PLAY PODCASTS
Simply Defensive

Simply Defensive

42 episodes

S6:E3 - Tom Dejong - Inside the BHIS SOC: Triage, Curiosity, and Career Growth

May 4, 202630 min

S6E2: John Hammond on Security Research, Storytelling, Deception, and Getting Hired in Cybersecurity

John Hammond on Security Research, Storytelling, and Deception for DefendersIn this Simply Defensive episode, hosts Josh Mason and Wade Wells interview John Hammond, a Huntress security researcher, YouTuber, and educator, about his career path and defensive research. Hammond explains he has never worked as a penetration tester, SOC analyst, or detection engineer, instead “falling into” security research through hands-on Capture the Flag work and building cyber threat emulation course content, earning Offensive Security’s OSCE3 bundle recognition. He discusses why storytelling and communication are critical for translating attacker tradecraft into actionable defenses, emphasizing understanding the attack chain to identify places to break it. He recommends building a public portfolio of write-ups and notes, and says multiple creators covering the same topic can still provide value through different explanations. The conversation also highlights endpoint deception and honeypots, challenges of reversing compiled binaries versus script-based malware, and his advice to document thoroughly in shared organizational knowledge bases.00:00 S6E2: John Hammond on Security Research, Storytelling, Deception, and Getting Hired in Cybersecurity01:27 Meet John Hammond01:57 Security Researcher Life04:43 OffSec Certs Explained06:55 From CTF to Research08:47 Storytelling in Cyber12:10 Turning Attacks to Defense15:19 Getting Hired as Researcher16:48 Portfolio and Honeypots19:05 Make the Video Anyway21:40 Alternate Data Streams Nerdout23:36 CTFs Then and Now24:28 Life Shifts Priorities25:44 Beyond CTFs Next Trend26:52 Deception Meets Detection28:48 Honeypots and Program Maturity31:13 Malware Reversing Boss Fights35:09 Blue Team Advice Document Everything37:51 Where to Find John and Training38:49 Wrap Up and Farewell

Mar 17, 202639 min

From Blue Team Challenges to AI Innovations: A Conversation with Jason Haddix

E

In this episode of Simply Defensive, Josh Mason and Wade Wells sit down with Jason Haddix — CISO veteran, AI security thought leader, and founder of Arcanum Information Security — for a wide-ranging conversation on where AI is actually headed in cybersecurity, and what blue teamers need to know right now.Jason shares what he's learned from running AI scaling assessments inside major enterprises, why most organizations are still in the early stages of AI adoption, and how the industry needs to stop thinking about AI security like traditional web app security. He breaks down the stages of AI adoption (from custom bots to agents), explains why input validation is a losing game for LLM security, and makes the case for classifiers, guardrails, and LLM-based routing as the real defense-in-depth play for AI systems.Wade and Jason also revisit the Red Blue Purple AI course, talk through how RAG and context engineering are transforming what's possible for blue teamers, and discuss why the credential leakage problem is still one of the biggest vectors defenders aren't taking seriously enough.Topics covered:Why CTI struggles to prove value — and where it actually matters mostStealer logs, credential leakage, and when rolling an account isn't enoughAI adoption stages: custom bots → RAG → agentsWhy SOAR skepticism is a preview of AI hesitancyContext engineering vs. prompt engineeringDefending AI systems: prompt-level protections, classifiers, guardrails, and LLM routingWhen does a prompt become IP?Jason's advice for blue teamers: embrace AI as a tool, find your annoying tasks, and start chipping awayConnect with Jason Haddix:Twitter/X: @jhaddixArcanum Information Security: arcanam-sec.comGitHub (free tools & resources): ARCanum Information Security on GitHubNewsletter: Executive Offense by Jay HaddixResources mentioned:Red Blue Purple AI Course (ARCanum)Flare (threat intelligence / credential monitoring): flare.ioDetections.aiConnect with the Hosts:Josh Mason: linkedin.com/in/joshuacmasonWade Wells: linkedin.com/in/wadingthrulogs

Feb 24, 202631 min

From Pre-Law to FLARE: How Josh Stroschein Became Google's Malware Analyst

In this episode of Simply Defensive, Josh Mason and Wade Wells sit down with Josh Stroschein — aka The Cyber Yeti — a former professor turned reverse engineer now working on one of the largest malware analysis teams in the world.Josh shares his unconventional path through .NET development, credit card processing security, and academia before landing at Google. He opens up about teaching reverse engineering while learning it himself, building educational CTFs, and the realities of making it as a full-time reverse engineer in an industry where those roles are rare.What you'll hear:🔹 From pre-law to pilot training to PhD in cybersecurity🔹 How teaching RE forced him to truly master it🔹 Life inside Google's FLARE team (via Chronicle → Mandiant)🔹 Flareon CTF — the RE challenge that's run for 12 years🔹 A wild Black Hat NOC story involving an infected Mac and Atomic Stealer🔹 Using AI to build malware samples for training labs🔹 Why going low-level is the best advice for blue teamersChapters:00:00 Introduction and Welcome00:50 Josh's Connection to Dr. Gerald Auger02:00 The Non-Traditional Path: Pre-Law, Pilot Training & .NET Dev05:00 Getting Into Security at a Credit Card Processor07:00 Teaching Reverse Engineering at Dakota State10:00 Flareon CTF and Educational CTF Design14:00 Is Reverse Engineering Offensive or Defensive?17:00 How Rare Are Full-Time RE Roles?21:00 The Path to Google: Chronicle, Mandiant & FLARE25:00 Learning Through Teaching and YouTube Content28:00 Black Hat NOC Story: Catching Atomic Stealer Live33:00 Using AI to Create Malware Training Samples37:00 Building a Defang Tool (and .NET Nightmares)40:00 Advice for Blue Teamers: Go Low-Level🎧 Find Josh Stroschein:→ Website: https://www.thecyberyeti.com→ YouTube: The Cyber Yeti→ Podcast: The Cyber Yeti Podcast👥 Connect with the Hosts:→ Josh Mason: https://www.linkedin.com/in/joshuacmason/→ Wade Wells: https://www.linkedin.com/in/wadingthrulogs/→ Swimlane: https://www.linkedin.com/company/swimlane🎙️ Listen on Your Favorite Platform:→ Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4→ Apple Podcasts: https://podcasts.apple.com/us/podcast/simply-defensive/id1773806182→ Full Playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4👍 If you enjoyed this episode, don't forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity professionals who are doing the work.=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Dec 1, 202539 min

Building Zero Trust Tools: Inside ThreatLocker with Product Manager Yuriy Tsibere

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells welcome Yuriy Tsibere, Product Manager at ThreatLocker, for a behind-the-scenes look at how security products actually get built.Yuriy's path to cybersecurity started in Ukraine, where he worked in telecom during sophisticated APT campaigns that lasted over a year. Now at ThreatLocker, he shapes the tools defenders use daily—from allow listing to compliance automation.Episode Highlights:What product managers actually do at security companiesAPT attack patterns: social engineering meets technical exploitationHow allow listing, ring fencing, and network control protect endpointsDefense Against Configuration (DAC): automating FedRAMP, HIPAA, and NIST complianceWhy misconfigurations remain one of the biggest security gapsBalancing strict security with real-world usabilityYuriy's top advice for defenders: Educate your personnelKey Takeaway: Most breaches still come from employees clicking without paying attention. Security products matter, but user education accounts for the largest share of issues. Yuriy also emphasizes that when compliance drift happens—when systems become uncompliant—it should trigger an investigation into what changed and why.Resources Mentioned:ThreatLocker Zero Trust Endpoint ProtectionDefense Against Configuration (DAC) for compliance monitoringZero Trust World ConferencePerfect for blue teamers, SOC analysts, security engineers, and anyone interested in how security products evolve from concept to deployment.Connect with Yuriy Tsibere (Guest) on LinkedIn: https://www.linkedin.com/in/yuriy-tsibere/🔗 Links & Resources: → ThreatLocker Free Trial: https://www.threatlocker.com/simplydefensive → Zero Trust World Conference: https://www.intlcybersec.org/zerotrustworldmain👥 Connect with the Hosts:→ Josh Mason: https://www.linkedin.com/in/joshuacmason/→ Wade Wells: https://www.linkedin.com/in/wadingthrulogs/→ Swimlane: https://www.linkedin.com/company/swimlane🎙️ Listen on Your Favorite Platform:→ Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4→ Apple Podcasts: https://podcasts.apple.com/us/podcast/simply-defensive/id1773806182→ Full Playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4👍 If you enjoyed this episode, don't forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity professionals who are doing the work.💡 Brought to you by ThreatLocker – Secure your business with zero trust application control. https://www.threatlocker.com/simplydefensive=========================Sponsored by @ThreatLocker - Free 30-day trial visit:https://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Nov 24, 202536 min

