CISSP Cyber Training Podcast - CISSP Training Program - podcast cover

CISSP Cyber Training Podcast - CISSP Training Program

Shon Gerber, vCISO, CISSP, Cybersecurity Consultant and Entrepreneurwww.cisspcybertraining.com

Join Shon Gerber on his weekly CISSP Cyber Training podcast, where his extensive 23-year background in cybersecurity shines through. With a rich history spanning corporate sectors, government roles, and academic positions, Shon imparts the essential insights and advice necessary to conquer the CISSP exam. His expertise is not just theoretical; as a CISSP credential holder since 2009, Shon translates his deep understanding into actionable training. Each episode is packed with invaluable security strategies and tips that you can implement right away, giving you an edge in the cybersecurity realm. Tune in and take the reins of your cybersecurity journey—let’s ride into excellence together! 🚀

Episodes

CCT 107: Practice CISSP Questions - EOL/EOS Maze and the CISSP Exam (Domain 2.5)

Send us a text Is your organization's cybersecurity teetering on the edge with outdated technology? Find out how to fortify your defenses as I, Sean Gerber, navigate the treacherous landscape of end-of-life (EOL) and end-of-service (EOS) assets in the latest CISSP Cyber Training Podcast episode. We explore the harsh realities of increased vulnerabilities and compliance challenges that come with clinging to aging systems. Say goodbye to the misplaced hope of squeezing performance from obsole...

Jan 18, 202415 min

CCT 106: Sunset for Your Systems - Navigating the EOL/EOS Maze and the CISSP Exam (Domain 2.5)

Send us a text Ready to bulletproof your business against cyber threats that never take a day off? This week, Sean Gerber steers you through the murky waters of cybersecurity for small and medium-sized businesses, with a treasure trove of wisdom on asset management and the art of gracefully retiring your tech relics. We're not just talking about keeping the digital lights on—we're talking full-fledged, fail-proof fortresses. Ever wondered what happens when the 'Billy Bobs' ma...

Jan 15, 202429 min

CCT 105: Practice CISSP Questions - Transborder Data Flows in Cybersecurity and the CISSP (Domain 1.5)

Send us a text Are cyber attacks and data breaches keeping you up at night? You're not alone, and today's episode is your ally in conquering the CISSP exam and upping your cybersecurity game. Sean Gerber is here to dissect the looming shortage of cybersecurity professionals and the power of soft skills that go beyond the technical expertise. With an anticipated gap of 5.5 million roles by 2024, Sean discusses the necessity of growing our cybersecurity workforce and the critical role ce...

Jan 11, 202425 minSeason 2Ep. 105

CCT 104: Navigating Transborder Data Flows in Cybersecurity and the CISSP (Domain 1.5)

Send us a text Cybersecurity isn't just about technology; it's a battleground where legal expertise and international laws become as crucial as firewalls and encryption. Brace yourself as we navigate the tumultuous waters of cyber attacks, from the shocking breaches in Kansas and Australia to the alarming targeting of US infrastructure by Iranian hackers. Our conversation isn't just a rundown of threats; it's an essential guide through the labyrinth of legal consequences for ...

Jan 08, 202442 minSeason 2Ep. 105

CCT 103: CISSP Practice Questions - Domain 1-8

Send us a text Unlock the secrets to conquering the CISSP exam as I, Sean Gerber, take you by the hand in our powerhouse 102nd episode, guiding you through the labyrinth of cybersecurity knowledge. Imagine stepping into the exam room equipped with the ultimate blueprint, the same one that has become the hallmark of success for our students. It’s holiday season and we’re serving up a festive feast of CISSP insights, sprinkled with a preview of the upcoming changes to the CISSP exam slated for Apr...

Jan 04, 202417 min

CCT 102: CISSP Salary to Testing Setting Expectations

Send us a text Ever wondered if those hefty CISSP certification costs could actually catapult your cybersecurity career to new financial heights? We crack the code on how balancing certification with real-world experience and the right job role can significantly impact your earning potential. Our latest conversation takes a deep dive into the geographical salary differences for security professionals, shedding light on the variance between regions like the Asia Pacific and North America. But don...

Jan 01, 202426 min

CCT 101: CISSP Practice Questions - Domain 1-8

Send us a text Are you prepared to level up your cybersecurity expertise and ace the CISSP exam? That's exactly what we're here for! I'm Sean Gerber, and this episode of the CISSP Cyber Training Podcast is a treasure trove of knowledge, from unraveling the intricacies of the STRIDE methodology to understanding the subtleties of 'repudiation' versus 'replication'. Get ready to delve into the depths of the Mandatory Access Control model and discover why 'Top...

