EPISODE · Jun 15, 2025 · 21 MIN
Episode 76: Infrastructure Security Foundations (Domain 3)
from Certified: The CompTIA Security+ Audio Course · host Dr. Jason Edwards
Securing infrastructure starts with design decisions about where and how devices are placed, how data flows, and where trust boundaries begin and end. In this episode, we focus on device placement and network zoning, exploring how separating front-end, back-end, and management traffic can prevent attackers from using one compromised segment to access others. Concepts like jump servers, demilitarized zones (DMZs), and out-of-band management networks help isolate critical systems and limit exposure. We also discuss attack surface reduction by minimizing the number of internet-facing devices and placing high-risk assets behind additional layers of access control. Proper placement of firewalls, intrusion detection systems (IDS), and routers isn't just about connectivity—it defines how effectively threats can be contained and how quickly anomalies can be detected. Infrastructure security isn’t just about plugging holes—it’s about building a structure that anticipates where cracks might form.
What this episode covers
Securing infrastructure starts with design decisions about where and how devices are placed, how data flows, and where trust boundaries begin and end. In this episode, we focus on device placement and network zoning, exploring how separating front-end, back-end, and management traffic can prevent attackers from using one compromised segment to access others. Concepts like jump servers, demilitarized zones (DMZs), and out-of-band management networks help isolate critical systems and limit exposure. We also discuss attack surface reduction by minimizing the number of internet-facing devices and placing high-risk assets behind additional layers of access control. Proper placement of firewalls, intrusion detection systems (IDS), and routers isn't just about connectivity—it defines how effectively threats can be contained and how quickly anomalies can be detected. Infrastructure security isn’t just about plugging holes—it’s about building a structure that anticipates where cracks might form.
NOW PLAYING
Episode 76: Infrastructure Security Foundations (Domain 3)
No transcript for this episode yet
Similar Episodes
Mar 26, 2026 ·1m
Mar 19, 2026 ·34m
Feb 18, 2026 ·11m
Feb 11, 2026 ·45m