All Episodes

Displaying 281 - 300 of 340 in total

Data Types and States: Structured, Unstructured, At Rest, In Use, and In Transit (3.3)

This episode explains data types and data states, which are central to choosing the correct protection method. Structured data is organized in predictable formats such...

Data Classification: Public to Top Secret, Sensitive to Restricted (3.3)

This episode covers data classification labels and how they guide security decisions. Students should recognize common labels such as public, sensitive, confidential, ...

Securing Data: Masking, Hashing, Filtering, Tokenization, Encryption, and Obfuscation (3.3)

This episode explains common methods used to protect data and how each method serves a different security purpose. Masking hides part of a value, such as showing only ...

Data Protection Roles: Owner, Custodian, Steward, Operator, Controller, and Subprocessor (3.3)

This episode covers data protection roles and explains how responsibility is divided across people and organizations. A data owner is accountable for decisions about d...

Data Handling, Geofencing, Lifecycle, Retention, Disposal, and Compliance (3.3)

This episode explains data handling across the full data lifecycle, from creation and collection through storage, use, sharing, retention, archival, and disposal. Stud...

Resilience Sites: Hot, Warm, Cold, and Environmental Planning (3.4)

This episode explains hot, warm, and cold recovery sites and how they support resilience and disaster recovery planning. A hot site is ready for rapid failover with sy...

Platform Diversity, Load Balancing, Clustering, Autoscaling, and High Availability (3.4)

This episode covers design methods that improve resilience and reduce single points of failure. Platform diversity can reduce the chance that one common flaw affects e...

Power, Storage, Backups, Immutability, and Restoration Testing (3.4)

This episode explains resilience controls related to power, storage, backups, immutability, and recovery validation. Uninterruptible power supplies provide short-term ...

Disaster Recovery and Business Continuity: Failover, Simulation, Parallel Processing, and Capacity Planning (3.4)

This episode explains the relationship between disaster recovery and business continuity. Disaster recovery focuses on restoring technology and data after disruption, ...

Recovery Metrics: RTO, RPO, MTTR, and MTBF (3.4)

This episode explains four recovery and reliability metrics that frequently appear in Security+ questions. Recovery time objective defines the maximum acceptable time ...

Mitigating Controls Overview: Segmentation, Access Control, Hardening, and Sandboxing (4.1)

This episode introduces mitigating controls as practical actions that reduce risk after threats, vulnerabilities, or exposures are identified. Segmentation limits move...

Deception and Disruption: Honeypots, Honeynets, Honeyfiles, Honeytokens, and Canary Accounts (4.1)

This episode explains deception technologies that help detect, study, or slow attackers by presenting attractive fake targets or monitored artifacts. A honeypot is a d...

Monitoring, MDM, Allow Lists, Block Lists, IDS, IPS, and WIPS (4.1)

This episode covers monitoring and access control technologies that help organizations identify suspicious behavior and reduce exposure. Monitoring provides visibility...

Firewalls and Filtering: WAF, UTM, Layer 4/Layer 7, Rate Limiting, and DLP (4.1)

This episode compares firewall and filtering technologies by focusing on what each control is designed to inspect, block, or allow. Traditional firewalls often filter ...

Endpoint and Network Access Control: EDR, XDR, Antivirus, Captive Portals, 802.1X, and Posture (4.1)

This episode explains how endpoint protection and network access control help determine whether a device should be trusted, monitored, restricted, or blocked. Antiviru...

Repository, Application, and Code Security: Secrets Scanning, Input Validation, Secure Cookies, Static Analysis, and Code Signing (4.1)

This episode covers security controls that protect code, applications, and software repositories from preventable weaknesses. Secrets scanning detects exposed API keys...

Email and OS Security: DMARC, SPF, DKIM, BIMI, Group Policy, and SELinux (4.1)

This episode explains email authentication and operating system security controls that help enforce trust and configuration standards. Sender Policy Framework helps id...

Asset Management: Hardware, Software, and Data Life Cycle (4.2)

This episode introduces asset management as a security foundation for hardware, software, and data throughout their life cycles. Students should understand that organi...

Planning, Procurement, Assignment, Tracking, Disposal, and Decommissioning (4.2)

This episode covers the asset lifecycle from planning and procurement through assignment, accounting, tracking, disposal, and decommissioning. Planning defines what th...

Vulnerability Management Overview: Scanning, IPAM, CSPM, and Source Code Review (4.3)

This episode explains vulnerability management as a recurring operational process rather than a one-time scan. Vulnerability scanning identifies known weaknesses in sy...

Broadcast by