PODCAST · technology
English Cybersecurity - Cybersecurity in Plain English
by Eric English
This show is all about cybersecurity and helping everyone understand the “why” when it comes to cybersecurity controls. We will break down cybersecurity 101 and slowly advance to more difficult and technical topics as the show progresses.
-
10
English Cybersecurity – Episode 10
Identity, Access & Authentication Authentication protocols (LDAP, Kerberos, SAML, OAuth2) Identity and Access Management (IAM) Least privilege, role-based access control (RBAC) Federation and Single Sign-On (SSO)
-
9
English Cybersecurity – Episode 9
Network Security – Deeper Dive Deeper look at ports, protocols, and services Intro to Wireshark for packet analysis Firewalls: rule sets, NAT, and deep packet inspection IDS/IPS vs. SIEM tools – what they do and how they differ
-
8
English Cybersecurity – Episode 8
Vulnerabilities, Exploits & Patch Management CVE, CVSS, and vulnerability scoring Exploit techniques (buffer overflows, privilege escalation) Patch management process in enterprise environments Virtual patching & compensating controls
-
7
English Cybersecurity – Episode 7
Threat Actor Evolution Threat Actor Types: Script kiddies, criminal organizations, hacktivists, insiders Nation-state actors (APT groups) – motivations and tactics Case studies of evolving threats: From basic phishing → sophisticated spear phishing From simple ransomware → double extortion models Emerging threat vectors: Deepfakes for social engineering Supply chain attacks (e.g., SolarWinds) AI-powered malware and automation Cyber Kill Chain Framework (Lockheed Martin model) 7 stages of an attack: Reconnaissance Weaponization Delivery Exploitation Installation Command & Control (C2) Actions on Objectives How defenders can “break the chain” at each stage MITRE ATT&CK Overview What is ATT&CK and why it’s useful Tactics vs. Techniques vs. Procedures (TTPs) Brief demo (or screenshots) of MITRE ATT&CK Navigator How blue teams use it for threat detection Mapping common attacks to ATT&CK
-
6
English Cybersecurity – Episode 6
Incident Response and Reporting Recognizing signs of compromise Steps in incident response (identify, contain, eradicate, recover) Role of users in reporting Legal and compliance considerations
-
5
English Cybersecurity – Episode 5
Security in the Workplace Acceptable Use Policies (AUP), InfoSec Program and sub policies Device management (BYOD vs. corporate devices) Physical security (access control, secure areas) Security awareness culture
-
4
English Cybersecurity – Episode 4
Data Protection and Privacy Encryption (at rest/in transit) Backups and data recovery Secure file sharing and disposal Privacy regulations (GDPR, HIPAA, etc.)
-
3
English Cybersecurity – Episode 3
Basic networking: IP, DNS, ports, protocols Firewalls and intrusion detection/prevention (IDS/IPS) Network segmentation and zero trust principles VPNs and secure remote access
-
2
English Cybersecurity – Episode 2 – updated
In this week’s episode, we discuss: Strong passwords and multi-factor authentication (MFA) Safe browsing and email hygiene Software updates and patch management Endpoint protection (AV/EDR)
-
1
English Cybersecurity – Episode 1
In this episode we kick things off with some Cybersecurity 101 topics like the CIA triad, threats, malware types, and social engineering.
We're indexing this podcast's transcripts for the first time — this can take a minute or two. We'll show results as soon as they're ready.
No matches for "" in this podcast's transcripts.
No topics indexed yet for this podcast.
Loading reviews...
ABOUT THIS SHOW
This show is all about cybersecurity and helping everyone understand the “why” when it comes to cybersecurity controls. We will break down cybersecurity 101 and slowly advance to more difficult and technical topics as the show progresses.
HOSTED BY
Eric English
CATEGORIES
Loading similar podcasts...