Certified: The CompTIA Security+ Audio Course

Episode 136: Network-Based Monitoring Tools (Domain 4)


Listen Later

The network is where everything intersects—making it one of the most important vantage points for threat detection. In this episode, we examine key tools used for monitoring network activity, including NetFlow analysis, SNMP traps, and traffic mirroring with SPAN ports or network taps. NetFlow provides metadata about who’s talking to whom, when, and how much—useful for spotting unusual behavior like data exfiltration or lateral movement. SNMP traps give real-time alerts on the health and behavior of network devices, including routers, switches, and firewalls. These tools can help identify misconfigurations, policy violations, or signs of compromise at the infrastructure level. Effective network monitoring creates a baseline of what “normal” looks like, making it easier to detect anomalies that might otherwise go unnoticed. When endpoint monitoring is blind, the network often reveals the truth.

...more
View all episodesView all episodes
Download on the App Store

Certified: The CompTIA Security+ Audio CourseBy Dr. Jason Edwards

  • 5
  • 5
  • 5
  • 5
  • 5

5

3 ratings


More shows like Certified: The CompTIA Security+ Audio Course

View all
CyberWire Daily by N2K Networks

CyberWire Daily

1,016 Listeners

Smashing Security by Graham Cluley

Smashing Security

322 Listeners

Professor Messer's Security+ Study Group by Professor Messer

Professor Messer's Security+ Study Group

140 Listeners

Shawn Ryan Show by Shawn Ryan

Shawn Ryan Show

43,968 Listeners