Blue Security

Blue Security

By Andy Jaw & Adam BrewerTechnology
Download on the App Store

Blue Security episodes

  • Things are getting better

    This week, Adam and Andy talk about how they see things improving in the cybersecurity industry from the Department of Justice and the US government investigating and hunting down cyber criminals and sanctioning the NSO group to bug bounties increasing and new regulations.

    -------------------------------------------

    Youtube Video Link: https://youtu.be/Jr-prV9DEUg

    -------------------------------------------

    Documentation:

    https://www.theverge.com/2021/11/8/22770701/revil-ransomware-arrest-kaseya-crypto-europol-cybersecurity

    https://www.whitehouse.gov/briefing-room/statements-releases/2021/05/12/fact-sheet-president-signs-executive-order-charting-new-course-to-improve-the-nations-cybersecurity-and-protect-federal-government-networks/

    https://www.whitehouse.gov/briefing-room/statements-releases/2021/07/28/fact-sheet-biden-administration-announces-further-actions-to-protect-u-s-critical-infrastructure/

    -------------------------------------------

    Contact Us:

    Website: http://bluesecuritypod.com

    Twitter: https://twitter.com/bluesecuritypod

    Instagram: https://www.instagram.com/bluesecuritypodcast/

    Facebook: https://www.facebook.com/bluesecpod

    Twitch: https://www.twitch.tv/bluesecuritypod

    -------------------------------------------

    Andy Jaw

    Twitter: https://twitter.com/ajawzero

    LinkedIn: https://www.linkedin.com/in/andyjaw/

    -------------------------------------------

    Adam Brewer

    Twitter: https://twitter.com/ajbrewer

    LinkedIn: https://www.linkedin.com/in/adamjbrewer/

    33 min
  • Zero Trust, Amazon Security, and other news

    This week, Adam and Andy talk about some recent infosec news, a shocking article about Amazon's lack of security, and what zero trust means to them.

    -------------------------------------------

    Youtube Video Link: https://youtu.be/Lzf-eYy7PTg

    -------------------------------------------

    Documentation:

    https://www.wired.com/story/amazon-failed-to-protect-your-data-investigation/

    http://us-cert.cisa.gov/ncas/current-activity/2021/02/26/nsa-releases-guidance-zero-trust-security-model

    https://query.prod.cms.rt.microsoft.com/cms/api/am/binary/RWJJdT

    -------------------------------------------

    Contact Us:

    Website: http://bluesecuritypod.com

    Twitter: https://twitter.com/bluesecuritypod

    Instagram: https://www.instagram.com/bluesecuritypodcast/

    Facebook: https://www.facebook.com/bluesecpod

    Twitch: https://www.twitch.tv/bluesecuritypod

    -------------------------------------------

    Andy Jaw

    Twitter: https://twitter.com/ajawzero

    LinkedIn: https://www.linkedin.com/in/andyjaw/

    -------------------------------------------

    Adam Brewer

    Twitter: https://twitter.com/ajbrewer

    LinkedIn: https://www.linkedin.com/in/adamjbrewer/

    35 min
  • Ignite 2021 Fall Highlights

    This week, Adam and Andy go over some of the endpoint, Windows, and security announcements from Ignite. If you were too busy to watch any of the sessions or read about the updates, listen in as they give the highlights from the conference.

    -------------------------------------------

    Youtube Video Link: https://youtu.be/GClAGTkzPmc

    -------------------------------------------

    Documentation:

    https://news.microsoft.com/ignite-november-2021-book-of-news/

    https://myignite.microsoft.com/home

    https://news.microsoft.com/november-2021-ignite/

    -------------------------------------------

    Contact Us:

    Website: http://bluesecuritypod.com

    Twitter: https://twitter.com/bluesecuritypod

    Instagram: https://www.instagram.com/bluesecuritypodcast/

    Facebook: https://www.facebook.com/bluesecpod

    Twitch: https://www.twitch.tv/bluesecuritypod

    -------------------------------------------

    Andy Jaw

    Twitter: https://twitter.com/ajawzero

    LinkedIn: https://www.linkedin.com/in/andyjaw/

    -------------------------------------------

    Adam Brewer

    Twitter: https://twitter.com/ajbrewer

    LinkedIn: https://www.linkedin.com/in/adamjbrewer/

    36 min
  • Cybersecurity Talent Gap

    This week, Adam and Andy talk about the cybersecurity talent gap. They give advice to those who are trying to break into the field as well as hiring managers on changing the way they look at recruiting to widen the talent pipeline. They also talk about how gatekeepers are toxic to the industry.