Cyber Insurance Explained: What Blue Teams Need to Know Before an Incident

From teaching AP art history to brokering cyber insurance deals. 🎓➡️🛡️In this episode of Simply Defensive, Josh Mason and Wade Wells sit down with Andy Runyan from Yukon to break down everything blue teamers need to know about cyber insurance — before an incident happens. Andy shares his unconventional journey from fourth-generation educator and baseball coach to becoming a cyber insurance specialist, and explains why understanding your policy is just as important as your incident response plan.What you'll hear:🔹 How cyber insurance actually works (and what it doesn't cover)🔹 Why having an incident response retainer matters — before you need it🔹 The role of cyber insurance in incident response and recovery🔹 Third-party contract requirements and state mandates on the rise🔹 Common mistakes companies make when filing claims🔹 FTC Safeguard Rules and what they mean for businesses🔹 How to prepare your organization for cyber insurance requirements🔹 What lowers premiums (and what should, but doesn't)Why This Matters for Blue Teamers:If you're in a SOC or handling incident response, you will interact with cyber insurance at some point. Understanding how policies work, what triggers coverage, and how to prepare can make the difference between a smooth recovery and a catastrophic financial loss. This episode gives you the insider knowledge to help your organization be ready.⏱️ Timestamps:00:00 Introduction and Welcome00:15 Andy's Unique Background: From Teacher to Cyber Insurance03:00 Getting Into Cyber Insurance in 201904:00 The Wild West of Cyber Insurance During COVID06:00 When Companies Actually Buy Cyber Insurance08:00 What Blue Teamers Need to Know About Insurance10:00 The Problem with Incident Response Retainers12:00 How Insurance Companies Handle IR vs. What You Need15:00 Multi-Factor Authentication and Premium Discounts18:00 Why Having an IR Plan Doesn't Lower Your Premium (But Should)21:00 Third-Party Contract Requirements on the Rise24:00 State Mandates: What's Coming Next?27:00 FTC Safeguard Rules and Compliance Reality30:00 Where to Learn More About Yukon🔗 Connect with Andy Runyan:→ Yukon Website: https://www.ukon.com→ LinkedIn: https://www.linkedin.com/in/andy-runyan→ Email: [email protected]👥 Connect with the Hosts:→ Josh Mason: https://www.linkedin.com/in/joshuacmason/→ Wade Wells: https://www.linkedin.com/in/wadingthrulogs/→ Swimlane: https://www.linkedin.com/company/swimlane🎙️ Listen on Your Favorite Platform:→ Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4→ Apple Podcasts: https://podcasts.apple.com/us/podcast/simply-defensive/id1773806182→ Full Playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4👍 If you enjoyed this episode, don't forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity professionals who are doing the work.=========================Sponsored by @ThreatLocker - Free 30-day trial visit:https://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Nov 17, 202532 min

Building Forensics Tools That Last | Brian Carrier (Autopsy, Sleuth Kit)

Josh Mason and Wade Wells sit down with Brian Carrier, the creator of Sleuth Kit and Autopsy, two of the most widely used digital forensics tools in the world. They dig into how Brian got his start in the early days of computer forensics, how open source shaped his career, and what he’s building now with Cyber Triage.From stories about government funding and tool rewrites to the evolving balance between open source and commercial software, this episode is packed with insight for blue teamers, DFIR pros, and anyone who cares about investigation tooling that actually works.Watch to hear:The 25-year evolution of Sleuth Kit & AutopsyHow Cyber Triage simplifies investigations for SOCsThe tradeoffs between open source and commercial toolsWhat Brian sees next in AI-driven forensics⏱️ Timestamps: 00:00 Introduction and Guest Introduction 00:15 Brian Carrier's Journey with Sleuth Kit and Autopsy 02:06 Evolution and Funding of Autopsy 06:52 Open Source vs. Commercial Software 10:16 Future Roadmap and Innovations 14:16 Autopsy and Cyber Triage for Blue Teamers 16:24 Challenges in EDR and SOC Analysis 16:41 Investigative Process and Clues 17:18 Handling Noisy Data in EDR 17:49 Importance of Tracing Malware 18:28 Deploying Additional Collectors 19:25 Feedback from the Community 21:21 Cyber Insurance and Incident Response 23:34 Automation in Forensics 28:41 Advice for Blue Teamers 30:12 Conclusion and Final ThoughtsLinks: 🎧 Listen on Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4 🍎 Listen on Apple Podcasts: https://podcasts.apple.com/us/podcast/simply-defensive/id1668519478 💻 Learn more about Sleuth Kit: https://sleuthkit.org/ 🔍 Try Autopsy: https://www.autopsy.com/ 🧠 Explore Cyber Triage: https://www.cybertriage.com/Connect with Brain: 👤 Brian Carrier on LinkedIn: https://www.linkedin.com/in/brian-carrier-169243/ 🏢 Sleuth Kit / Basis Technology on LinkedIn: https://www.linkedin.com/company/basis-technology/ 💼 Cyber Triage on LinkedIn: https://www.linkedin.com/company/cyber-triage/Don't forget to like, subscribe, and hit the bell icon for more blue team content!🔗 Follow the hosts:Josh Mason: https://www.linkedin.com/in/joshuacmason/Wade Wells: https://www.linkedin.com/in/wadingthrulogs/💡 Brought to you by ThreatLocker – Secure your business with zero trust application control. https://www.threatlocker.com/simplydefensive🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by @ThreatLocker - Free 30-day trial visit:https://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyber https://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Nov 10, 202531 min

Balancing Education and Real-World Cybersecurity with a SOC Analyst Student

In this episode of Simply Defensive, host Josh Mason and co-host discuss their experiences and challenges in cybersecurity, along with guest Victoria, a student and SOC analyst at UNLV.The conversation covers the complexities of building a Security Operations Center (SOC) and compares academic learning with real-world applications. Victoria shares insights from her studies and practical work, including developing a SOC program at UNLV and addressing common cybersecurity misconceptions.The episode highlights the importance of communication, real-world projects, continuous learning, and the balance between technical and business aspects of cybersecurity.00:00 Introduction and Host Banter00:20 Guest Introduction: Victoria01:03 Building a SOC: Challenges and Experiences01:29 Education vs. Real-World Experience02:29 SOC Class and Practical Training03:49 Group Projects and Communication07:14 Real-Life Incident Stories10:33 Getting into Cybersecurity: Victoria's Journey12:54 Business Side of Cybersecurity16:17 The Cost of MFA and Free Alternatives16:31 Lock Picking and Security Value17:30 Teaching Cybersecurity Concepts18:44 Consulting Experience for Students19:15 Client Feedback and Confidential Reports19:52 Challenges in Cybersecurity Projects20:27 Transitioning into the SOC22:34 Federal and State Regulations26:16 Advice for Blue Teamers28:06 Conclusion and FarewellDon't forget to like, subscribe, and hit the bell icon for more blue team content!🔗 Follow the hosts:Josh Mason: https://www.linkedin.com/in/joshuacmason/Wade Wells: https://www.linkedin.com/in/wadingthrulogs/💡 Brought to you by ThreatLocker – Secure your business with zero trust application control. https://www.threatlocker.com/simplydefensive🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by @ThreatLocker - Free 30-day trial visit:https://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyber https://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Nov 3, 202531 min

