Episode 49 — Secure containers and serverless production workloads effectively

Episode 49 — Secure containers and serverless production workloads effectively

This episode focuses on containers and serverless workloads because modern payment environments often run on ephemeral infrastructure, and the ISA exam expects you to reason about control effectiveness even when there is no traditional server to “log into and check.” You’ll define containers and serverless in operational terms, then connect them to security responsibilities such as image hardening, dependency control, secrets management, runtime permissions, and logging visibility. We’ll cover common control points including container registries, image scanning, signed images, least-privilege execution, network policies, and identity-based access for serverless functions, with an emphasis on how these controls are proven through evidence. You’ll learn how failures occur, such as unscanned images pushed during emergencies, secrets embedded in environment variables, overly broad runtime roles, and missing audit logs for function invocations, then practice troubleshooting paths that restore control without blocking delivery. The goal is to make container and serverless security assessable, measurable, and aligned to PCI intent even in fast-moving production pipelines. Produced by BareMetalCyber.com, where you’ll find more cyber audio courses, books, and information to strengthen your educational path. Also, if you want to stay up to date with the latest news, visit DailyCyber.News for a newsletter you can use, and a daily podcast you can commute with.

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(59)

Episode 58 — Triage noisy alerts and prioritize rapid response

Episode 58 — Triage noisy alerts and prioritize rapid response

This episode closes the series by focusing on alert triage and prioritization, because the ISA exam expects you to understand that monitoring is only effective when alerts lead to timely, consistent a...

22 Helmi 20min

Episode 57 — Correlate logs and proactively hunt emerging threats

Episode 57 — Correlate logs and proactively hunt emerging threats

This episode teaches log correlation and threat hunting as practical skills that strengthen monitoring controls and show up in ISA exam scenarios where a single alert is not enough to understand what ...

22 Helmi 19min

Episode 56 — Plan evidence collection and credible sampling approaches

Episode 56 — Plan evidence collection and credible sampling approaches

This episode focuses on evidence planning and sampling because the ISA exam often tests whether you can collect proof that controls operate consistently, not just find a single screenshot that looks g...

22 Helmi 15min

Episode 55 — Verify AOCs and contractual requirements with rigor

Episode 55 — Verify AOCs and contractual requirements with rigor

This episode teaches you how to evaluate Attestations of Compliance and contractual requirements in a way that supports the ISA exam and prevents the real-world mistake of treating paperwork as proof ...

22 Helmi 17min

Episode 54 — Control third-party access and high-risk integrations

Episode 54 — Control third-party access and high-risk integrations

This episode covers third-party access and integrations as a high-risk area because the ISA exam often tests whether you can spot hidden access paths and unclear responsibility boundaries that undermi...

22 Helmi 19min

Episode 53 — Protect supporting services like DNS and NTP

Episode 53 — Protect supporting services like DNS and NTP

This episode focuses on supporting services that rarely get attention until they fail, because the ISA exam expects you to recognize that services like DNS and NTP can directly impact security control...

22 Helmi 16min

Episode 52 — Secure network infrastructure, routers, and firewalls comprehensively

Episode 52 — Secure network infrastructure, routers, and firewalls comprehensively

This episode teaches network infrastructure security as a control set you must validate end to end, because ISA exam scenarios often reveal that the environment “looks segmented” while the underlying ...

22 Helmi 19min

Episode 51 — Harden endpoints, laptops, and high-risk workstations

Episode 51 — Harden endpoints, laptops, and high-risk workstations

This episode focuses on endpoint hardening because the PCI ISA exam often treats user workstations and admin endpoints as the easiest place for attackers to gain credentials, bypass controls, and move...

22 Helmi 19min

Suosittua kategoriassa Koulutus

rss-murhan-anatomia
psykopodiaa-podcast
adhd-podi
voi-hyvin-meditaatiot-2
kesken
rss-liian-kuuma-peruna
puhutaan-koiraa
aamukahvilla
rss-narsisti
rss-hereilla
aamupore
rss-rahamania
filocast-filosofian-perusteet
rss-uskonto-on-tylsaa
rss-laadukasta-ensihoitoa
rss-arkea-ja-aurinkoa-podcast-espanjasta
dear-ladies
rss-psykalab
rss-taloyhtiokupla
rss-koira-haudattuna