    -------------------------------------------

    Youtube Video Link: https://youtu.be/Iac0YlqiIx4

    -------------------------------------------

    Documentation:

    https://cybersecurity.att.com/blogs/security-essentials/theres-no-such-thing-as-an-entry-level-job-in-cybersecurity

    https://danielmiessler.com/blog/day-1-skills-required-to-land-an-entry-level-cybersecurity-job/

    https://www.cyberseek.org/pathway.html

    https://twitter.com/FrankMcG/status/1455380836858089477?s=20

    -------------------------------------------

    Contact Us:

    Website: http://bluesecuritypod.com

    Twitter: https://twitter.com/bluesecuritypod

    Instagram: https://www.instagram.com/bluesecuritypodcast/

    Facebook: https://www.facebook.com/bluesecpod

    Twitch: https://www.twitch.tv/bluesecuritypod

    -------------------------------------------

    Andy Jaw

    Twitter: https://twitter.com/ajawzero

    LinkedIn: https://www.linkedin.com/in/andyjaw/

    -------------------------------------------

    Adam Brewer

    Twitter: https://twitter.com/ajbrewer

    LinkedIn: https://www.linkedin.com/in/adamjbrewer/

    40 min
  • Microsoft Digital Defense Report, Consumer Expectations, and Gartner

    This week, Adam and Andy talk about Microsoft's Digital Defense Report,  consumer expectations of "invisible" security, and should you rip out an  information security tool just because it's not on the Gartner Magic Quadrant.

    -------------------------------------------

    Youtube Video Link: https://youtu.be/YXe79Uli1ow

    -------------------------------------------

    Documentation:

    https://blogs.microsoft.com/on-the-issues/2021/10/07/digital-defense-report-2021/


    https://www.darkreading.com/operations/how-to-adapt-to-rising-consumer-expectations-of-invisible-security/a/d-id/1340989?_mc=rss_x_drr_edt_aud_dr_x_x-rss-simple


    https://twitter.com/snorkel42/status/1450492940938321921?s=21

    -------------------------------------------

    Contact Us:

    Website: http://bluesecuritypod.com

    Twitter: https://twitter.com/bluesecuritypod

    Instagram: https://www.instagram.com/bluesecuritypodcast/

    Facebook: https://www.facebook.com/bluesecpod

    Twitch: https://www.twitch.tv/bluesecuritypod

    -------------------------------------------

    Andy Jaw

    Twitter: https://twitter.com/ajawzero

    LinkedIn: https://www.linkedin.com/in/andyjaw/

    -------------------------------------------

    Adam Brewer

    Twitter: https://twitter.com/ajbrewer

    LinkedIn: https://www.linkedin.com/in/adamjbrewer/

    40 min
  • Windows 365 with Special Guest Bradley Dupay

    This week, Adam and Andy talk with Microsoft's Global Black Belt Specialist, Bradley Dupay, about the all new cloud PC offering called Windows 365. They go over how VDI has evolved over the years, the implementation details, use cases, and importance to security defenders. This was an amazing conversation! Listen in on how you can modernize your virtualized desktops for a secure hybrid workplace.

    -------------------------------------------

    Youtube Video Link: https://youtu.be/PVo7_b9BJWg

    -------------------------------------------

    Documentation:

    https://docs.microsoft.com/en-us/windows-365/overview

    https://techcommunity.microsoft.com/t5/windows-it-pro-blog/securing-your-windows-365-cloud-pcs/ba-p/2663129

    Bradley Dupay

    Linkedin: https://www.linkedin.com/in/bdupay/

    -------------------------------------------

    Contact Us:

    Website: http://bluesecuritypod.com

    Twitter: https://twitter.com/bluesecuritypod

    Instagram: https://www.instagram.com/bluesecuritypodcast/

    Facebook: https://www.facebook.com/bluesecpod

    Twitch: https://www.twitch.tv/bluesecuritypod

    -------------------------------------------

    Andy Jaw

    Twitter: https://twitter.com/ajawzero

    LinkedIn: https://www.linkedin.com/in/andyjaw/

    -------------------------------------------

    Adam Brewer

    Twitter: https://twitter.com/ajbrewer

    LinkedIn: https://www.linkedin.com/in/adamjbrewer/

    53 min
  • Facebook Outage Learnings and Windows 11 security

    This week on the Blue Security Podcast, Adam and Andy talk about the Facebook outage and what security defenders can learn from reading their after actions report. They also dive into Windows 11 and the security features that make it the most secure version of Windows yet.

    -------------------------------------------

    Youtube Video Link: https://youtu.be/DdGeRMkZVOM

    -------------------------------------------

    Documentation:

    https://www.microsoft.com/security/blog/?p=93810

    https://www.microsoft.com/security/blog/2019/10/21/microsoft-and-partners-design-new-device-security-requirements-to-protect-against-targeted-firmware-attacks/

    https://www.microsoft.com/security/blog/2020/11/17/meet-the-microsoft-pluton-processor-the-security-chip-designed-for-the-future-of-windows-pcs/

    https://www.youtube.com/watch?v=tg9QUrnVFho

    -------------------------------------------

    Contact Us:

    Website: http://bluesecuritypod.com

    Twitter: https://twitter.com/bluesecuritypod

    Instagram: https://www.instagram.com/bluesecuritypodcast/

    Facebook: https://www.facebook.com/bluesecpod

    -------------------------------------------

    Andy Jaw

    Twitter: https://twitter.com/ajawzero

    LinkedIn: https://www.linkedin.com/in/andyjaw/

    -------------------------------------------

    Adam Brewer

    Twitter: https://twitter.com/ajbrewer

    LinkedIn: https://www.linkedin.com/in/adamjbrewer/

    35 min
  • You are going to be a victim of ransomware

    This week on the Blue Security Podcast, Adam and Andy talk about planning to be a victim of ransomware. This is a mindset shift. Instead of focusing on prevention, cybersecurity defenders should plan and practice how to mitigate the damage against a ransomware attack.