From Help Desk to SOC: How KevTech Broke Into Cybersecurity Without Certs

What happens when you go from fixing executives’ laptops at Goldman Sachs to defending against cyber threats in a SOC?In this episode of Simply Defensive, hosts Josh Mason and Wade Wells sit down with Kevin Apolinario — better known as KevTech — to unpack his journey from IT support to cybersecurity analyst, all without a single certification.Kev gets real about what it’s actually like to land your first SOC role: the flood of alerts, the burnout, learning Excel the hard way, and relying on ChatGPT to survive scripting. He also shares how TryHackMe, Hack The Box, and constant hands-on practice built the foundation for his success.If you’ve ever wondered what breaking into cybersecurity really looks like, this conversation pulls back the curtain — no fluff, no spin, just honest talk from the trenches.Chapters:00:00 Introduction and Welcome00:29 Guest Introduction: Kev Apolinario00:51 Transition to SOC Analyst Role01:53 Challenges and Learning in Cybersecurity06:43 Handling Alerts and Fatigue10:26 Importance of Teamwork and Asking for Help19:56 Executive Support Experience27:02 Advice for Aspiring Blue TeamersFollow Kevin on YouTube: https://youtube.com/@kevtechitsupportConnect with Kevin on LinkedIn: https://www.linkedin.com/in/itprofessionalkevinapolinarioDon't forget to like, subscribe, and hit the bell icon for more blue team content!🔗 Follow the hosts:Josh Mason: https://www.linkedin.com/in/joshuacmason/Wade Wells: https://www.linkedin.com/in/wadingthrulogs/💡 Brought to you by ThreatLocker – Secure your business with zero trust application control.🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by @ThreatLocker - Free 30-day trial visit:https://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyber https://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Oct 20, 202529 min

Detection Engineering Tutorial: Cloud Security, Kubernetes Logging & SOC Career Path

In this episode of Simply Defensive, we sit down with JB, a Senior Cybersecurity Engineer working in detection engineering. JB shares his journey from SOC analyst to detection engineer, diving deep into the challenges of cloud-native security, Kubernetes logging, and building a sustainable career in cybersecurity.What We Cover:What detection engineering actually means in 2025Working with dual-cloud environments (AWS + GCP)The challenges of Kubernetes logging and ephemeral containersSANS FOR508 (Digital Forensics and Threat Hunting) experienceHow to avoid burnout in InfoSecBuilding a SOC career: What do entry-level analysts really need to know?Work-life balance with kids and an ambitious security careerDefCon stories and the Octopus Games competitionResources & Links Mentioned:Live Overflow's Hextree.io learning platform: https://hextree.ioSANS FOR508 (GCFA): https://www.sans.org/cyber-security-courses/advanced-incident-response-threat-hunting-training/Marcus Hutchins (MalwareTech) on LinkedIn: https://www.linkedin.com/in/malwaretech/Graham Helton's Kubernetes security work: https://www.linkedin.com/in/grahamhelton3/Simply Defensive Podcast: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4Connect with JB:YouTube: @JBCulbertTwitter/X: @JBTweetsStuffTimestamps: 00:00 Introduction and Guest Welcome00:50 JB's Day-to-Day Role in Cybersecurity01:47 Past Experiences and Career Journey02:27 Challenges in Detection Engineering03:23 Kubernetes and Incident Investigation03:51 SANS Classes and CTF Experiences09:07 Remote vs In-Person Learning11:21 Future Plans and Learning Platforms14:13 Docker and Kubernetes in Labs16:11 The Reality of Cybersecurity Skills16:40 Defcon and Octopus Games22:04 Balancing Cybersecurity and Personal Life31:01 Advice for Aspiring Blue Teamers32:57 Final Thoughts and FarewellDon't forget to like, subscribe, and hit the bell icon for more blue team content!🔗 Follow the hosts:Josh Mason: https://www.linkedin.com/in/joshuacmason/Wade Wells: https://www.linkedin.com/in/wadingthrulogs/💡 Brought to you by ThreatLocker – Secure your business with zero trust application control.🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by @ThreatLocker - Free 30-day trial visit:https://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyber https://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Oct 13, 202534 min

Hands-On Defense: Markus Schober on DFIR, Labs, and Building Better Blue Teamers

In this episode of Simply Defensive, Josh Mason and Wade Wells sit down with Markus Schober, founder of Blue Cape Security, to talk all things digital forensics, incident response (DFIR), and why hands-on training beats theory every time.We dig into: 🔹 The hidden value of building your own cyber range 🔹 How IR pros train using real attacks (and why they need red team skills) 🔹 Eric Zimmerman's forensics tools and practical lab setups 🔹 Ransomware war stories from Fortune 100 response 🔹 The role (and limitations) of AI in forensics 🔹 How to break into DFIR as a practitioner — not just a paper tigerWhether you’re building detections, teaching DFIR, or just figuring out where to start, this one’s for you.👇 Timestamps https://www.bluecapesecurity.com/& Resources 0:00 Intro & ThreatLocker sponsorship 2:00 Markus' journey from responder to trainer 5:00 What makes a good DFIR workshop? 7:00 Building a cyber range that doesn’t suck 10:00 Favorite open-source tools (hint: Zimmerman) 14:00 Consulting vs. in-house IR 19:00 APT10, ransomware, and real-world incidents 24:00 Can AI replace forensic analysts? 27:00 Where to find Markus' courses 29:00 Parting wisdom for aspiring defenders📚 Check out Blue Cape Security:→ https://www.bluecapesecurity.com/ → Hands-on IR & Forensics Labs → Certification (coming soon!)🔗 Follow the hosts: Josh Mason: https://www.linkedin.com/in/joshuacmason/ Wade Wells: https://www.linkedin.com/in/wadingthrulogs/💡 Brought to you by ThreatLocker – Secure your business with zero trust application control.

Oct 6, 202530 min

Cyber Threat Intelligence for Blue Teams with Jordan Kalm (Morado COO)

From Army recon missions to building Morado, COO Jordan Kalm reveals how military intelligence tactics translate into modern cyber threat intelligence. In this Simply Defensive episode, Josh Mason and Wade Wells dive into what really works for blue teams and SOC analysts — and what’s just noise.👉 If you’ve ever wondered how to turn raw intel into actionable defense, this conversation is packed with practical takeaways you can use right away.⏱ Timestamps 0:00 – Intro & Jordan’s background 4:00 – From infantry recon to threat intel 12:00 – Building a threat intel platform that works 20:00 – What blue teams actually need 33:00 – Advice for new defenders🔗 Connect with Jordan & Morado Jordan Kalm: https://www.linkedin.com/in/jordan-kalm-2a562b5b/ Morado: https://www.morado.io/👥 Connect with us on LinkedIn:- Josh Mason (Co-Host): https://www.linkedin.com/in/joshuacmason- Wade Wells (Co-Host): https://www.linkedin.com/in/wadingthrulogs/- Kevin Mata (Guest): https://www.linkedin.com/in/kevinmata- Swimlane: https://www.linkedin.com/company/swimlane🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Sep 15, 202532 min

