DiscoverSimply Defensive
Simply Defensive
Claim Ownership

Simply Defensive

Author: Simply Cyber Media Group

Subscribed: 4Played: 83
Share

Description

Join us for Simply Defensive, a podcast dedicated to exploring the world of defensive cybersecurity through the lens of real-world experts. In each episode, we'll interview leading professionals from the cybersecurity industry, delving into their experiences, challenges, and innovative solutions.

Whether you're a seasoned cybersecurity veteran or just starting to learn about the field, Simply Defensive offers valuable insights and practical advice to help you stay ahead of the curve. Tune in as we discuss the latest threats, emerging technologies, and best practices for protecting your organization from cyberattacks.

=========================
Connect with your hosts:
Josh Mason: https://www.linkedin.com/in/joshuacmason
Wade Wells: https://www.linkedin.com/in/wadingthrulogs

=========================
Simply Cyber empowers people who want a rewarding cybersecurity career 💪
=========================
=========================
All the ways to connect with Simply Cyber
https://SimplyCyber.io/Socials
=========================
37 Episodes
Reverse
Josh Mason and Wade Wells sit down with Brian Carrier, the creator of Sleuth Kit and Autopsy, two of the most widely used digital forensics tools in the world. They dig into how Brian got his start in the early days of computer forensics, how open source shaped his career, and what he’s building now with Cyber Triage.From stories about government funding and tool rewrites to the evolving balance between open source and commercial software, this episode is packed with insight for blue teamers, DFIR pros, and anyone who cares about investigation tooling that actually works.Watch to hear:The 25-year evolution of Sleuth Kit & AutopsyHow Cyber Triage simplifies investigations for SOCsThe tradeoffs between open source and commercial toolsWhat Brian sees next in AI-driven forensics⏱️ Timestamps: 00:00 Introduction and Guest Introduction 00:15 Brian Carrier's Journey with Sleuth Kit and Autopsy 02:06 Evolution and Funding of Autopsy 06:52 Open Source vs. Commercial Software 10:16 Future Roadmap and Innovations 14:16 Autopsy and Cyber Triage for Blue Teamers 16:24 Challenges in EDR and SOC Analysis 16:41 Investigative Process and Clues 17:18 Handling Noisy Data in EDR 17:49 Importance of Tracing Malware 18:28 Deploying Additional Collectors 19:25 Feedback from the Community 21:21 Cyber Insurance and Incident Response 23:34 Automation in Forensics 28:41 Advice for Blue Teamers 30:12 Conclusion and Final ThoughtsLinks: 🎧 Listen on Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4 🍎 Listen on Apple Podcasts: https://podcasts.apple.com/us/podcast/simply-defensive/id1668519478 💻 Learn more about Sleuth Kit: https://sleuthkit.org/ 🔍 Try Autopsy: https://www.autopsy.com/ 🧠 Explore Cyber Triage: https://www.cybertriage.com/Connect with Brain: 👤 Brian Carrier on LinkedIn: https://www.linkedin.com/in/brian-carrier-169243/ 🏢 Sleuth Kit / Basis Technology on LinkedIn: https://www.linkedin.com/company/basis-technology/ 💼 Cyber Triage on LinkedIn: https://www.linkedin.com/company/cyber-triage/Don't forget to like, subscribe, and hit the bell icon for more blue team content!🔗 Follow the hosts:Josh Mason: https://www.linkedin.com/in/joshuacmason/Wade Wells: https://www.linkedin.com/in/wadingthrulogs/💡 Brought to you by ThreatLocker – Secure your business with zero trust application control. https://www.threatlocker.com/simplydefensive🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by @ThreatLocker - Free 30-day trial visit:https://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyber https://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
