Certified: The CompTIA Security+ Audio Course

Episode 31: Insider Threats, Organized Crime, and Shadow IT (Domain 2)


Listen Later

Some of the most damaging cybersecurity incidents originate not from unknown hackers, but from within—through employees, vendors, or unmanaged systems operating outside official channels. In this episode, we explore insider threats in depth, breaking them into categories like malicious insiders, negligent users, and compromised individuals, each presenting different risks to data confidentiality, integrity, and availability. We also analyze the operations of organized cybercrime groups, which leverage ransomware, credential theft, and social engineering for financial gain, often deploying sophisticated malware and maintaining persistent access to high-value networks. Shadow IT adds another layer of complexity, referring to the use of unauthorized applications, services, or devices that bypass IT governance and increase the attack surface. These systems often lack monitoring, patching, or formal integration, making them vulnerable entry points and data leakage vectors. We discuss how policy enforcement, user education, network segmentation, and asset discovery tools can mitigate these blended internal threats. Recognizing and managing what happens inside the perimeter is just as important as defending against external adversaries.

...more
View all episodesView all episodes
Download on the App Store

Certified: The CompTIA Security+ Audio CourseBy Dr. Jason Edwards

  • 5
  • 5
  • 5
  • 5
  • 5

5

3 ratings


More shows like Certified: The CompTIA Security+ Audio Course

View all
CyberWire Daily by N2K Networks

CyberWire Daily

1,017 Listeners

Smashing Security by Graham Cluley

Smashing Security

322 Listeners

Professor Messer's Security+ Study Group by Professor Messer

Professor Messer's Security+ Study Group

140 Listeners

Shawn Ryan Show by Shawn Ryan

Shawn Ryan Show

44,027 Listeners