How a Detective Became the Ginger Hacker: SOC Life, Job Hunts & Blue Team Wisdom

From the streets to the SOC. 💻In this episode of Simply Defensive, Josh Mason and Wade Wells talk with Andrew Crotty — aka Ginger Hacker. A former detective turned Tier 3 SOC analyst and Army reservist, Andrew shares his journey into cyber, the struggles of breaking in, and the lessons he’s learned (including the rookie mistake that accidentally dosed the DMV 👀).What you’ll hear:🔹 Andrew’s pivot from law enforcement to cybersecurity🔹 SOC life, schedules, and fighting burnout🔹 Job hunting, recruiters, and landing that first role🔹 Why soft skills matter as much as technical skills🔹 Andrew’s advice for blue teamers: ask why, stay curious, fight alert fatigue📺 Check out Andrew’s channel, Ginger Hacker: https://www.youtube.com/@gingerhacker🎙️ More episodes of Simply Defensive: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4&si=TqefAfDjdR1AYt1c👥 Connect with Us on LinkedIn:- Josh Mason (Co-Host): https://www.linkedin.com/in/joshuacmason- Wade Wells (Co-Host): https://www.linkedin.com/in/wadingthrulogs/- Kevin Mata (Guest): https://www.linkedin.com/in/kevinmata- Swimlane: https://www.linkedin.com/company/swimlane🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Sep 8, 202536 min

Automating the Blue Team | Kevin Mata (Swimlane) on SOAR & AI in Cybersecurity

Automation is changing the way defenders work. In this episode of Simply Defensive, we sit down with Kevin Mata, Director of Cloud Operations at Swimlane, to talk about his journey from flipping burgers at In-N-Out to flipping SOC alerts with automation, SOAR, and AI.Kevin shares how he got started in cybersecurity, how Swimlane helps Blue Teams save time and reduce alert fatigue, and where AI is already making a difference in the SOC. Along the way, he and Wade swap stories about early career struggles, Python hacks, and the future of automation in security operations.If you’ve ever wondered how much you can trust automation, what SOAR really does in a SOC, or how AI will shape the future of defenders—this episode is for you.👉 What You’ll Learn in This Episode:- Kevin’s unique career journey: In-N-Out → SOC → Swimlane leadership- How to use automation to supercharge Blue Team efficiency- The role of SOAR platforms in ticketing, response, and orchestration- Where AI fits into SOC operations (and where it doesn’t…yet)- Tips for defenders at any stage of their career🔗 Links & References from the Episode:- Swimlane: https://swimlane.com- Recorded Future: https://www.recordedfuture.com- VirusTotal: https://www.virustotal.com- Mistral AI: https://mistral.ai👥 Connect with Us on LinkedIn:- Josh Mason (Co-Host): https://www.linkedin.com/in/joshuacmason- Wade Wells (Co-Host): https://www.linkedin.com/in/wadingthrulogs/- Kevin Mata (Guest): https://www.linkedin.com/in/kevinmata- Swimlane: https://www.linkedin.com/company/swimlane🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Sep 2, 202532 min

Inside Hack Defender Academy: Gamified Malware Training for Blue Teamers

Ready to level up your defensive cybersecurity skills? In this episode of Simply Defensive, Josh Mason and Wade Wells sit down with Dan Regalado and Belem — the founders of Hack Defender Academy — to explore how they’re using CTF-style challenges, real malware cases, and gamification to prepare the next generation of defenders.💡 We cover:Why gamified, CTF-style learning works better than traditional trainingHow Hack Defender Academy helps beginners grow into skilled malware analystsThe role of AI in threat research — friend, foe, or both?The importance of staying hungry and keeping your edge as a blue teamer🚨 Special Gift for Our Listeners: Hack Defender Academy is giving away one free certification pass! Details in the episode.🔗 Links from the episodeHack Defender Academy 🌐 Website: academy.hack-defender.com ▶️ YouTube: Hack Defender Official 📱 TikTok: @HackDefOfficial 📸 Instagram: @HackDefOfficial 🐦 X (Twitter): @HackDefOfficial 💼 LinkedIn: Hack Defender 📘 Facebook: Hack DefenderConnect with our guests🔹 Dan Regalado – LinkedIn 🔹 Belem – LinkedInSimply Defensive Podcast🎧 Spotify: Simply Defensive 🎧 Apple: Simply DefensiveSponsor 💼 Thanks to ThreatLocker for supporting this episode.👍 If you enjoyed this conversation, hit Like, Subscribe, and ring the 🔔 so you don’t miss our weekly episodes! Drop a comment with the biggest challenge you’ve faced as a blue teamer — we’d love to hear your story.=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Aug 25, 202529 min

Rob Allen (ThreatLocker) on Zero Trust, Proactive Security, and Ransomware Prevention

In Season 4, Episode 4 of Simply Defensive, hosts Josh Mason and Wade Wells sit down with Rob Allen, Chief Product Officer at ThreatLocker, to dive deep into the world of Zero Trust security, proactive cybersecurity strategies, and ransomware prevention.Rob shares expert insights on:Proactive vs. Reactive cybersecurity — why a balanced security stack mattersHow Zero Trust infrastructure can stop cyber attacks before they startThreatLocker’s "Deny by Default" approach to endpoint and application controlThe importance of application definitions for effective securityWhy AI is not the silver bullet for cybersecurity defenseCommon security myths and misconceptions that put organizations at riskWhether you’re a SOC analyst, detection engineer, IT manager, or anyone interested in protecting against ransomware, this episode offers practical, real-world strategies for building a stronger cyber defense posture.Timestamps: 00:00 – Introduction and Host Greetings 00:23 – Guest Introduction: Rob Allen from ThreatLocker 00:44 – Rob Allen's Role and Responsibilities 02:30 – Proactive vs. Reactive Cybersecurity Approaches 03:54 – Challenges in Cybersecurity Detection 05:24 – ThreatLocker’s Deny by Default Approach 09:48 – The Importance of Application Definitions 16:52 – Security Myths and Misconceptions 18:53 – AI in Cybersecurity: Hype vs. Reality 23:32 – Travel Plans and Closing Remarks🔗 Connect with Rob Allen & ThreatLocker Website: https://www.threatlocker.com/ LinkedIn: https://www.linkedin.com/company/threatlocker/=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Aug 18, 202525 min

Why Your CISO Needs a “Shut Up, Boss” Button

What if GitHub sucks for security detections—and AI is finally good enough to replace it?Join Josh Mason and Wade Wells as they sit down with Aaron Mog, the outspoken founder of Detections.ai, to unpack why detection engineering is broken—and how his new platform signed up 4,000+ users in just two weeks.Aaron doesn’t hold back. From ranting about GitHub’s failures to sharing how AI is now actually useful for real-world detections, this episode goes deep into:Why most teams still build detections in silos (and waste time doing it)What makes detections fail—and what 80% of orgs get wrongHow Detections.ai uses prompt engineering and log analysis to generate battle-ready alertsWhy vendors will never cover all your detection needs (and that’s okay)Whether you're a threat hunter, detection engineer, or just AI-curious, this episode will challenge your assumptions and give you practical ideas to level up your SOC.Connect with Aaron on LinkedIn: https://www.linkedin.com/in/aaronmoghttps://detections.ai/ Code “SimplyCyber”👉 Subscribe for more real talk on cyber defense. 🎧 Listen in and get ahead of the curve.Chapters:00:00 Introduction and Guest Welcome00:31 Aaron Mog and Detections.ai Overview01:58 Community-Driven Detection Engineering04:24 AI Integration and Product Evolution06:20 Challenges in Detection Engineering08:11 AI's Role in Detection Engineering15:51 Vendor Limitations and Custom Solutions16:54 Microsoft's Limitations in Cybersecurity17:23 The Evolution of Threat Hunting18:07 Collaborative Approach to Cybersecurity20:07 Crowdsourcing and AI in Detection Engineering20:57 Challenges and Innovations in AI for Security21:37 AI's Role in Detection and Response23:25 Elastic's Blog and Detection Engineering24:29 AI in Summarizing and Enhancing Security Reports28:14 Community and Commercial Aspects of AI in Security32:18 Conclusion and Community Engagement=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Aug 4, 202534 min

