(2) Certified in Cybersecurity (CC) credential, this course gives you a structured way to learn the concepts the exam expects, using plain language and real-world framing. You do not need a deep technical background to start. You need consistency, curiosity...
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Welcome to the ISC2 Certified in Cybersecurity Audio Course! 11.03.2026 0:51
Certified: The ISC(2) CC Certification Audio Course is an audio-first study program built for people who want a clean, practical path into cybersecurity without getting buried in jargon. It’s designed for beginners and career changers, as well as IT and business professionals who need a solid security foundation. If you’re aiming for the ISC(2) Certified in Cybersecurity (CC) credential, this cour...
Episode 64 — Security Awareness Training Importance: Building Habits That Resist Attacks 22.02.2026 15:43
This episode explains why security awareness training matters, emphasizing that training is not about blaming users but about building repeatable habits that reduce the probability and impact of common attacks. You will learn how awareness programs support multiple security goals, including preventing credential compromise, reducing malware infections, protecting sensitive data, and improving inci...
Episode 63 — Security Awareness Training Concepts: Social Engineering and Human Exploits 22.02.2026 16:01
This episode explains the foundational concepts behind security awareness training, focusing on how social engineering attacks work and why human behavior is a major factor in organizational risk, which the CC exam expects you to understand. You will learn how attackers exploit trust, urgency, authority, curiosity, and fear to trick people into revealing information, approving MFA prompts, opening...
Episode 62 — Privacy Policy Essentials: Expectations, Handling Rules, and Accountability 22.02.2026 16:24
This episode focuses on privacy policy essentials and helps you understand how organizations define acceptable collection, use, sharing, and protection of personal data, which supports CC-level privacy and governance concepts. You will learn what a privacy policy aims to communicate to stakeholders, including what data is collected, why it is collected, how it is used, who it may be shared with, a...
Episode 61 — Change Management Policy: Documentation, Approval, and Rollback That Works 22.02.2026 17:33
This episode explains change management policy as a control that protects integrity and availability by ensuring system changes are planned, reviewed, implemented carefully, and reversible when something goes wrong. You will learn why unmanaged changes create security risk through misconfigurations, untested updates, and undocumented access changes that are hard to investigate later. We will discu...
Episode 60 — BYOD Policy Basics: Balancing User Convenience and Organizational Security 22.02.2026 16:09
This episode introduces bring your own device (BYOD) policy concepts and helps you understand how organizations manage the security risks of personal devices accessing corporate systems, a topic that appears in CC objectives through administrative and technical control thinking. You will learn the kinds of risks BYOD introduces, such as uncontrolled patching, mixed personal and corporate data, los...
Episode 59 — Acceptable Use Policy: Setting Boundaries Without Creating Shadow IT 22.02.2026 15:25
This episode explains acceptable use policies (AUPs) as governance tools that set clear expectations for how users may access and use organizational systems, data, and networks, a concept that supports multiple CC objectives around administrative controls. You will learn what an AUP typically covers, such as appropriate device use, prohibited activities, safe browsing expectations, handling of org...
Episode 58 — Password Policy Essentials: Strength, Rotation Myths, and Practical Enforcement 22.02.2026 16:10
This episode covers password policy fundamentals and prepares you for CC questions that test how authentication controls should be designed and enforced in real environments. You will learn what makes a password policy effective, including length expectations, banned password lists, secure storage practices, and account lockout considerations that reduce brute force risk without enabling denial-of...
Episode 57 — Data Handling Policy Essentials: Rules That Prevent the Most Common Mistakes 22.02.2026 16:31
This episode explains data handling policies as administrative controls that translate confidentiality and privacy expectations into clear, repeatable behaviors across the organization, which the CC exam expects you to understand in principle. You will learn what effective data handling policies typically address, including classification rules, approved storage locations, sharing limitations, enc...
Episode 56 — System Hardening Through Configuration Management: Baselines, Updates, Patches 22.02.2026 17:46
This episode focuses on system hardening through configuration management, which is the discipline of maintaining secure, consistent settings across systems while controlling change to reduce risk. You will learn how baselines define known-good configurations, how patching reduces exposure to known vulnerabilities, and how update processes must balance security urgency with stability and testing r...
Episode 55 — Logging and Monitoring Security Events: What to Capture for Real Value 22.02.2026 16:41
This episode explains logging and monitoring as foundational security capabilities, showing how collecting the right events supports detection, investigation, and accountability, which are important themes in CC-level security operations. You will learn what good logs typically capture, such as authentication activity, privilege changes, configuration changes, and access to sensitive resources, an...
Episode 54 — Data Handling Discipline: Classification, Labeling, Retention, and Destruction 22.02.2026 17:12
This episode covers data handling as a practical security skill, connecting classification, labeling, retention, and secure destruction to the confidentiality and compliance outcomes the CC exam tests. You will learn why classification defines how data should be protected, how labels communicate handling expectations, and how retention rules reduce risk by limiting how long sensitive data remains...
Episode 53 — Encryption Essentials: Symmetric, Asymmetric, and Hashing Without Confusion 22.02.2026 16:10
This episode explains foundational cryptography concepts that appear frequently on the CC exam, focusing on how symmetric encryption, asymmetric encryption, and hashing solve different security problems. You will learn what each method is used for in practical terms, such as symmetric encryption for efficient confidentiality, asymmetric encryption for key exchange and digital signatures, and hashi...