Dec 28, 202316 min

CCT 100: CISSP Certification's Impact on Cybersecurity Salaries and Career Advancement

Send us a text Unlock the true potential of your cybersecurity career with insights on how CISSP certification can amplify your earning power—beyond just a fancy title. As your guide, Sean Gerber, I'm taking you through a deep dive into the world of cybersecurity salaries, where your locale plays as big a role as your skills. From the bustling markets of Asia Pacific to the economic hubs in North America, we're mapping out the financial landscape and the real impact of cost of living o...

Dec 25, 202326 min

CCT 099: CISSP Practice Questions - Understanding APIs and the Security Principles (CISSP Domain 8.5)

Send us a text Are you prepared to crack the code on API security and sail through your CISSP exam? If yes, then embark on this enlightening journey with me, Sean Gerber, as we decipher the intricacies of API and REST API security. We’ll tackle questions about securing API keys, delve into the pivotal function of an API gateway, and demystify common API security threats. You’ll also get a grip on the role of OAuth 2.0 and input validation in protecting APIs. Hold on to your seats as we traverse ...

Dec 21, 202318 minSeason 1Ep. 99

CCT 098: Understanding APIs and the Security Principles Associated for the CISSP Exam (CISSP Domain 8.5)

Send us a text Are you ready to unlock the secrets of API security? Prepare to be enlightened, as we tackle the burning issue of cybersecurity, with a special focus on recent hacker attacks targeting US water treatment facilities. Join us in a critical dialogue on fortifying our defenses and the role of cybersecurity education in our communities. Learn how to navigate the complexities of API security, from managing authentication to role-based access and the handling of tokens and API keys. Brac...

Dec 18, 202341 minSeason 1Ep. 98

CCT 097: CISSP Practice Questions - Applying Resource Protections for the CISSP Exam (CISSP Domain 7.5)

Send us a text Ready to become a CISSP expert? With this episode, we're going to decode the complex subject of CISSP domain 7.5 - protection of media types, as we sail through its tricky waters. A special highlight of this week's episode is the CISSP Question Thursday segment, featuring targeted questions designed to sharpen your skills and make your CISSP exam prep a walk in the park. You'll also get an insider's view of how a study blueprint can be your compass, guiding you...

Dec 14, 202316 minSeason 1Ep. 97

CCT 096: Applying Resource Protections for the CISSP Exam (CISSP Domain 7.5)

Send us a text You know how critical resource management is to protect your organization's media, but do you fully understand how to implement it effectively? We're here to ensure you do. In our latest CISSP Cyber Training Podcast episode, we shine a light on the recent ransomware attack that hit 60 US credit unions, exposing severe vulnerabilities in the supply chain. We discuss the significance of physical security measures, especially during investigations, and various forms of phys...

Dec 11, 202328 minSeason 1Ep. 96

CCT 095: CISSP Practice Questions - Assessment, Compliance, and Improvement Strategies (Domain 6)

Send us a text Ready to unlock the secrets of cybersecurity and ace that CISSP exam? Strap in as we delve into the intriguing realm of ISO 27001 standards, exploring their critical role in safeguarding key infrastructure such as our municipal water facilities. Learn how to assess, comply with, and improve upon these standards, and get a sneak peak at potential exam questions you'll find on our website. But it doesn't stop there. We're pushing the envelope further by integrating cl...

Dec 07, 202321 minSeason 1Ep. 95

CCT 094: Assessment, Compliance, and Improvement Strategies (CISSP Domain 6.5)

Send us a text Ever wonder how safe your data really is in the cloud? Or what steps are necessary to ensure your organization's compliance with critical cybersecurity standards? You won't want to miss our latest episode where we tackle these tough questions head-on, promising to leave you more informed and prepared to safeguard your organization's valuable digital assets. We dive into the complexities of compliance assessments and audit strategies, exemplified by Japan's Spac...

Dec 04, 202344 minSeason 3Ep. 94

CCT 093: Practice CISSP Questions - Authorization Mechanisms and Access Control Models (Domain 5)

Send us a text Ever wondered how to build a fortress around your digital estate? Well, you're about to add a host of techniques to your arsenal. I, Sean Gerber, will take you through an enlightening exploration of access control models, examining prominent types including discretionary, mandatory, role-based, and risk-based models. We'll unlock the secret behind hybrid access controls and their role in reinforcing security layers. Plus, we won't skip the practical side of things, ...

