CISSP Cyber Training Podcast - CISSP Training Program artwork

Courses · Shon Gerber, vCISO, CISSP, Cybersecurity Consultant and Entrepreneur

CISSP Cyber Training Podcast - CISSP Training Program

by Shon Gerber, vCISO, CISSP, Cybersecurity Consultant and Entrepreneur

Join Shon Gerber on his weekly CISSP Cyber Training podcast, where his extensive 23-year background in cybersecurity shines through. With a rich history spanning corporate sectors, government roles, and academic positions, Shon imparts the essential insights and advice necessary to conquer the CISSP exam. His expertise is not just theoretical; as a CISSP credential holder since 2009, Shon translates his deep understanding into actionable training. Each episode is packed with invaluable security strategies and tips that you can implement right away, giving you an edge in the cybersecurity realm. Tune in and take the reins of your cybersecurity journey—let’s ride into excellence together! 🚀

Latest episodes

Showing 20 · updated from the feed

CCT 370: CISSP Cryptography, FIPS Validation, and Post-Quantum (Domain 3)

Send us Fan Mail A compliance deadline can change your security posture without changing a single bit of your encryption. We start with a simple sticker-on-the-windshiel

Sep 14
38 min

CCT 369: Security Models Demystified - CISSP Domain 3.2 (Replay of CCT 278)

Send us Fan Mail 🔁 REPLAY — this episode originally aired as CCT 278 in September 2025. I'm heads-down finishing a Domain 3 cryptography episode, so I'm re-ru

Sep 7
31 min

CCT 368: CISSP Asset Security and Data Classification (Domain 2)

Send us Fan Mail Nine million images. No password. No encryption. And the defence was basically: “It wasn’t public because you had to know the URL.” That single line ope

Aug 31
42 min

CCT 367: Threat Modeling and the AI Agent That Breached Hugging Face (CISSP Domain 1.10)

Send us Fan Mail A rogue AI agent didn’t “hack the future” so much as exploit the oldest security problems in the book: weak boundaries, over-trusted inputs, exposed end

Aug 24
42 min

CCT 366: Software Supply Chain Security Explained — CISSP Domain 8 (ChainDrop Case Study)

Send us Fan Mail A supply chain attack that leaves your Git history spotless should change how you think about “secure code.” We walk through ChainDrop, a worm discovere

Aug 17
33 min

CCT 365: Malicious QR Code Attacks and Digital Forensics Techniques Every CISSP Should Know [REPLAY]

Send us Fan Mail One careless QR scan can quietly turn a “private” chat into a live wiretap. We start with a timely threat story: Russian APT-style actors abusing Signal

Aug 10
25 min

CCT 364: Third Party Risk Management - How One Vendor Breach Exposed 119,000 Users

Send us Fan Mail A breach can hit your headlines even when your own systems never get touched, and that’s exactly why third-party risk management keeps showing up on the

Aug 3
46 min

CCT 363: CISSP AI Governance - What Credit Union Examiners Are Really Asking

Send us Fan Mail One bad AI decision can cost you more than money. It can cost you trust, trigger regulators overnight, and put your name on the hook when the board asks

Jul 27
44 min

CCT 362: Security Assessment Strategies & Abandoned Cloud Storage Risks (CISSP 6.1) - REPLAY

Send us Fan Mail That forgotten cloud storage you stopped thinking about months ago can become a real attack path today. We start with a simple but dangerous scenario: a

Jul 20
34 min

CCT 361: Bad Epoll - Root Access in 6 Instructions

Send us Fan Mail A six-instruction timing glitch in the Linux kernel can be the difference between “low-priv user” and full root control, and that is why we dig into the

Jul 13
32 min

CCT 360: SSA Whistleblower and the Thumb Drive: What CISSP Asset Security Tells Us About This Disaster

Send us Fan Mail Imagine hearing a claim that the most sensitive identity data in the United States could be sitting on a personal thumb drive. That allegation is still

Jul 6
23 min

CCT 359: ShinyHunters vs. Oracle — Supply Chain Risk Every CISSP Must Know

Send us Fan Mail A vendor gets breached and suddenly your perimeter does not matter, because the attacker does not need to “hack” you. They just reuse the access you alr

Jun 29
43 min

CCT 358: EDR Bypass Ransomware: The Gentle Killer Threat Every CISSP Must Know

Send us Fan Mail Your endpoint tool can be world class and still get taken out first. That’s the unsettling reality behind a new wave of “EDR killer” capabilities being

Jun 22
43 min

CCT 357: Is Your Encrypted Data Already Stolen? Quantum Risk & Supply Chain Attacks for CISSP

Send us Fan Mail Someone is stealing encrypted data right now and they are not trying to read it today. They are saving it for later, betting that quantum computing will

Jun 15
32 min

CCT 356: Supply Chain Attacks Are Exploding in 2026 — Here's What the NCSC Wants You to Do

Send us Fan Mail Your software is only as trustworthy as the dependencies you quietly inherit and attackers know it. Today I break down the NCSC warning on software supp

Jun 8
41 min

CCT 355: Zapier Breach Lessons For Cloud Security and Setting Up TPRM Program in 15 Minutes

Send us Fan Mail The breach that takes down a company often does not kick in the front door. It walks in through a “simple” integration you set up months ago, powered by

Jun 4
24 min

CCT 354: Data Security Controls and Compliance Requirements for the CISSP (Domain 2.3) - REPLAY

Send us Fan Mail Your firewall can be patched tomorrow, but what about the place your system hides its real secrets today? We start with a timely warning about a serious

Jun 1
37 min

CCT 353: AI Agent Governance Essentials - CISSP Practice Questions

Send us Fan Mail AI agents are landing in production faster than most security teams can track them, and the scariest part is how normal they can look. When an autonomou

May 28
28 min

CCT 352: Data Security Controls and Compliance Requirements for the CISSP (Domain 2.3) - REPLAY

Send us Fan Mail Your security program can be airtight and still get wrecked by someone else’s breach. We open with a Wired-style reality check: third-party app ecosyste

May 25
40 min

CCT351: BitLocker Bypass Reality Check (YellowKey) and CISSP Practice Questions

Send us Fan Mail BitLocker feels like a safety net until you see how a single bypass can change the whole risk picture. Today we react to the Yellow Key vulnerability (n

May 21
24 min

Chart trend

Position in the Courses chart (US), last 90 days.

#23
all-time peak
312
days in the top 50 since May 2025

Chart positions

Where CISSP Cyber Training Podcast - CISSP Training Program ranks today in each Apple Podcasts chart (US, Sep 18, 2026).

#77 ▼ 28 Courses US

More podcasts like CISSP Cyber Training Podcast - CISSP Training Program

Popular shows in Courses, for your next listen.

Browse charts by category

Daily updated Apple Podcasts rankings for the United States.

About CISSP Cyber Training Podcast - CISSP Training Program on Reason.fm

Here you find the Apple Podcasts chart positions of CISSP Cyber Training Podcast - CISSP Training Program, its latest episodes to listen to directly, and reviews from listeners. Rankings are updated daily for the United States.

Contact

Questions or issues? Reach us at hello@reason.fm

0:000:00