Episode 52 — Cloud Network Concepts: SLA, MSP, SaaS, PaaS, IaaS, Hybrid Explained 22.02.2026 18:13
This episode introduces cloud service models and key terms such as service level agreements (SLAs), managed service providers (MSPs), and hybrid deployments, helping you interpret CC exam questions that describe shared environments and shared responsibilities. You will learn how SaaS, PaaS, and IaaS differ in who manages what, and why misunderstanding responsibility boundaries leads to gaps in sec...
Episode 51 — Defense in Depth and NAC: Segmentation for Embedded Systems and IoT 22.02.2026 17:22
This episode focuses on defense in depth and network access control (NAC) as practical strategies for managing risk from embedded systems and IoT devices, which frequently have limited security features and long patch cycles. You will learn how defense in depth layers controls so a single failure does not become a full compromise, and how NAC helps enforce who and what is allowed onto a network ba...
Episode 50 — Network Design Security: DMZ, VLAN, VPN, and Micro-Segmentation Done Right 22.02.2026 16:46
This episode teaches secure network design concepts, including DMZs, VLANs, VPNs, and micro-segmentation, focusing on how segmentation reduces attack surface and limits blast radius, which is directly relevant to CC exam objectives. You will learn how a DMZ isolates public-facing services, how VLANs separate internal traffic into logical segments, and how VPNs provide secure remote connectivity wh...
Episode 49 — MOUs and MOAs in Infrastructure Planning: Shared Responsibilities and Risk 22.02.2026 13:03
This episode explains memorandums of understanding (MOUs) and memorandums of agreement (MOAs) as governance tools that clarify shared responsibilities, which is useful for CC scenarios involving third parties, shared services, or cross-department operations. You will learn how these documents define expectations, roles, service responsibilities, and accountability boundaries so security does not f...
Episode 48 — On-Prem Network Infrastructure: Power, HVAC, Fire Suppression, Redundancy 22.02.2026 14:00
This episode covers on-premises infrastructure considerations that affect security and resilience, helping you answer CC questions where physical and operational realities determine availability and risk. You will learn why power, cooling, fire suppression, and environmental monitoring matter to security, and how failures in these areas can cause downtime, data loss, and unsafe conditions. We will...
Episode 47 — Firewalls and IPS Fundamentals: Blocking, Allowing, and Stopping What Matters 22.02.2026 14:13
This episode explains firewalls and intrusion prevention systems (IPS) at a foundational level, emphasizing how they support confidentiality, integrity, and availability by controlling traffic and stopping known malicious patterns. You will learn how firewall rules decide what is allowed or denied based on criteria like source, destination, protocol, and port, and why default-deny thinking is ofte...
Episode 46 — Prevent Attacks with Antivirus and Scanning: Strengths, Limits, and Good Use 22.02.2026 14:34
This episode covers antivirus and scanning as preventive and detective measures, helping you understand what these tools do well, where they fail, and how the CC exam expects you to reason about layered protection. You will learn the difference between traditional signature-based antivirus and more behavior-focused approaches, and why updates and tuning are necessary to remain effective against ev...
Episode 45 — HIDS and NIDS Explained: Host Versus Network Detection Tradeoffs 22.02.2026 14:24
This episode compares host-based intrusion detection systems (HIDS) and network-based intrusion detection systems (NIDS), giving you a practical framework for choosing the right visibility for a given risk, which is a common exam expectation. You will learn what each approach can observe, such as host process activity and file changes for HIDS versus traffic patterns and protocol behavior for NIDS...
Episode 44 — Identify Attacks Using IDS Concepts: What Detection Can and Cannot Prove 22.02.2026 14:46
This episode explains intrusion detection system (IDS) concepts and helps you understand how detection works at a high level, which the CC exam often tests through scenario questions about alerts and monitoring. You will learn the difference between signature-based and anomaly-based detection, and why both approaches can produce false positives and false negatives depending on context. We will dis...
Episode 43 — Network Threat Types: DDoS, Viruses, Worms, Trojans, MITM, Side-Channels 22.02.2026 16:08
This episode surveys common network and malware threat types that the CC exam expects you to recognize, focusing on what each threat aims to do and how it typically shows up in symptoms and logs. You will learn how denial-of-service attacks affect availability, how malware families differ in propagation and intent, and why man-in-the-middle attacks are especially dangerous for confidentiality and...
Episode 42 — Ports and Applications: Mapping Network Conversations to Real Risk 22.02.2026 14:07
This episode connects ports, services, and applications so you can interpret common exam scenarios that describe traffic, blocked connections, or suspicious network behavior. You will learn what a port represents, why transport protocols matter, and how services are identified and exposed through listening ports on hosts and devices. We will discuss the security implications of open ports, includi...
Episode 41 — WiFi Fundamentals for Security: How Wireless Works and Where Attacks Hide 22.02.2026 15:00
This episode explains WiFi fundamentals with a security lens, helping you understand what wireless networks are doing behind the scenes and why the CC exam expects you to recognize common wireless risks. You will learn core ideas such as access points, clients, SSIDs, basic authentication and encryption concepts, and why radio-based communication changes the threat model compared to wired networks...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.