Nov 30, 202311 min

CCT 092: A Deep Dive into Authorization Mechanisms and Access Control Models for the CISSP Exam (CISSP Domain 5.4)

Send us a text What happens when ransomware strikes a big corporation like Clorox? Imagine the chaos and the panic that ensues - not to mention, the significant impact on revenue and leadership. That’s where we kick off our conversation with Sean Gerber, who delves deep into the Clorox ransomware attack and why having a strong resiliency plan is imperative. We also shed light on the importance of authorization and discretionary access controls in maintaining organizational security. We navigate ...

Nov 27, 202340 min

CCT 091: Practice CISSP Questions for Compliance and Vulnerability Management (Domain 4)

Send us a text Are you armed with the right strategies to handle a business-altering ransomware attack? How would you navigate the evolving landscape of cyber threats like the recent Boeing lock bit ransomware incident or the Maine move it debacle? Prepare to sink your teeth into these juicy cybersecurity happenings while also getting a breakdown of Google's new strategy on deleting files from inactive accounts. Join us as we shift gears, focusing on CISSP exam questions, particularly the a...

Nov 23, 202324 min

CCT 090: Navigating Security Compliance and Vulnerability Management (CISSP Domain 4.5)

Send us a text Ready to elevate your cybersecurity knowledge? Buckle up as we, your hosts, dig deep into the realm of security operations, focusing on the time-saving 80-20 rule. We're discussing how automation can handle 80% of benign events, leaving your SOC teams to tackle the crucial 20%. We also delve into the intriguing concept of detection as a code and the role of scalable business context in data ingestion. How about understanding the essence of penetration testing and vulnerabilit...

Nov 20, 202343 min

CCT 089: Practice CISSP Questions - Mastering Process States, Execution Types, and System Architectures (Domain 3)

Send us a text Ready to crack the code on runtimes and CPUs? Grab your gear and join our host, Sean Gerber, on this thrilling expedition of knowledge. We've got a jam-packed session lined up for you as we navigate through a series of 15 thought-provoking CISSP questions that will equip you with the insights needed to ace your CISSP exam. From dissecting the role of a process in a CPU, to shedding light on the intricacies of multi-threaded environments, we're turning every stone to ensu...

Nov 17, 202312 minSeason 1Ep. 89

CCT 088: Mastering Process States, Execution Types, and System Architectures for the CISSP (D3.5)

Send us a text Ready to decode the enigma of process states, execution types, and system architecture? We promise you'll walk away with a newfound understanding of how processes are initiated in a computer system in our latest episode. Discover the efficiency of modular application development and unravel how this foundational knowledge can fast-track your success in the CISSP exam and deepen your cybersecurity proficiency. Moving on, we unpack the intricacies of process scheduling and the ...

Nov 13, 202339 minSeason 1Ep. 88

CCT 087: Practice CISSP Questions - Decoding Data Roles and Navigating NIST Guidelines for Cybersecurity Governance (Domain 2)

Send us a text Brace yourselves for an insightful journey into the omnipresent world of cybersecurity. We're cracking open the complexities of data classification, HIPAA, and child data protection. We'll also be taking a hard look at international regulations from the lens of Singapore, China, and the US healthcare sector. But who's really responsible for your data? And what happens if they fail to protect it? As the gavel drops on Solar Winds in the wake of the SEC action, we dis...

Nov 09, 202321 minSeason 1Ep. 87

CCT 086: Decoding Data Roles in CISSP and Navigating NIST Guidelines for Cybersecurity Governance (D2.4)

Send us a text Ever wondered why there's such a massive gap in cyber skills, particularly in this era of economic slowdowns? As we juggle an increasing number of job roles, budget cuts, and layoffs, now is the time to polish off your cybersecurity skills. We tackle the Biden administration's latest push for knowledge on security gaps, the increasing insider threats, and the surprising dearth of AI skills in the industry. Navigating the cybersecurity landscape has never been more crucia...

