Episode 76: Infrastructure Security Foundations (Domain 3) episode artwork

EPISODE · Jun 15, 2025 · 21 MIN

Episode 76: Infrastructure Security Foundations (Domain 3)

from Certified: The CompTIA Security+ Audio Course · host Dr. Jason Edwards

Securing infrastructure starts with design decisions about where and how devices are placed, how data flows, and where trust boundaries begin and end. In this episode, we focus on device placement and network zoning, exploring how separating front-end, back-end, and management traffic can prevent attackers from using one compromised segment to access others. Concepts like jump servers, demilitarized zones (DMZs), and out-of-band management networks help isolate critical systems and limit exposure. We also discuss attack surface reduction by minimizing the number of internet-facing devices and placing high-risk assets behind additional layers of access control. Proper placement of firewalls, intrusion detection systems (IDS), and routers isn't just about connectivity—it defines how effectively threats can be contained and how quickly anomalies can be detected. Infrastructure security isn’t just about plugging holes—it’s about building a structure that anticipates where cracks might form.

Securing infrastructure starts with design decisions about where and how devices are placed, how data flows, and where trust boundaries begin and end. In this episode, we focus on device placement and network zoning, exploring how separating front-end, back-end, and management traffic can prevent attackers from using one compromised segment to access others. Concepts like jump servers, demilitarized zones (DMZs), and out-of-band management networks help isolate critical systems and limit exposure. We also discuss attack surface reduction by minimizing the number of internet-facing devices and placing high-risk assets behind additional layers of access control. Proper placement of firewalls, intrusion detection systems (IDS), and routers isn't just about connectivity—it defines how effectively threats can be contained and how quickly anomalies can be detected. Infrastructure security isn’t just about plugging holes—it’s about building a structure that anticipates where cracks might form.

NOW PLAYING

Episode 76: Infrastructure Security Foundations (Domain 3)

0:00 21:32

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Frequently Asked Questions

How long is this episode of Certified: The CompTIA Security+ Audio Course?

This episode is 21 minutes long.

When was this Certified: The CompTIA Security+ Audio Course episode published?

This episode was published on June 15, 2025.

What is this episode about?

Securing infrastructure starts with design decisions about where and how devices are placed, how data flows, and where trust boundaries begin and end. In this episode, we focus on device placement and network zoning, exploring how separating...

Is there a transcript available for this episode?

Yes, a full transcript is available for this episode. You can read the complete transcript on the episode page.

Can I download this Certified: The CompTIA Security+ Audio Course episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!