    -------------------------------------------

    Youtube Video Link: https://youtu.be/MOq2KhhCjAI

    -------------------------------------------

    Documentation:

    https://www.darkreading.com/vulnerabilities-threats/you-re-going-to-be-the-victim-of-a-ransomware-attack

    -------------------------------------------

    Contact Us:

    Website: http://bluesecuritypod.com

    Twitter: https://twitter.com/bluesecuritypod

    Instagram: https://www.instagram.com/bluesecuritypodcast/

    Facebook: https://www.facebook.com/bluesecpod

    -------------------------------------------

    Andy Jaw

    Twitter: https://twitter.com/ajawzero

    LinkedIn: https://www.linkedin.com/in/andyjaw/

    -------------------------------------------

    Adam Brewer

    Twitter: https://twitter.com/ajbrewer

    LinkedIn: https://www.linkedin.com/in/adamjbrewer/

    22 min
  • TPM design limitations and Apple-Google app store actions

    This week on the Blue Security Podcast, Adam and Andy talk about two interesting topics. The first is a pentesting company's successful hack Bitlocker using a TPM limitation. They talk about why this is complicated and the mitigations for it. They also talk about Apple and Google's decision to pull a voting app from the store in Russia a day before the parliamentary elections and the effect it has on democracy.

    -------------------------------------------

    Youtube Video Link: https://youtu.be/-GNLKWTtxTI

    -------------------------------------------

    Documentation:

    https://dolosgroup.io/blog/2021/7/9/from-stolen-laptop-to-inside-the-company-network

    https://explainxkcd.com/wiki/index.php/538:_Security

    https://gizmodo.com/apple-and-google-pull-opposition-app-from-russian-store-1847695238

    -------------------------------------------

    Contact Us:

    Website: http://bluesecuritypod.com

    Twitter: https://twitter.com/bluesecuritypod

    Instagram: https://www.instagram.com/bluesecuritypodcast/

    Facebook: https://www.facebook.com/bluesecpod

    -------------------------------------------

    Andy Jaw

    Twitter: https://twitter.com/ajawzero

    LinkedIn: https://www.linkedin.com/in/andyjaw/

    -------------------------------------------

    Adam Brewer

    Twitter: https://twitter.com/ajbrewer

    LinkedIn: https://www.linkedin.com/in/adamjbrewer/

    28 min
  • Protonmail kerfuffle

    This week on the Blue Security Podcast, Adam and Andy talk about the hot water Protonmail got themselves into when the news reported that they  provided IP address and device information on a Protonmail account to the Swiss government. It's a great discussion on privacy vs security and laws that companies have to abide by.

    -------------------------------------------

    Youtube Video Link: https://youtu.be/ZMcUKQstqsA

    -------------------------------------------

    Documentation:

    https://thehackernews.com/2021/09/protonmail-shares-activists-ip-address.html

    https://protonmail.com/blog/climate-activist-arrest/

    -------------------------------------------

    Contact Us:

    Website: http://bluesecuritypod.com

    Twitter: https://twitter.com/bluesecuritypod

    Instagram: https://www.instagram.com/bluesecuritypodcast/

    Facebook: https://www.facebook.com/bluesecpod

    -------------------------------------------

    Andy Jaw

    Twitter: https://twitter.com/ajawzero

    LinkedIn: https://www.linkedin.com/in/andyjaw/

    -------------------------------------------

    Adam Brewer

    Twitter: https://twitter.com/ajbrewer

    LinkedIn: https://www.linkedin.com/in/adamjbrewer/

    18 min

About Blue Security

From the publisher's feed

A podcast for information security defenders (blue team) on best practices, tools, and implementation for enterprise security.

More shows like Blue Security

Acquired by Ben Gilbert and David Rosenthal

Acquired

4,836 Listeners

Pivot by New York Magazine

Pivot

9,613 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,011 Listeners

WSJ Tech News Briefing by The Wall Street Journal

WSJ Tech News Briefing

1,644 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

373 Listeners

Risky Business by Risky Business Media

Risky Business

374 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

650 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,027 Listeners

Smashing Security by Graham Cluley

Smashing Security

317 Listeners

Microsoft Cloud IT Pro Podcast by Ben Stegink, Scott Hoag

Microsoft Cloud IT Pro Podcast

65 Listeners

Cybersecurity Today by David Shipley

Cybersecurity Today

179 Listeners

Defense in Depth by CISO Series

Defense in Depth

73 Listeners

The Azure Security Podcast by Michael Howard, Sarah Young, Gladys Rodriguez and Mark Simos

The Azure Security Podcast

25 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

137 Listeners

Entra.Chat by Merill Fernando

Entra.Chat

6 Listeners