Why Jack in the Box Might Have the Best Security Team in Fast Food

How does a Navy fire control tech who once wrangled a six-barrel death robot become the head of security operations at Jack in the Box? In this episode of Simply Defensive, we sit down with Chris Julio — SOC Manager, veteran, and self-proclaimed lover of both metrics and munchie meals.Chris shares his journey from Windows NT and dot-matrix printers to modern InfoSec leadership, explains what he actually looks for when hiring blue teamers (hint: it's not your certs), and drops tactical insights on building a metrics program that actually matters to the business.We also talk about:The chaos theory of SOC alertsThe power of curiosity in detection workBuilding a team culture that beats burnoutWhy your legal team doesn’t care about phishing — and how to change thatOh, and there's a fast-food burger debate. No spoilers, but lines are drawn.Whether you're just getting started in security or leading your own team, this episode’s got something for you.Connect with Chris on LinkedIn:🔗 https://www.linkedin.com/in/christopherjulio/Chapters:00:00 Introduction and Guest Welcome00:43 Chris Julio's Navy Background04:27 Transition to Cybersecurity06:42 Hiring and Team Building Insights21:36 Balancing Work and Family Life25:53 Engaging with the InfoSec Community27:09 Final Thoughts and Advice for Blue Teamers28:16 Closing Remarks and Sponsor Acknowledgment=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLocker https://www.threatlocker.com/simplydefensive=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Jul 28, 202529 min

Coffee Is Your Top Supply Chain Risk: A Conversation with Kyle Kelly

SOC analysts, detection engineers, and pentesters—you’re not imagining it: software supply chain security is a dumpster fire 🔥. In this episode of Simply Defensive, we sit down with Kyle Kelly, engineering manager at GitHub and author of Crime Hacks, to unpack the chaos.We cover:- Why malicious packages are sneaking past defenders- The truth about SBOMs (and what most orgs are doing wrong)- How to spot typo-squatting and backdoored build scripts- What defenders can do—even if you're not building the code- Why “just NPM install” is more dangerous than you thinkFrom transitive dependencies to the hidden power of private package repositories, this episode is packed with practical insights, hilarious stories, and advice every blue teamer needs.Episode Links:🔗 Kyle’s blog: https://crimehacks.com 👨‍💻 Kyle on LinkedIn: https://www.linkedin.com/in/kyle-m-kelly 📰 Crime Hacks on LinkedIn: https://www.linkedin.com/company/crimehacks=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLocker https://www.threatlocker.com/simplydefensive=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Jul 21, 202528 min

S3 E8: Innovations in Cybersecurity: A Conversation with Threat Locker's John Liliston

In the final episode of Season 3 on Simply Defensive, hosts Josh Mason and Wade Wells welcome John Liliston, the Product Director at ThreatLocker.John shares his journey into cybersecurity, his role at ThreatLocker, and his thoughts on the evolution of security solutions. He discusses ThreatLocker's approach to zero trust, the impact of AI on cybersecurity, and the unique integration of application control and threat detection in their offerings.The episode also covers John's experiences and insights from recent conferences like RSA and potential future advancements in the industry. Tune in for an in-depth discussion on defensive cybersecurity and innovative product design.Connect with John on LinkedIn: https://www.linkedin.com/in/john-lilliston-4725217b/00:00 Introduction to Simply Defensive00:31 Meet John Liliston: Threat Locker's Product Director02:35 John's Journey into Cybersecurity03:45 Transitioning to Product Design04:52 Balancing Roles at Threat Locker06:10 Emerging Threats and Product Development17:47 The Future of Security Solutions24:56 Concluding Thoughts and Upcoming Events=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Jun 2, 202527 min

S3 E7: Cybersecurity Chat with Chuck Sapp | From Military Service to Cyber Awareness

Join hosts Josh and Wade as they sit down with Charles (Chuck) Sapp, a seasoned cybersecurity expert and security awareness specialist. In this episode, Chuck shares his unique journey from serving in the Marine Corps to becoming an influencer in the cybersecurity community.Gain insights into his military background, his passion for educating others about cybersecurity, and engaging stories from his experiences. Chuck also previews his upcoming talk for BSides Tampa 2025, offering valuable advice on tailoring security training for diverse audiences.Don't miss this opportunity to tap into his innovative approach to cybersecurity awareness!Connect with Chuck on LinkedIn: https://www.linkedin.com/in/chucksapp/Check out the article discussed: https://www.staysafeonline.org/articles/ai-fools-stay-sharp00:00 Introduction and Guest Welcome01:18 Chuck's Background and Military Experience03:54 Transition to Cybersecurity06:29 Hackspace Con Story10:35 Upcoming Talk and Security Awareness15:15 Challenges in Security Awareness20:38 Storytelling in Cybersecurity21:56 Real-Life Examples of Scams23:30 Phishing Tests and Awareness31:03 Creative Security Solutions32:03 Leveraging Security Behavior Databases35:23 Meeting Industry Leaders37:53 Final Thoughts and Recommendations=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

May 19, 202538 min

S3 E6: From Submarines to Cybersecurity - Navigating Small Business Security

Welcome to another episode of Simply Defensive! In this installment, hosts Josh Mason and Wade Wells are joined by cybersecurity expert James Bierly.James shares his unique journey from a submarine sonar technician in the Navy to founding his own security firm, Secure Point Solutions, which specializes in helping small businesses tackle cybersecurity threats. They discuss the vital steps and strategies for implementing robust security measures in small companies, the importance of patch management, and how to protect sensitive information.Additionally, James delves into his experiences as a foster parent, offering insights into the foster care system and the impactful ways you can contribute. Stay tuned for valuable tips on safeguarding your business and heartwarming stories from the world of foster care.Episode Links:Connect with James on LI: https://www.linkedin.com/in/jbierly/Secure Point Solutions: https://www.secureps.net/NFPA: https://nfpaonline.org/00:00 Introduction and Guest Welcome00:22 James Bierly's Journey from Submarines to Cybersecurity02:54 Transition to IT and Cybersecurity07:28 Challenges and Rewards of Small Business Cybersecurity12:29 Starting a Cybersecurity Business20:11 Key Security Practices for Small Businesses22:42 Challenges in School Cybersecurity25:29 Starting a Cybersecurity Consulting Business26:14 Engaging with Local Businesses28:42 Building a Network Through Referrals32:54 Becoming a Foster Parent43:48 Advice for Blue Teamers=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

May 12, 202544 min

S3 E5: The Ultimate Guide to Detection as Code and Blue Team Tactics with David French

