InfoSec Bites

CISSP Domain-3: Architectures, Cryptography, and Physical Security.


Listen Later

The podcast disucssion offers an expansive overview of various information technology (IT) and operational technology (OT) concepts, covering system architectures, cryptology, and security architecture design principles. The discussion initially details system architectures, explaining multi-tier server-based systems and the security implications of Industrial Control Systems (ICS), where safety is paramount, particularly in SCADA and DCS environments. A significant portion addresses cryptology, outlining the history of ciphers, the difference between symmetric and asymmetric encryption, key management challenges, and the use of hashing functions for integrity verification. Finally, it introduces security architectures, discussing threat modeling frameworks like STRIDE and the Cyber Kill Chain, alongside security models such as Bell-LaPadula (confidentiality) and Biba (integrity), before addressing physical security considerations for sites and facilities, including CPTED strategies and fire suppression methods.

...more
View all episodesView all episodes
Download on the App Store

InfoSec BitesBy HelloInfoSec