In this episode of Simply Defensive, host Josh Mason and co-host discuss their experiences and challenges in cybersecurity, along with guest Victoria, a student and SOC analyst at UNLV.The conversation covers the complexities of building a Security Operations Center (SOC) and compares academic learning with real-world applications. Victoria shares insights from her studies and practical work, including developing a SOC program at UNLV and addressing common cybersecurity misconceptions.The episode highlights the importance of communication, real-world projects, continuous learning, and the balance between technical and business aspects of cybersecurity.00:00 Introduction and Host Banter00:20 Guest Introduction: Victoria01:03 Building a SOC: Challenges and Experiences01:29 Education vs. Real-World Experience02:29 SOC Class and Practical Training03:49 Group Projects and Communication07:14 Real-Life Incident Stories10:33 Getting into Cybersecurity: Victoria's Journey12:54 Business Side of Cybersecurity16:17 The Cost of MFA and Free Alternatives16:31 Lock Picking and Security Value17:30 Teaching Cybersecurity Concepts18:44 Consulting Experience for Students19:15 Client Feedback and Confidential Reports19:52 Challenges in Cybersecurity Projects20:27 Transitioning into the SOC22:34 Federal and State Regulations26:16 Advice for Blue Teamers28:06 Conclusion and FarewellDon't forget to like, subscribe, and hit the bell icon for more blue team content!🔗 Follow the hosts:Josh Mason: https://www.linkedin.com/in/joshuacmason/Wade Wells: https://www.linkedin.com/in/wadingthrulogs/💡 Brought to you by ThreatLocker – Secure your business with zero trust application control. https://www.threatlocker.com/simplydefensive🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by @ThreatLocker - Free 30-day trial visit:https://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyber  https://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
What happens when you go from fixing executives’ laptops at Goldman Sachs to defending against cyber threats in a SOC?In this episode of Simply Defensive, hosts Josh Mason and Wade Wells sit down with Kevin Apolinario — better known as KevTech — to unpack his journey from IT support to cybersecurity analyst, all without a single certification.Kev gets real about what it’s actually like to land your first SOC role: the flood of alerts, the burnout, learning Excel the hard way, and relying on ChatGPT to survive scripting. He also shares how TryHackMe, Hack The Box, and constant hands-on practice built the foundation for his success.If you’ve ever wondered what breaking into cybersecurity really looks like, this conversation pulls back the curtain — no fluff, no spin, just honest talk from the trenches.Chapters:00:00 Introduction and Welcome00:29 Guest Introduction: Kev Apolinario00:51 Transition to SOC Analyst Role01:53 Challenges and Learning in Cybersecurity06:43 Handling Alerts and Fatigue10:26 Importance of Teamwork and Asking for Help19:56 Executive Support Experience27:02 Advice for Aspiring Blue TeamersFollow Kevin on YouTube: https://youtube.com/@kevtechitsupportConnect with Kevin on LinkedIn: https://www.linkedin.com/in/itprofessionalkevinapolinarioDon't forget to like, subscribe, and hit the bell icon for more blue team content!🔗 Follow the hosts:Josh Mason: https://www.linkedin.com/in/joshuacmason/Wade Wells: https://www.linkedin.com/in/wadingthrulogs/💡 Brought to you by ThreatLocker – Secure your business with zero trust application control.🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by @ThreatLocker - Free 30-day trial visit:https://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyber  https://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
