Certified: The GIAC GSLC Audio Course cover art

All Episodes

Certified: The GIAC GSLC Audio Course — 83 episodes

#
Title
1

Welcome to Certified: The GIAC GSLC Audio Course

2

Episode 82 — Include Physical Vulnerabilities: Facilities, Devices, and Environmental Dependencies

3

Episode 81 — Drive Remediation Workflows: Ownership, SLAs, Exceptions, and Verification Evidence

4

Episode 80 — Prioritize Vulnerabilities Using Context: Exposure, Criticality, and Exploit Signals

5

Episode 79 — Build Vulnerability Management as a Program, Not a Scanning Habit

6

Episode 78 — Defend Security Priorities With Evidence: Metrics, Narratives, and Tradeoffs

7

Episode 77 — Apply Risk Techniques: Treatment Options, Registers, and Decision Documentation

8

Episode 76 — Adopt Security Frameworks to Mature Programs Without Checkbox Compliance

9

Episode 75 — Evaluate Risk in Business Terms Using Likelihood, Impact, and Exposure

10

Episode 74 — Identify Common Network Threats and Map Them to Defensive Priorities

11

Episode 73 — Explain Networking Protocols and Technologies Managers Must Command Confidently

12

Episode 72 — Select Network Controls for Threats: Segmentation, Filtering, and Inspection

13

Episode 71 — Build Network Security Architecture Using Trust Models and Control Placement

14

Episode 70 — Evaluate Machine Learning in Monitoring: Benefits, Limits, and Data Requirements

15

Episode 69 — Apply SOAR Thoughtfully: Automation Scope, Guardrails, and Human Override

16

Episode 68 — Lead SIEM Operations: Parsing, Correlation, Use-Case Quality, and Maintenance

17

Episode 67 — Centralize Logging Strategically: What to Collect, Why, and How Long

18

Episode 66 — Operationalize Program Management: Roadmaps, Backlogs, Dependencies, and Proof

19

Episode 65 — Manage Security Personnel: Hiring, Coaching, Performance, and Retention Levers

20

Episode 64 — Establish Security Governance: Committees, Charters, Metrics, and Ownership Clarity

21

Episode 63 — Design Program Structure Around Culture, Reporting Lines, and Decision Rights

22

Episode 62 — Balance Endpoint Protection: Prevention, Detection, Isolation, and Recovery Evidence

23

Episode 61 — Monitor Endpoints Effectively: Telemetry, Coverage, Tuning, and Noise Reduction

24

Episode 60 — Reduce Malware Risk With Controls: Hardening, EDR Strategy, and Response Hooks

25

Episode 59 — Recognize Client-Side Attacks Leaders Must Anticipate and Prevent

26

Episode 58 — Align Policy With Risk Appetite, Exceptions, and Accountability Mechanisms

27

Episode 57 — Distinguish Policies, Standards, Guidelines, Baselines, and Procedures Correctly

28

Episode 56 — Write Security Policies That People Can Follow and Auditors Can Verify

29

Episode 55 — Mature Awareness Programs Using Metrics, Reinforcement, and Targeted Campaigns

30

Episode 54 — Design Security Awareness That Changes Behavior and Reduces Real Incidents

31

Episode 53 — Assess Human Risk Drivers: Roles, Behaviors, and Likely Failure Points

32

Episode 52 — Handle Project Drift: Change Control, Dependencies, and Delivery Evidence

33

Episode 51 — Build Business Support for Security Work Using Value, Cost, and Tradeoffs

34

Episode 50 — Run Security Projects: Scope, Schedule, Risk, and Stakeholder Commitments

35

Episode 49 — Manage Third-Party Contracts: SLAs, Audit Rights, Breach Terms, and Ownership

36

Episode 48 — Build Vendor Risk Management: Intake, Due Diligence, and Ongoing Monitoring

37

Episode 47 — Negotiate Security Outcomes With Vendors Using Requirements, Evidence, and Leverage

38

Episode 46 — Align Compliance Expectations With Practical Security Evidence and Continuous Checks

39

Episode 45 — Translate Privacy Requirements Into Controls: Minimization, Retention, and Access

40

Episode 44 — Protect Data at Rest Using Encryption, Key Custody, and Access Patterns