Join hosts Josh Mason and Wade Wells as they sit down with David French for an insightful episode of Simply Defensive.Discover David's journey from coding CCTV systems to becoming a staff security engineer at Google Cloud. Explore their discussion on detection as code, automation, detection testing, and relevant tools like Dorothy and Atomic Red Team.Learn why coding skills are crucial for modern cybersecurity professionals, and get tips on leveraging AI in the field.Whether you're a beginner or an experienced blue teamer, this episode is packed with valuable insights and actionable advice.LinkedIn - https://www.linkedin.com/in/davidfrench001/Google Cloud Security community - https://www.googlecloudcommunity.com/gc/Google-Cloud-Security/ct-p/googlecloud-securityMedium - https://medium.com/@threatpunterGitHub - https://github.com/threat-punter00:00 Introduction and Casual Banter00:21 Guest Introduction: David French01:11 David's Background and Career Journey02:40 Detection Engineering and Origin Stories04:18 Current Role and Responsibilities05:05 Getting into Cybersecurity08:30 Detection as Code: Concepts and Practices12:34 Testing Detections: Challenges and Strategies16:51 Tools and Techniques for Detection Testing19:25 Open Source Tools and Community Contributions23:23 AI in Detection Engineering26:32 Exploring AI Tools for Coding and Presentations27:50 Deep Research and Its Impact28:52 Journey into Public Speaking40:00 Community Engagement and Networking40:29 Upcoming Conference and Final Thoughts43:45 The Importance of Coding for Security Professionals=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

May 5, 202548 min

S3 E3: Unlocking the Secrets of OPSEC - A Deep Dive with Mitch Cohen

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells welcome Mitch Cohen, privacy and OPSEC expert from flare.io.Mitch shares his journey to becoming a 'digital ghost' and offers valuable insights into operational security (OPSEC) and privacy practices. He discusses the importance of securing personal information, the risks associated with poor OPSEC, and provides actionable steps for improving digital privacy.Josh, Wade, and Mitch explore real-world examples, the ethical implications of privacy, and how to strike a balance between convenience and security.An excellent resource for cybersecurity professionals and anyone interested in protecting their digital footprint.Learn more in the flare.io Discord00:00 Introduction to Simply Defensive00:27 Meet Mitch Cohen: Privacy and OPSEC Expert01:29 The Importance of OPSEC04:13 Defining OPSEC and Its Relevance07:07 Real-World OPSEC Challenges08:23 Balancing Public Presence and Privacy12:44 Threat Models and OPSEC Strategies18:07 Practical OPSEC Tips and Personal Stories20:53 Rolling Back Your Public Profile21:48 Digital Spring Cleaning: Deleting Old Posts23:03 The Art of Misinformation: Poisoning the Well24:51 Changing Your Appearance for OPSEC27:38 Resources for Learning OPSEC31:23 The Importance of Privacy as a Human Right36:41 Convenience vs. Security: The Trade-offs40:01 Final Thoughts and Advice for Blue Teamers =========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Apr 21, 202542 min

S3 E2: Navigating the Cybersecurity Landscape with Edna Johnson - From Developer to Threat Hunter

Navigating the Cybersecurity Landscape with Edna Johnson: From Developer to Threat HunterJoin hosts Josh Mason and Wade Wells as they welcome Edna Johnson, a vibrant and passionate cybersecurity engineer, to Simply Defensive. Edna shares her journey from initially wanting to be a developer to diving deep into the world of cybersecurity, attending and volunteering at major conferences such as Defcon and BSides.She discusses her role in various cybersecurity groups, her imposter syndrome battles, and the importance of volunteering and community engagement in this field. Listen in for valuable insights on threat hunting, content creation, and the significance of understanding basic processes in blue teaming. Don't miss this fantastic episode filled with real-world advice and behind-the-scenes stories from Edna's inspiring career!Connect with Edna:https://www.linkedin.com/in/ednajonsson/https://www.buzzsprout.com/1749189 https://deathcon.io/00:00 Introduction and Guest Welcome00:36 Edna Johnson's Background and Achievements01:53 Challenges and Successes in CTFs03:41 Journey into Cybersecurity05:12 Teaching Cybersecurity and Overcoming Imposter Syndrome08:52 Involvement with BSides and Networking During the Pandemic10:39 Current Projects and Content Development11:49 Exploring AI-Generated Honeypots14:06 Passion for Threat Hunting and Script Writing14:58 Involvement with Death Con17:01 Exploring the Unique Aspects of Death Con17:35 The Value of Networking and Friendships18:17 Extended Access to Labs and Workshops19:21 Organizing Death Con San Diego20:59 The Benefits of Volunteering in Cybersecurity24:40 Joining and Growing DEF CON Groups30:34 Final Thoughts and Advice for Blue Teamers=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Apr 14, 202531 min

S3 E1: Building Effective Cyber Defense Teams with Fletus Poston III

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells are joined by special guest Fletus Poston III, a seasoned cyber defense expert with nearly 18 years of experience.Learn about the complexities of cyber defense in various industries, discussing the pros and cons of regulatory red tape, the impact of audits on cybersecurity, and the dynamics between internal and external red teams. Fletus shares valuable insights on mentorship, career advice for aspiring SOC analysts, and the importance of understanding different perspectives within the industry.Whether you're new to cybersecurity or a seasoned professional, this episode offers a deep dive into the real-world challenges and strategies in the field.Connect with Fletus on YouTube at ⁨@fletusposton⁩ and on LinkedIn. 00:00 Introduction and Guest Introduction00:55 Discussing Industry Regulations01:34 Challenges with Auditing04:46 Red Team vs Blue Team Dynamics08:34 Career Journey in Cybersecurity11:16 Building and Managing SOCs13:34 Internal vs External SOC Management17:05 Maintaining SOC Analyst Morale18:22 Testing and Tabletops18:36 Disaster Recovery Scenarios19:16 Level One Analysts and Guardrails19:38 Tierless SOCs and Escalation20:13 Choosing the Right SOC Environment21:26 Understanding Documentation and SOPs22:25 Advice for Aspiring SOC Analysts24:21 Work-Life Balance in SOC Roles29:32 Reverse Mentorship and Cross-Training31:01 Finding the Right Company Culture34:57 Conclusion and Final Thoughts=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Apr 7, 202535 min

S2 E8: SOC Challenges, Trends, and Community Wisdom with Reanna Schultz

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells are joined by Reanna Schultz, a renowned cyber influencer and SOC manager. Reanna shares her journey from aspiring state highway patrolwoman to cybersecurity expert, emphasizing the importance of community engagement and continuous learning.Join us as we cover the challenges and rewards of working in a SOC, the nuances of public speaking, and offers valuable advice for newcomers to the field. This episode is a treasure trove of insights, humor, and practical tips for anyone interested in cybersecurity.Connect with Reanna on LinkedIn: https://www.linkedin.com/in/reanna-schultz/Follow Reanna on YouTube: https://www.youtube.com/channel/UC52GRGtruHriE2yGJzv5nuA=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Mar 3, 202541 min

S2 E7: Understanding Mac Security - Challenges and Insights with Slava Konstantinov

Understanding Mac Security: Challenges and Insights with Slava KonstantinovIn this episode of Simply Defensive, hosts Josh Mason and Wade Wells are joined by Slava Konstantinov, the Head of Mac Development at ThreatLocker. Slava dives deep into the world of Mac security, explaining the challenges and intricacies of developing security agents for macOS. Learn about the differences discussed between Mac, Windows, and Linux security, the hurdles in defending Macs due to Apple's privacy measures, and the importance of zero trust security models. Slava also shares stories from his journey in cybersecurity, tips for defenders, and insights into current developments and future plans at ThreatLocker.Don't miss this comprehensive discussion on modern Mac security!Connect with Slava on LinkedIn: https://www.linkedin.com/in/franticmmConnect with @ThreatLocker00:00 Introduction and Guest Introduction00:57 Challenges of Mac Security01:38 Mac vs. Windows Security02:32 Kernel Level Security05:34 Mac Malware and Attack Vectors10:10 Hackintosh and Early Mac Experiences15:00 Zero Trust and ThreatLocker Mac Agent16:31 Inbound Connection Issues17:04 Ring Fencing and Application Control17:38 Unified Audit and ThreatLocker Detect18:24 Cross-Platform Detection Challenges20:16 MacOS Debugging and Firewall Issues24:34 Zero Trust and Elevation26:13 Conference Experiences and Advice28:28 Final Thoughts and Security Tips=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Feb 24, 202535 min