In this episode of Simply Defensive, we sit down with JB, a Senior Cybersecurity Engineer working in detection engineering. JB shares his journey from SOC analyst to detection engineer, diving deep into the challenges of cloud-native security, Kubernetes logging, and building a sustainable career in cybersecurity.What We Cover:What detection engineering actually means in 2025Working with dual-cloud environments (AWS + GCP)The challenges of Kubernetes logging and ephemeral containersSANS FOR508 (Digital Forensics and Threat Hunting) experienceHow to avoid burnout in InfoSecBuilding a SOC career: What do entry-level analysts really need to know?Work-life balance with kids and an ambitious security careerDefCon stories and the Octopus Games competitionResources & Links Mentioned:Live Overflow's Hextree.io learning platform: https://hextree.ioSANS FOR508 (GCFA): https://www.sans.org/cyber-security-courses/advanced-incident-response-threat-hunting-training/Marcus Hutchins (MalwareTech) on LinkedIn: https://www.linkedin.com/in/malwaretech/Graham Helton's Kubernetes security work: https://www.linkedin.com/in/grahamhelton3/Simply Defensive Podcast: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4Connect with JB:YouTube: @JBCulbertTwitter/X: @JBTweetsStuffTimestamps: 00:00 Introduction and Guest Welcome00:50 JB's Day-to-Day Role in Cybersecurity01:47 Past Experiences and Career Journey02:27 Challenges in Detection Engineering03:23 Kubernetes and Incident Investigation03:51 SANS Classes and CTF Experiences09:07 Remote vs In-Person Learning11:21 Future Plans and Learning Platforms14:13 Docker and Kubernetes in Labs16:11 The Reality of Cybersecurity Skills16:40 Defcon and Octopus Games22:04 Balancing Cybersecurity and Personal Life31:01 Advice for Aspiring Blue Teamers32:57 Final Thoughts and FarewellDon't forget to like, subscribe, and hit the bell icon for more blue team content!🔗 Follow the hosts:Josh Mason: https://www.linkedin.com/in/joshuacmason/Wade Wells: https://www.linkedin.com/in/wadingthrulogs/💡 Brought to you by ThreatLocker – Secure your business with zero trust application control.🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by @ThreatLocker - Free 30-day trial visit:https://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyber  https://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
In this episode of Simply Defensive, Josh Mason and Wade Wells sit down with Markus Schober, founder of Blue Cape Security, to talk all things digital forensics, incident response (DFIR), and why hands-on training beats theory every time.We dig into: 🔹 The hidden value of building your own cyber range 🔹 How IR pros train using real attacks (and why they need red team skills) 🔹 Eric Zimmerman's forensics tools and practical lab setups 🔹 Ransomware war stories from Fortune 100 response 🔹 The role (and limitations) of AI in forensics 🔹 How to break into DFIR as a practitioner — not just a paper tigerWhether you’re building detections, teaching DFIR, or just figuring out where to start, this one’s for you.👇 Timestamps https://www.bluecapesecurity.com/& Resources 0:00 Intro & ThreatLocker sponsorship 2:00 Markus' journey from responder to trainer 5:00 What makes a good DFIR workshop? 7:00 Building a cyber range that doesn’t suck 10:00 Favorite open-source tools (hint: Zimmerman) 14:00 Consulting vs. in-house IR 19:00 APT10, ransomware, and real-world incidents 24:00 Can AI replace forensic analysts? 27:00 Where to find Markus' courses 29:00 Parting wisdom for aspiring defenders📚 Check out Blue Cape Security:→ https://www.bluecapesecurity.com/ → Hands-on IR & Forensics Labs → Certification (coming soon!)🔗 Follow the hosts: Josh Mason: https://www.linkedin.com/in/joshuacmason/ Wade Wells: https://www.linkedin.com/in/wadingthrulogs/💡 Brought to you by ThreatLocker – Secure your business with zero trust application control.