41

Episode 43 — Protect Data in Transit Using TLS Choices and Certificate Hygiene

42

Episode 42 — Manage Cloud Risk With Baselines, Policies, and Exception Handling That Scales

43

Episode 41 — Control Cloud Data Exposure: Storage Permissions, Keys, and Configuration Drift

44

Episode 40 — Operationalize Cloud Logging: Sources, Normalization, Retention, and Alert Quality

45

Episode 39 — Design Cloud Network Segmentation to Reduce Blast Radius and Lateral Movement

46

Episode 38 — Secure Cloud Identity: Roles, Federation, MFA, and Least Privilege Enforcement

47

Episode 37 — Master Cloud Service Models and Shared Responsibility Without Blind Spots

48

Episode 36 — Set AI Governance: Acceptable Use, Access Controls, and Monitoring Expectations

49

Episode 35 — Manage AI Security Risks: Data Leakage, Prompt Abuse, and Model Misuse

50

Episode 34 — Evaluate AI Business Benefits Without Confusing Demos With Production Reality

51

Episode 33 — Explain AI Types and Capabilities Leaders Must Understand to Govern Risk

52

Episode 32 — Build Application Security Testing Strategy: SAST, DAST, SCA, and Triage

53

Episode 31 — Drive DevSecOps Adoption With Measurable Controls and Shared Ownership

54

Episode 30 — Secure Infrastructure as Code With Reviews, Policy Gates, and Guardrails

55

Episode 29 — Manage Dependency and Component Risk Across Build Pipelines and Releases

56

Episode 28 — Operationalize Secure Coding Expectations Without Slowing Delivery Excessively

57

Episode 27 — Prioritize Application Risks Using Threat Modeling and Abuse-Case Thinking

58

Episode 26 — Secure the SDLC by Embedding Security Requirements and Design Reviews

59

Episode 25 — Improve SOC Handoffs With Playbooks, Case Management, and Evidence Standards

60

Episode 24 — Build Use Cases That Improve Detection Fidelity and Analyst Confidence

61

Episode 23 — Set SOC Metrics That Drive Quality, Not Ticket Volume Theater

62

Episode 22 — Staff a SOC With Clear Roles, Skills, and Escalation Paths

63

Episode 21 — Choose SOC Operating Models: In-House, Outsourced, Hybrid, and Follow-the-Sun

64

Episode 20 — Define SOC Mission and Scope That Matches Business Risk and Maturity

65

Episode 19 — Design Disaster Recovery Targets: RTO, RPO, Testing, and Restoration Evidence

66

Episode 18 — Build Business Continuity Planning That Reflects Real Business Dependencies

67

Episode 17 — Operationalize Lessons Learned Into Program Improvements and Reduced Recurrence

68

Episode 16 — Drive Eradication and Recovery With Verification, Monitoring, and Closure Criteria

69

Episode 15 — Run Containment Choices Without Breaking Business Operations or Safety

70

Episode 14 — Coordinate Communications: Legal, PR, Executives, and Affected Stakeholders

71

Episode 13 — Preserve Evidence Correctly: Chain of Custody, Logging, and Forensics Readiness

72

Episode 12 — Build Triage Discipline: Severity, Scope, Impact, and Containment Priorities

73

Episode 11 — Lead Incident Response as a Lifecycle With Clear Roles and Authority

74

Episode 10 — Reinforce Crypto Decisions With Practical Threat Models and Failure Modes

75

Episode 9 — Design Password Storage That Survives Breaches Using Modern Hash Strategies

76

Episode 8 — Use Hashing Correctly for Integrity Checks and Tamper Detection

77

Episode 7 — Explain Digital Signatures for Integrity, Nonrepudiation, and Trust Decisions

78

Episode 6 — Apply Public Key Cryptography for Identity, Exchange, and Secure Workflows

79

Episode 5 — Manage Keys Safely: Generation, Storage, Rotation, and Access Controls

80

Episode 4 — Select Symmetric Encryption Algorithms Based on Speed, Use Case, and Risk

81

Episode 3 — Command Core Cryptography Vocabulary Leaders Must Use With Precision

82

Episode 2 — Build a Spoken Study Plan: Indexing, Pacing, and Retake-Ready Habits

83

Episode 1 — Decode the GSLC Exam Structure, Question Style, Scoring, and Timing Strategy