Certified: The GIAC GCCC Audio Course

Certified: The GIAC GCCC Audio Course

Jason Edwards

Episodes 60
Avg. Duration 10m
Activity Dormant
Since Feb 2026
Latest Episode Feb 2026

Publishing Details

Schedule
Hourly
Format
Serial
Hosting
feeds.transistor.fm

Contact & Outreach

About This Podcast

GCCC is a control-first security course built for busy professionals who want practical mastery of the CIS Controls v8 and the real-world workflows that make them stick. You’ll learn how to inventory assets and software with confidence, harden configurations without breaking operations, manage vulnerabilities with proof-based closure, and turn logging into outcomes through centralized collection, correlation, and sustainable alerting. The course also covers malware defense as layered prevention plus rapid containment, data protection through classification, access boundaries, and safe retention, and recovery readiness with RPO/RTO planning, backup isolation, and restore testing. You’ll strengthen governance across identity and access management, change control, third-party risk, awareness programs that drive behavior change, incident response readiness and execution, and how to use testing results to improve controls over time. Every lesson stays exam-focused while keeping the emphasis on operational evidence, measurable effectiveness, and decision-making under pressure—so you’re not just memorizing terms, you’re learning how to run the controls in production with confidence.

Podcasting 2.0 Features

episode podping podroll remoteItem trailer transcript

Explore Statistics

Recent Episodes

Welcome to the GIAC GCCC Audio Course

Feb 09, 2026 1m Trailer Transcript

If you build, run, or defend systems for a living, you already know the truth: security isn’t one thing you do. It’s a chain of decisions—design, build, deploy, operate, recover—under real…

Episode 59 — Validate resilience after fixes with retesting and durable closure evidence

Feb 09, 2026 9m Transcript

This final episode focuses on validating resilience after fixes, emphasizing retesting and durable closure evidence so improvements persist beyond a single remediation sprint. You’ll define retesting…

Episode 58 — Translate pen test findings into remediation priorities and measurable control improvements

Feb 09, 2026 8m Transcript

This episode focuses on turning penetration test findings into remediation priorities and measurable improvements, because the real value of testing is how it strengthens controls and reduces future…

Episode 57 — Plan penetration tests safely: scope control, rules of engagement, and reporting clarity

Feb 09, 2026 10m Transcript

This episode teaches how to plan penetration tests safely and effectively, focusing on scope control, rules of engagement, and reporting clarity that protect operations while producing useful…

Episode 56 — Improve response capability with lessons learned and continuous program refinement

Feb 09, 2026 12m Transcript

This episode explains how to improve incident response capability using lessons learned, because the exam often expects you to treat response as a program that matures through evidence-based…

Episode 55 — Execute incident response under pressure: detection, containment, and evidence handling

Feb 09, 2026 11m Transcript

This episode focuses on executing incident response under pressure, emphasizing detection confirmation, rapid containment, and careful evidence handling so actions are defensible and effective.…

Episode 54 — Build incident response readiness with roles, playbooks, and communications discipline

Feb 09, 2026 9m Transcript

This episode builds incident response readiness as a structured capability that can be executed under stress, which aligns with exam questions that test process clarity and role accountability.…

Episode 53 — Reinforce skills over time with role-based focus, coaching, and timely feedback

Feb 09, 2026 10m Transcript

This episode focuses on reinforcement, because durable security improvement requires repeated practice, coaching, and timely feedback rather than one-time annual training. You’ll define reinforcement…

Episode 52 — Measure training effectiveness with metrics tied to real risk reduction outcomes

Feb 09, 2026 11m Transcript

This episode teaches how to measure security training effectiveness in ways that connect to real risk reduction, which is what exam scenarios often want when they ask how to prove a control is…

Episode 51 — Build awareness programs that change behavior, not just complete training requirements

Feb 09, 2026 11m Transcript

This episode focuses on designing security awareness programs that produce measurable behavior change, which is often the underlying goal behind exam questions that reference “training” as a control.…

Episode 50 — Monitor third-party risk continuously with signals, assessments, and escalation triggers

Feb 09, 2026 15m Transcript

This episode focuses on continuous third-party risk monitoring, because provider posture can change quickly due to acquisitions, new products, outages, or security incidents. You’ll define continuous…

Episode 49 — Enforce provider accountability through contracts, controls, and ongoing assurance reviews

Feb 09, 2026 10m Transcript

This episode explains how to enforce service provider accountability after selection, because third-party risk management fails when controls exist only during onboarding. You’ll define…

Episode 48 — Evaluate service providers with due diligence that matches risk and criticality

Feb 09, 2026 8m Transcript

This episode teaches third-party due diligence as a risk-matching exercise, because the exam often tests whether you can scale scrutiny based on the provider’s access, data sensitivity, and…

Episode 47 — Detect and remediate weaknesses with testing evidence, prioritization, and closure proof

Feb 09, 2026 9m Transcript

This episode explains application and system weakness management as a lifecycle that depends on testing evidence, risk-based prioritization, and verified closure rather than optimistic ticket…

Episode 46 — Reduce application risk by managing dependencies and patching weak components quickly

Feb 09, 2026 9m Transcript

This episode focuses on dependency risk because modern applications rely on third-party libraries, frameworks, containers, and services that can introduce critical vulnerabilities outside your own…

Episode 45 — Secure the software lifecycle end-to-end: design, build, deploy, and operate safely

Feb 09, 2026 11m Transcript

This episode explains securing the software lifecycle as a continuous set of controls that start at design and extend through build, deployment, and ongoing operation, which aligns closely with…

Episode 44 — Prove recoverability with restore tests, integrity checks, and documented results

Feb 09, 2026 9m Transcript

This episode focuses on proving recoverability, because the exam frequently distinguishes “we have backups” from “we can restore correctly under pressure.” You’ll define recoverability as the ability…

Episode 43 — Protect backups as high-value targets: access controls, encryption, and isolation strategy

Feb 09, 2026 15m Transcript

This episode explains why backups are prime targets for attackers and how protecting them requires stronger controls than ordinary storage because backups can recreate the entire environment. You’ll…

Episode 42 — Define recovery objectives that fit business reality: RPO, RTO, and scope decisions

Feb 09, 2026 9m Transcript

This episode teaches recovery objectives as decision tools that shape how resilient your environment truly is, and how exam questions often test whether you can match objectives to business needs…

Episode 41 — Retain and dispose of data safely with automation, approvals, and audit evidence

Feb 09, 2026 12m Transcript

This episode explains data retention and disposal as lifecycle controls that reduce legal exposure, breach impact, and storage sprawl while preserving what the business truly needs. You’ll define…

Frequently Asked Questions

How many episodes does Certified: The GIAC GCCC Audio Course have?

Certified: The GIAC GCCC Audio Course has published 60 episodes since February 2026, covering topics in Courses, Education.

Is Certified: The GIAC GCCC Audio Course still active?

Certified: The GIAC GCCC Audio Course is currently dormant with new episodes hourly. Average episode length is 10m.

How do I contact Certified: The GIAC GCCC Audio Course for sponsorship or guest appearances?

Sign up on Grep.FM to access contact details for Certified: The GIAC GCCC Audio Course, including email and social media links.

Similar Podcasts