From Army recon missions to building Morado, COO Jordan Kalm reveals how military intelligence tactics translate into modern cyber threat intelligence. In this Simply Defensive episode, Josh Mason and Wade Wells dive into what really works for blue teams and SOC analysts — and what’s just noise.👉 If you’ve ever wondered how to turn raw intel into actionable defense, this conversation is packed with practical takeaways you can use right away.⏱ Timestamps 0:00 – Intro & Jordan’s background 4:00 – From infantry recon to threat intel 12:00 – Building a threat intel platform that works 20:00 – What blue teams actually need 33:00 – Advice for new defenders🔗 Connect with Jordan & Morado Jordan Kalm: https://www.linkedin.com/in/jordan-kalm-2a562b5b/ Morado: https://www.morado.io/👥 Connect with us on LinkedIn:- Josh Mason (Co-Host): https://www.linkedin.com/in/joshuacmason- Wade Wells (Co-Host): https://www.linkedin.com/in/wadingthrulogs/- Kevin Mata (Guest): https://www.linkedin.com/in/kevinmata- Swimlane: https://www.linkedin.com/company/swimlane🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
From the streets to the SOC. 💻In this episode of Simply Defensive, Josh Mason and Wade Wells talk with Andrew Crotty — aka Ginger Hacker. A former detective turned Tier 3 SOC analyst and Army reservist, Andrew shares his journey into cyber, the struggles of breaking in, and the lessons he’s learned (including the rookie mistake that accidentally dosed the DMV 👀).What you’ll hear:🔹 Andrew’s pivot from law enforcement to cybersecurity🔹 SOC life, schedules, and fighting burnout🔹 Job hunting, recruiters, and landing that first role🔹 Why soft skills matter as much as technical skills🔹 Andrew’s advice for blue teamers: ask why, stay curious, fight alert fatigue📺 Check out Andrew’s channel, Ginger Hacker: https://www.youtube.com/@gingerhacker🎙️ More episodes of Simply Defensive: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4&si=TqefAfDjdR1AYt1c👥 Connect with Us on LinkedIn:- Josh Mason (Co-Host): https://www.linkedin.com/in/joshuacmason- Wade Wells (Co-Host): https://www.linkedin.com/in/wadingthrulogs/- Kevin Mata (Guest): https://www.linkedin.com/in/kevinmata- Swimlane: https://www.linkedin.com/company/swimlane🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
Automation is changing the way defenders work. In this episode of Simply Defensive, we sit down with Kevin Mata, Director of Cloud Operations at Swimlane, to talk about his journey from flipping burgers at In-N-Out to flipping SOC alerts with automation, SOAR, and AI.Kevin shares how he got started in cybersecurity, how Swimlane helps Blue Teams save time and reduce alert fatigue, and where AI is already making a difference in the SOC. Along the way, he and Wade swap stories about early career struggles, Python hacks, and the future of automation in security operations.If you’ve ever wondered how much you can trust automation, what SOAR really does in a SOC, or how AI will shape the future of defenders—this episode is for you.👉 What You’ll Learn in This Episode:- Kevin’s unique career journey: In-N-Out → SOC → Swimlane leadership- How to use automation to supercharge Blue Team efficiency- The role of SOAR platforms in ticketing, response, and orchestration- Where AI fits into SOC operations (and where it doesn’t…yet)- Tips for defenders at any stage of their career🔗 Links & References from the Episode:- Swimlane: https://swimlane.com- Recorded Future: https://www.recordedfuture.com- VirusTotal: https://www.virustotal.com- Mistral AI: https://mistral.ai👥 Connect with Us on LinkedIn:- Josh Mason (Co-Host): https://www.linkedin.com/in/joshuacmason- Wade Wells (Co-Host): https://www.linkedin.com/in/wadingthrulogs/- Kevin Mata (Guest): https://www.linkedin.com/in/kevinmata- Swimlane: https://www.linkedin.com/company/swimlane🎙️ More Simply Defensive- Full playlist: https://youtube.com/playlist?list=PL4Q-ttyNIRAr6DVrsASx1-Fv-TsooJ3M4- Spotify: https://open.spotify.com/show/72QTocT5FSTSPV7o1UcMS4- Apple Podcasts: https://podcasts.apple.com/il/podcast/simply-defensive/id1773806182👍 If you enjoyed this episode, don’t forget to like, subscribe, and share with your fellow defenders. Every week, Josh Mason and Wade Wells bring you practical, no-fluff conversations with cybersecurity leaders.=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
