
Sign up to save your podcasts
Or


Endpoints remain a primary target for cyberattacks, and protecting them requires more than traditional antivirus solutions. This episode explores Endpoint Detection and Response (EDR), a modern approach to securing laptops, desktops, servers, and mobile devices. We explain how EDR tools provide real-time monitoring, behavioral analysis, threat hunting, and automated response capabilities. You'll learn how EDR integrates with SIEM platforms, supports forensic investigations, and helps contain lateral movement during incidents. CISSPs must understand how to evaluate, deploy, and tune EDR solutions to protect the front lines of enterprise environments.
Data doesn’t disappear just because you delete it. In this episode, we focus on how to securely dispose of media and sanitize storage devices to prevent data recovery. We cover techniques such as overwriting, degaussing, cryptographic erasure, and physical destruction, as well as when and how to apply each. You’ll also learn about documentation requirements, chain of custody for retired media, and applicable standards like NIST SP 800-88. CISSPs must ensure that end-of-life processes are consistent, auditable, and aligned with regulatory and organizational data protection obligations.
Security isn’t just about stopping bad changes—it’s about managing all changes effectively. In this episode, we examine the formal process of change control: how to submit change requests, perform impact assessments, obtain approvals, test in controlled environments, and document results. We also cover the importance of change advisory boards (CABs), rollback planning, and post-implementation review. For CISSPs, understanding change control is key to maintaining operational stability, preventing unauthorized modifications, and aligning IT operations with regulatory and security frameworks.
Unpatched systems are one of the leading causes of successful cyberattacks. In this episode, we explore the role of patch management and configuration control in maintaining secure and reliable systems. We explain how to evaluate patches, schedule deployments, and monitor success. You'll also learn how to track configuration baselines, control changes, and enforce consistent settings across environments. CISSPs must ensure that vulnerabilities are addressed promptly and that unauthorized changes are detected and corrected before they become security issues.
Plans are only useful if they’re tested. In this episode, we explore the various methods for testing business continuity and disaster recovery plans—including walkthroughs, simulations, functional tests, and tabletop exercises. We discuss how to design tests, involve key stakeholders, and evaluate performance without disrupting operations. You’ll learn how testing helps uncover weaknesses in coordination, communication, and recovery capabilities. For CISSPs, facilitating and analyzing these exercises is crucial to strengthening organizational resilience and ensuring plans work under real-world conditions.
When disaster strikes, organizations must restore operations quickly—and with minimal data loss. This episode focuses on Disaster Recovery Planning (DRP), particularly the metrics used to guide recovery strategies: Recovery Time Objective (RTO) and Recovery Point Objective (RPO). We explain how to define recovery priorities, select appropriate backup and failover solutions, and develop DR plans that meet business expectations. You’ll also learn about recovery site options, communication planning, and regular testing. CISSPs must understand DRP as part of a broader resilience strategy tied to business continuity.
The reliability of evidence hinges on how it’s handled. In this episode, we dive deeper into the principles and techniques for acquiring and preserving digital evidence. Topics include imaging storage media, capturing memory dumps, recording live sessions, and documenting every step in the collection process. We also address how to avoid contamination, preserve timestamps, and ensure repeatability for court presentation. CISSPs must ensure that any evidence collected during investigations—whether by internal teams or third-party experts—is done with integrity and according to accepted forensic procedures.
Preserving and analyzing digital evidence requires precision, consistency, and legal awareness. This episode explores the fundamentals of digital forensics—from identifying and collecting evidence to maintaining a documented chain of custody. We discuss volatile data acquisition, imaging tools, hashing for integrity verification, and timeline reconstruction. You’ll also learn about legal standards that govern admissibility and the responsibilities of forensic investigators. CISSPs don’t have to be deep forensic experts, but they must understand how to support investigations and preserve evidence in a defensible manner.
Incidents are inevitable, and how you respond can determine the scale of impact. In this episode, we walk through the phases of incident management—preparation, identification, containment, eradication, recovery, and lessons learned. We explain how to build an incident response plan, assemble a response team, and establish escalation protocols. You’ll also learn how to coordinate with legal, PR, and law enforcement when necessary. Incident management is a high-priority domain for CISSPs because it brings together technical expertise, process discipline, and communication under pressure.
Capturing events is only the beginning—making sense of them is where the real value lies. This episode covers how organizations collect, normalize, and correlate logs from various systems and devices using Security Information and Event Management (SIEM) platforms. We discuss the components of a SIEM, alert tuning, and the use of correlation rules to detect complex threat patterns. You'll learn how SIEMs enhance visibility, speed up investigations, and support compliance with standards like HIPAA and PCI DSS. CISSPs must understand how to use logging and SIEM tools to build proactive and resilient detection capabilities.
From the publisher's feed