S2 E6: Navigating OT Security - An Inside Look with Lesley Carhart

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells welcome the highly esteemed Leslie Carhart from Dragos.We step into the world of industrial cybersecurity, discussing the critical nature of securing vital infrastructure like power plants, water treatment facilities, and manufacturing setups. Leslie shares insights on the unique challenges faced in this sector, including handling old systems, different procedural mindsets, and low-level industrial devices.The episode also covers Leslie's intriguing career journey, filled with diverse technical roles, and her advice on entering and thriving in cybersecurity. Moreover, Leslie offers valuable guidance on mentorship and maintaining a work-life balance for cybersecurity professionals.https://www.linkedin.com/in/lcarhart/https://pancakescon.com/https://www.sans.org/profiles/lesley-carhart/https://bsky.app/profile/hacks4pancakes.com00:00 Introduction and Guest Welcome01:02 Leslie Carhartt's Role at Dragos02:06 Challenges in Industrial Cybersecurity06:39 Leslie's Career Journey09:01 Advice for Aspiring OT Cybersecurity Professionals13:24 Incident Response in OT Environments16:50 Mapping Processes in OT Security18:06 Reflecting on Early Career Lessons18:31 Navigating Social Media Criticism19:55 Cyber Warfare and Air Force Insights22:04 Challenges in OT Security24:02 Mentoring in Cybersecurity24:43 Advice for Aspiring Cybersecurity Professionals25:51 Realities of Pen Testing and Incident Response29:32 Effective Mentorship Strategies32:50 Final Thoughts and Contact Information=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker =========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Feb 17, 202536 min

S2 E5: From Red to Blue - David Perez's Cybersecurity Odyssey

From Navy Red Team to Blue Team: David Perez's Cybersecurity JourneyIn this episode of Simply Defensive, hosts Josh Mason and Wade What’s Up interview David Perez, a Navy veteran who transitioned from red teaming to blue teaming in cybersecurity. David shares insights into his career path, his experience with the Navy’s Skillbridge program, and the challenges he faced moving from a structured military environment to the more fluid civilian sector.David also discusses the importance of thinking like an attacker for effective defense, his thoughts on training and detection engineering, and offers valuable advice for those looking to break into the cybersecurity field. Join the conversation to learn about David’s journey, his day-to-day responsibilities, and how he stays sharp in the ever-evolving world of cybersecurity. Don’t forget to like, subscribe, and share!00:00 Introduction and Guest Introduction00:19 David Perez's Cybersecurity Journey00:54 Transition from Military to Civilian Cybersecurity01:48 Skill Bridge Experience03:07 First SOC Job and Responsibilities03:51 Becoming a Detection Engineer04:41 Challenges and Freedom in Cybersecurity Roles08:28 Detection Engineering Insights11:06 Risk-Based Alerting13:14 Detection Rule Management16:38 Detection Building Process18:24 Automated Threat Hunting19:40 Challenges in Detection Engineering20:15 Resources and Learning for Detection Engineering21:46 Teaching and Learning in Cybersecurity22:46 The Importance of Experience in Detection Engineering28:31 Balancing Work and Personal Life31:46 Advice for Aspiring Blue Teamers34:12 Conclusion and Contact Information=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Feb 10, 202536 min

S2 E4: SOC Operations and Metrics with Hayden Covington

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells are joined by Hayden Covington from Black Hills Information Security. Hayden shares insights into his role at a Security Operations Center (SOC), discussing key metrics, challenges in SOC work, and the importance of communication with MSP customers.The conversation also delves into Hayden's new course on SOC foundations using Elastic and Jira, his experiences with public speaking, and the importance of personal documentation for productivity and problem-solving.- Hayden’s Webinar on Metrics in the SOC: https://www.youtube.com/watch?v=RvsAy4xXrpQ- Hayden’s LinkedIn: https://www.linkedin.com/in/hayden-covington-468495128/- Hayden’s Course: https://www.antisyphontraining.com/course/foundations-of-soc-with-elastic-and-jira-with-hayden-covington/00:00 Introduction and Guest Welcome00:18 Hayden's Background and Role at Black Hills01:15 Importance of SOC Metrics04:06 Challenges in SOC and Customer Relationships09:19 Working from Home vs. Office11:50 Foundations of SOC Course16:46 Discussing the Course and Coffee Consumption17:30 Teaching Experiences and Imposter Syndrome19:10 Career Journey and Working at Black Hills20:55 Public Speaking and Overcoming Fear22:52 Balancing Hobbies and Work27:57 Dungeons & Dragons and Gaming33:41 Productivity Tips and Tools34:41 Conclusion and Farewell=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmason Wade Wells: https://www.linkedin.com/in/wadingthrulogs =========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Feb 3, 202536 min

S2 E3: Unlocking the Potential of Blue Teaming with Microsoft Intel Analyst Simeon

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells talk with Simeon, an Intel Analyst at Microsoft. Listen as they explore his journey from aspiring doctor to cybersecurity expert, discussing his innovative contributions like the creation of KC7 Cyber, a tool that democratizes access to cybersecurity training.Learn about Simeon's early influences, challenges, and the importance of critical thinking, analytical reasoning, and communication in cybersecurity. He also shares his passion for breaking down biases and encouraging diversity in the tech world while offering practical advice for both new and seasoned blue teamers. Discover how KC7 is shaping the future of cyber defense training and get inspired by Simeon's dedication to making cybersecurity accessible to all.Connect with Simeon: https://www.linkedin.com/in/kakpovi/Check out KC7: https://kc7cyber.com/00:00 Introduction and Guest Welcome00:36 Simeon's Background and Career Journey01:26 Getting Started in Cybersecurity02:17 The Cyber Analyst Challenge Experience04:03 Industry vs Academic Cybersecurity07:08 Diversity in Cybersecurity07:54 Emerging Coders Club at Howard08:21 Breaking Technical and Non-Technical Labels13:17 The Birth of KC7 Cyber17:19 Using AI to Scale Cybersecurity Training18:28 Behind the Scenes of a Complex Engine20:01 Teaching Critical Thinking and Analytical Reasoning20:50 The Importance of Transferable Skills21:13 Using KQL for Fast Data Access22:57 Investigative Process and Anticipating Questions24:19 Technical Interviews and Investigative Skills26:39 Training New Analysts in Full Scope Investigations32:57 KC7: A Tool for Accelerated Learning36:37 Final Thoughts and Recommendations=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Jan 27, 202539 min

S2 E2: From Military Police to Cyber Sleuth - Jess Bishop's Journey and Insights

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells are joined by SOC analyst Jessica Bishop. Jessica shares her unconventional journey into cybersecurity, transitioning from military police to a corporate role and eventually into a SOC analyst position at an MSSP.She discusses her job's dynamic and engaging aspects, the importance of teamwork and communication within cybersecurity, and her intriguing hobby of paranormal investigation. Tune in to hear about effective cybersecurity practices, the challenges of working in a SOC, and the crossover between investigative tactics in cybersecurity and paranormal research.Follow Jess on LinkedIn: https://www.linkedin.com/in/jessica-bishop-%F0%9F%A7%AD-262729b4/00:00 Introduction and Guest Welcome00:38 Jessica's Journey into Cybersecurity04:02 Networking and Mentorship05:00 Education and Career Path09:24 Challenges and Rewards in SOC Work13:58 Paranormal Investigations16:05 Haunted House Stories17:35 The Importance of Skepticism in Investigations18:38 Relating Skepticism to Cybersecurity19:00 The Dropbox Incident20:18 Inflating Metrics in SOC21:04 Challenges of Working in a SOC24:21 The Importance of Communication in Security29:41 Empathy in Security Work30:22 Final Thoughts and Recommendations=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Jan 20, 202534 min