Ready to level up your defensive cybersecurity skills? In this episode of Simply Defensive, Josh Mason and Wade Wells sit down with Dan Regalado and Belem — the founders of Hack Defender Academy — to explore how they’re using CTF-style challenges, real malware cases, and gamification to prepare the next generation of defenders.💡 We cover:Why gamified, CTF-style learning works better than traditional trainingHow Hack Defender Academy helps beginners grow into skilled malware analystsThe role of AI in threat research — friend, foe, or both?The importance of staying hungry and keeping your edge as a blue teamer🚨 Special Gift for Our Listeners: Hack Defender Academy is giving away one free certification pass! Details in the episode.🔗 Links from the episodeHack Defender Academy 🌐 Website: academy.hack-defender.com ▶️ YouTube: Hack Defender Official 📱 TikTok: @HackDefOfficial 📸 Instagram: @HackDefOfficial 🐦 X (Twitter): @HackDefOfficial 💼 LinkedIn: Hack Defender 📘 Facebook: Hack DefenderConnect with our guests🔹 Dan Regalado – LinkedIn 🔹 Belem – LinkedInSimply Defensive Podcast🎧 Spotify: Simply Defensive 🎧 Apple: Simply DefensiveSponsor 💼 Thanks to ThreatLocker for supporting this episode.👍 If you enjoyed this conversation, hit Like, Subscribe, and ring the 🔔 so you don’t miss our weekly episodes! Drop a comment with the biggest challenge you’ve faced as a blue teamer — we’d love to hear your story.=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
In Season 4, Episode 4 of Simply Defensive, hosts Josh Mason and Wade Wells sit down with Rob Allen, Chief Product Officer at ThreatLocker, to dive deep into the world of Zero Trust security, proactive cybersecurity strategies, and ransomware prevention.Rob shares expert insights on:Proactive vs. Reactive cybersecurity — why a balanced security stack mattersHow Zero Trust infrastructure can stop cyber attacks before they startThreatLocker’s "Deny by Default" approach to endpoint and application controlThe importance of application definitions for effective securityWhy AI is not the silver bullet for cybersecurity defenseCommon security myths and misconceptions that put organizations at riskWhether you’re a SOC analyst, detection engineer, IT manager, or anyone interested in protecting against ransomware, this episode offers practical, real-world strategies for building a stronger cyber defense posture.Timestamps: 00:00 – Introduction and Host Greetings 00:23 – Guest Introduction: Rob Allen from ThreatLocker 00:44 – Rob Allen's Role and Responsibilities 02:30 – Proactive vs. Reactive Cybersecurity Approaches 03:54 – Challenges in Cybersecurity Detection 05:24 – ThreatLocker’s Deny by Default Approach 09:48 – The Importance of Application Definitions 16:52 – Security Myths and Misconceptions 18:53 – AI in Cybersecurity: Hype vs. Reality 23:32 – Travel Plans and Closing Remarks🔗 Connect with Rob Allen & ThreatLocker Website: https://www.threatlocker.com/ LinkedIn: https://www.linkedin.com/company/threatlocker/=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
What if GitHub sucks for security detections—and AI is finally good enough to replace it?Join Josh Mason and Wade Wells as they sit down with Aaron Mog, the outspoken founder of Detections.ai, to unpack why detection engineering is broken—and how his new platform signed up 4,000+ users in just two weeks.Aaron doesn’t hold back. From ranting about GitHub’s failures to sharing how AI is now actually useful for real-world detections, this episode goes deep into:Why most teams still build detections in silos (and waste time doing it)What makes detections fail—and what 80% of orgs get wrongHow Detections.ai uses prompt engineering and log analysis to generate battle-ready alertsWhy vendors will never cover all your detection needs (and that’s okay)Whether you're a threat hunter, detection engineer, or just AI-curious, this episode will challenge your assumptions and give you practical ideas to level up your SOC.Connect with Aaron on LinkedIn: https://www.linkedin.com/in/aaronmoghttps://detections.ai/ Code “SimplyCyber”👉 Subscribe for more real talk on cyber defense. 