Nov 06, 202335 min

CCT 085: Practice CISSP Questions - Navigating Contractual Law, Cybersecurity Legislation, and Computer Crime Acts (Domain 1)

Send us a text Imagine a world where your private medical records are no longer private, where unscrupulous cybercriminals are ready to exploit your personal data for blackmail. That's the chilling reality we explore as we uncover an alarming trend of cybercriminals targeting plastic surgeons, highlighting the increasing importance of cybersecurity across diverse industries. This episode also serves as a treasure chest of insights for those pursuing a CISSP certification. Grappling with com...

Nov 02, 202314 minSeason 1Ep. 85

CCT 084: Navigating Contractual Law, Cybersecurity Legislation, and Computer Crime Acts (CISSP Domain 1.4)

Send us a text Discover the world of CISSP Cyber Training in a thrilling exploration that unravels the complex web of cybersecurity legislation, contractual law, and computer crimes acts. We'll begin our journey by studying recent cybercrimes, with a focus on the Singapore government and the US pledge to fight scams through cross-border cooperation. With the alarming statistic of scam losses in the US reaching around $10.3 billion last year, we aim to illuminate the critical importance of u...

Oct 30, 202340 minSeason 1Ep. 84

CCT 083: CISSP Practice Questions - All Eight Domains for Cybersecurity Excellence (Supplement)

Send us a text Do you consider change management as a lifeline for your organization? Or are you aware of the magic a 'get out of jail free card’ can cast in legal situations? Buckle up, because this episode of CISSP Cyber Training Podcast is going to take you on a journey where you'll learn to balance these and more. We kick off with an analysis of the latest Patch Tuesday updates, and discuss how you can streamline risk valuation and change management processes to shield your organiz...

Oct 26, 202317 min

CCT 082: CISSP Supplemental - Job Roles That Often Require a CISSP Certification

Send us a text Promise to learn and a personal story: "You're about to unlock the complexities of cybersecurity and the CISSP certification, a sought-after credential in our industry. Walking you through this journey is me, your host Sean Gerber, sharing my two-decade-long adventure navigating the ever-evolving landscape of cyber warfare." Painting a vivid picture of the cybersecurity landscape, we delve into the increasing involvement of hacktivists in geopolitical conflicts. We ...

Oct 23, 202323 min

CCT 081: Practice CISSP Questions - Security Operations and Intersection of Libraries, IDE, Compilers and Object-Oriented Programming (Domain 8)

Send us a text Can you decipher the jargon of cybersecurity and ace the CISSP exam? Get ready to take notes as host Sean Gerber, a maestro of cybersecurity, breaks down the baffling world of libraries, ides, compilers, and object-oriented programming. With an emphasis on mastering the CISSP exam, Sean meticulously dissects complex concepts and questions, focusing on domain 8.1, and delivers a comprehensive understanding of the management thought process behind it. This week, we're peeling b...

Oct 19, 202315 minSeason 1Ep. 81

CCT 080: Understanding the Intersection of Libraries, IDE, Compilers and Object-Oriented Programming (CISSP Training D8.1)

Send us a text Ready to level up your cybersecurity knowledge and coding prowess? We promise to elevate your understanding of CISSP development and libraries, as we venture into the world of code collections. Get a firm grip on the different types of libraries, from standard to custom, and learn about the potential dangers associated with cryptographic libraries. We also delve into the intriguing world of language-specific libraries and the pivotal role of packaging in the development realm. We ...

Oct 16, 202325 minSeason 1Ep. 80

CCT 079: CISSP Practice Test Questions - Security Operations Concepts of Need to Know, Least Privilege, SoD (Domain 7)

Send us a text Ready to conquer the CISSP exam? Let's take a deep dive into the world of cybersecurity operations, breaking down complex concepts into easy-to-understand explanations. We'll explore how 'need to know access,' 'least privilege,' 'separation of duties' are vital defenses in the cybersecurity landscape, offering insights from real-life scenarios like the pricey MGM hack and a critical flaw in Cisco routers. Get ready to challenge yourself with...

Oct 12, 202315 minSeason 1Ep. 79

CCT 078: Security Operations Concepts of Need to Know, Least Privilege, Separation of Duties and More! (CISSP Training D7.4)

Send us a text Do you really know who has access to your sensitive data? Let's unravel the veil of cybersecurity, highlighting a ransomware incident that cost Caesar's and MGM a staggering $15 million. Tune in as we explore CISSP domain 7.4 and the critical need-to-know principle that insists on access to sensitive data only for those who genuinely need it. We'll also touch on the invaluable resources available on CISSP Cyber Training that can aid in your exam preparation. In this...

Oct 09, 202339 minSeason 1Ep. 78