S2 E1: Cybersecurity Adventures with Dan Reardon - Memes, Blogging, and Community Insights

Join hosts Josh Mason and Wade Wells in this episode of Simply Defensive as they welcome cybersecurity meme-maker and SOC analyst, Dan Reardon, also known as The HaircutFish.Discover Dan's unconventional journey into cybersecurity, from creating influential memes about prominent figures like Jon Hammond and John Strand to writing insightful blogs on Medium. Dan shares his experiences at Wild West Hacking Fest, overcoming personal challenges, and the importance of networking within the cybersecurity community.Learn about the reality of working as a SOC analyst, the tools of the trade such as Vim, VS Code, and Wireshark, and the rewarding nature of thwarting cyber attacks. This episode emphasizes the power of community, the significance of balancing work with family life, and the benefits of giving back through knowledge sharing.Don't miss these valuable insights, and expect more exciting discussions in future episodes!Connect with our guest, Dan Reardon, on LinkedIn: https://www.linkedin.com/in/danrearden00:00 Welcome to Simply Defensive00:10 Meet Dan Reardon aka Haircutfish00:51 Dan's Journey into Cybersecurity01:14 The Art of Meme Making02:15 Connecting Through Memes06:20 Dan's Blogging Adventures11:50 Learning and Adapting in Cybersecurity14:21 Dan's Hacker Origin Story17:07 Getting Started with TryHackMe and Blue Teaming17:48 First Security Job Experience18:19 Expectations vs Reality in SOC Roles20:30 Favorite Tools and Utilities25:16 The Importance of Community in Cybersecurity33:08 Final Thoughts and Recommendations for Blue Teamers=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Jan 13, 202537 min

S1 E8: From Cyber Beginnings to VP - An Interview with Melanie Thomas

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells sit down with Melanie Thomas, Vice President of Cyber Security at BridgePoint Technologies. Melanie shares insights from her role, her experience in cybersecurity, and her path from tech support to VP. She discusses her adjunct professorship at the University of San Diego, her community service, and the importance of networking. The conversation covers the significance of education in cybersecurity, Melanie's approach to balancing technical and strategic roles, and valuable advice for new entrants in the field, including teamwork and maintaining humility.=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group

Nov 18, 202431 min

S1 E7: War Driving Adventures and Hard Hat Brigade Insights

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells welcome Ken, also known as MonkeyDragon, a member of Defcon 858 in San Diego and co-founder of Hard Hat Brigade. Ken introduces himself and discusses his role in cybersecurity, focusing primarily on incident response, threat detection, and threat hunting. The conversation transitions to the topic of 'war driving,' a practice of searching for wireless networks, which Ken is passionate about. He shares insights into the tools used, such as Kismet, and the community-driven project, Wiggle. Ken also talks about his journey into cybersecurity, the origins, and the activities of the Hard Hat Brigade, and offers advice for new blue teamers: ask questions without fear. The episode highlights Ken's involvement in various security events and his emphasis on community and kindness in the cybersecurity field.=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪==================================================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================

Nov 11, 202437 min

S1 E6: Aligning Red and Blue Best Practices for Effective SOCs

Welcome to Simply Defensive! Josh Mason and co-host Wade Wells sit down with special guest Ashley Knowles from Black Hills InfoSec. Dive into the world of pen testing, SOC management, and the complex relationships between blue and red teams. Ashley shares her experiences working as a penetration tester for over a decade, her role with Black Hills InfoSec, and insights on improving SOC operations. Discover the challenges of balancing SOC metrics, handling new threats, and fostering transparency between teams. Plus, learn about the intricacies of Microsoft DevTunnels and other cutting-edge techniques used in the field. Don't miss Ashley's advice on research, continuous learning, and the importance of Googling effectively.Subscribe and hit the bell for more episodes!=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪==================================================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================

Nov 4, 202442 min

S1 E5: Incident Response, Career Evolution, and the Importance of Soft Skills

Blake Reagan on Incident Response, Career Evolution, and the Importance of Soft SkillsIn this week's episode of Simply Defensive, host Josh Mason and co-host Wade Wells welcome incident response expert Blake Reagan. The discussion delves into Blake's journey from the building trades to cybersecurity, a field he entered after the 2008 economic downturn. Blake shares his experiences in digital forensics, emphasizing the importance of soft skills like public speaking and effective communication in cybersecurity roles. The trio also discusses the merits of tools like the Autopsy Digital Forensics platform, the utility of Toastmasters for public speaking, and time management strategies, making this episode a comprehensive look at the tech and human sides of cybersecurity.=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪==================================================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================

Oct 28, 202438 min

S1 E4: Real Talk on Cybersecurity Careers with FedX

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells are joined by @TheFedXChannel, a seasoned security analyst from Central Florida. The conversation starts with FedEx discussing his local internet setup and transitioning into his extensive career journey from construction to IT and cybersecurity. They explore the importance of real-world experience, the challenges of getting started in the cybersecurity industry, and the value of networking, both online and locally. FedEx also shares his journey through higher education and obtaining his degree, along with the significance of continuous learning and certifications. The episode concludes with FedEx discussing his newly launched YouTube channel focused on cybersecurity content and his inspiration to share knowledge and help others enter the field.=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪==================================================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================

Oct 21, 202437 min

S1 E3: Watchmaker to Threat Hunter - Jibby's Remarkable Journey

In this episode of Simply Defensive, hosts Josh Mason and Wade Wells interview their first guest of the season, Jibby. Jibby shares his incredible journey from a decade-long career in watch and jewelry repair to a thriving role in cybersecurity. By leveraging community support, hands-on learning platforms like KC7 Cyber and TryHackMe, and staying committed despite multiple setbacks, Jibby has secured a prestigious role at Microsoft as a Security Researcher. He highlights the importance of networking, community, and continuous learning in forging a successful path in cybersecurity. The episode also explores Jibby’s passion for contributing back to the community, leading to talks at various conferences and building new cybersecurity challenges for others.=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================

Oct 14, 202443 min

S1 E2: Decoding Detection As Code - A Deep Dive with Wade Wells

In this episode of Simply Defensive, host Josh Mason talks with co-host Wade Wells about the concept of 'detection as code,' a methodology in cybersecurity focusing on automating and enhancing detection logic using software development principles. Wade shares his experiences and upcoming engagements, including his talk at Blue Team Con in Chicago. The duo delves into the intricacies of detection engineering, highlighting the similarities with DevOps practices and the importance of proper tuning and testing. They discuss the challenges and benefits of employing detection as code, its future potential, and the role of cybersecurity tools like Splunk, CrowdStrike, and Google Chronicle. The episode also touches on how detection engineering could impact red teaming and the importance of understanding the client's environment to create effective detections.

Oct 7, 20241h 22m

S1 E1: Simply Defensive Launches! Meet Your Hosts, Josh and Wade

Simply Defensive: Episode 1 - Meet Your Hosts, Josh and WadeWelcome to the inaugural episode of Simply Defensive! Join hosts Josh Mason and Wade Wells as they introduce the podcast and share their professional backgrounds in cybersecurity. Discover the story behind the podcast's creation, their unique approach compared to vendor-driven content, and the importance of community in cybersecurity. Josh dives into his journey from being a pilot in the Air Force to becoming a director of cyber training, while Wade talks about his varied roles in the cybersecurity industry, including his work in SOCs and threat intelligence.Get insights on upcoming talks, community involvement, and the launch of future episodes focused on real-world experiences from the defensive side of cybersecurity.=========================Simply Cyber empowers people who want a rewarding cybersecurity career=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================

Oct 1, 202433 min