🎧 Listen in and get ahead of the curve.Chapters:00:00 Introduction and Guest Welcome00:31 Aaron Mog and Detections.ai Overview01:58 Community-Driven Detection Engineering04:24 AI Integration and Product Evolution06:20 Challenges in Detection Engineering08:11 AI's Role in Detection Engineering15:51 Vendor Limitations and Custom Solutions16:54 Microsoft's Limitations in Cybersecurity17:23 The Evolution of Threat Hunting18:07 Collaborative Approach to Cybersecurity20:07 Crowdsourcing and AI in Detection Engineering20:57 Challenges and Innovations in AI for Security21:37 AI's Role in Detection and Response23:25 Elastic's Blog and Detection Engineering24:29 AI in Summarizing and Enhancing Security Reports28:14 Community and Commercial Aspects of AI in Security32:18 Conclusion and Community Engagement=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLockerhttps://www.threatlocker.com/simplydefensive=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
How does a Navy fire control tech who once wrangled a six-barrel death robot become the head of security operations at Jack in the Box? In this episode of Simply Defensive, we sit down with Chris Julio — SOC Manager, veteran, and self-proclaimed lover of both metrics and munchie meals.Chris shares his journey from Windows NT and dot-matrix printers to modern InfoSec leadership, explains what he actually looks for when hiring blue teamers (hint: it's not your certs), and drops tactical insights on building a metrics program that actually matters to the business.We also talk about:The chaos theory of SOC alertsThe power of curiosity in detection workBuilding a team culture that beats burnoutWhy your legal team doesn’t care about phishing — and how to change thatOh, and there's a fast-food burger debate. No spoilers, but lines are drawn.Whether you're just getting started in security or leading your own team, this episode’s got something for you.Connect with Chris on LinkedIn:🔗 https://www.linkedin.com/in/christopherjulio/Chapters:00:00 Introduction and Guest Welcome00:43 Chris Julio's Navy Background04:27 Transition to Cybersecurity06:42 Hiring and Team Building Insights21:36 Balancing Work and Family Life25:53 Engaging with the InfoSec Community27:09 Final Thoughts and Advice for Blue Teamers28:16 Closing Remarks and Sponsor Acknowledgment=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLocker https://www.threatlocker.com/simplydefensive=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
SOC analysts, detection engineers, and pentesters—you’re not imagining it: software supply chain security is a dumpster fire 🔥. In this episode of Simply Defensive, we sit down with Kyle Kelly, engineering manager at GitHub and author of Crime Hacks, to unpack the chaos.We cover:- Why malicious packages are sneaking past defenders- The truth about SBOMs (and what most orgs are doing wrong)- How to spot typo-squatting and backdoored build scripts- What defenders can do—even if you're not building the code- Why “just NPM install” is more dangerous than you thinkFrom transitive dependencies to the hidden power of private package repositories, this episode is packed with practical insights, hilarious stories, and advice every blue teamer needs.Episode Links:🔗 Kyle’s blog: https://crimehacks.com 👨‍💻 Kyle on LinkedIn: https://www.linkedin.com/in/kyle-m-kelly 📰 Crime Hacks on LinkedIn: https://www.linkedin.com/company/crimehacks=========================Sponsored by ThreatLocker - Free 30-day trial of ThreatLocker https://www.threatlocker.com/simplydefensive=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
In the final episode of Season 3 on Simply Defensive, hosts Josh Mason and Wade Wells welcome John Liliston, the Product Director at ThreatLocker.John shares his journey into cybersecurity, his role at ThreatLocker, and his thoughts on the evolution of security solutions. He discusses ThreatLocker's approach to zero trust, the impact of AI on cybersecurity, and the unique integration of application control and threat detection in their offerings.The episode also covers John's experiences and insights from recent conferences like RSA and potential future advancements in the industry. Tune in for an in-depth discussion on defensive cybersecurity and innovative product design.Connect with John on LinkedIn: https://www.linkedin.com/in/john-lilliston-4725217b/00:00 Introduction to Simply Defensive00:31 Meet John Liliston: Threat Locker's Product Director02:35 John's Journey into Cybersecurity03:45 Transitioning to Product Design04:52 Balancing Roles at Threat Locker06:10 Emerging Threats and Product Development17:47 The Future of Security Solutions24:56 Concluding Thoughts and Upcoming Events=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
Join hosts Josh and Wade as they sit down with Charles (Chuck) Sapp, a seasoned cybersecurity expert and security awareness specialist. In this episode, Chuck shares his unique journey from serving in the Marine Corps to becoming an influencer in the cybersecurity community.Gain insights into his military background, his passion for educating others about cybersecurity, and engaging stories from his experiences. Chuck also previews his upcoming talk for BSides Tampa 2025, offering valuable advice on tailoring security training for diverse audiences.Don't miss this opportunity to tap into his innovative approach to cybersecurity awareness!Connect with Chuck on LinkedIn: https://www.linkedin.com/in/chucksapp/Check out the article discussed: https://www.staysafeonline.org/articles/ai-fools-stay-sharp00:00 Introduction and Guest Welcome01:18 Chuck's Background and Military Experience03:54 Transition to Cybersecurity06:29 Hackspace Con Story10:35 Upcoming Talk and Security Awareness15:15 Challenges in Security Awareness20:38 Storytelling in Cybersecurity21:56 Real-Life Examples of Scams23:30 Phishing Tests and Awareness31:03 Creative Security Solutions32:03 Leveraging Security Behavior Databases35:23 Meeting Industry Leaders37:53 Final Thoughts and Recommendations=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
Welcome to another episode of Simply Defensive! In this installment, hosts Josh Mason and Wade Wells are joined by cybersecurity expert James Bierly.James shares his unique journey from a submarine sonar technician in the Navy to founding his own security firm, Secure Point Solutions, which specializes in helping small businesses tackle cybersecurity threats. They discuss the vital steps and strategies for implementing robust security measures in small companies, the importance of patch management, and how to protect sensitive information.Additionally, James delves into his experiences as a foster parent, offering insights into the foster care system and the impactful ways you can contribute. Stay tuned for valuable tips on safeguarding your business and heartwarming stories from the world of foster care.Episode Links:Connect with James on LI: https://www.linkedin.com/in/jbierly/Secure Point Solutions: https://www.secureps.net/NFPA: https://nfpaonline.org/00:00 Introduction and Guest Welcome00:22 James Bierly's Journey from Submarines to Cybersecurity02:54 Transition to IT and Cybersecurity07:28 Challenges and Rewards of Small Business Cybersecurity12:29 Starting a Cybersecurity Business20:11 Key Security Practices for Small Businesses22:42 Challenges in School Cybersecurity25:29 Starting a Cybersecurity Consulting Business26:14 Engaging with Local Businesses28:42 Building a Network Through Referrals32:54 Becoming a Foster Parent43:48 Advice for Blue Teamers=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
Join hosts Josh Mason and Wade Wells as they sit down with David French for an insightful episode of Simply Defensive.Discover David's journey from coding CCTV systems to becoming a staff security engineer at Google Cloud. Explore their discussion on detection as code, automation, detection testing, and relevant tools like Dorothy and Atomic Red Team.Learn why coding skills are crucial for modern cybersecurity professionals, and get tips on leveraging AI in the field.Whether you're a beginner or an experienced blue teamer, this episode is packed with valuable insights and actionable advice.LinkedIn - https://www.linkedin.com/in/davidfrench001/Google Cloud Security community - https://www.googlecloudcommunity.com/gc/Google-Cloud-Security/ct-p/googlecloud-securityMedium - https://medium.com/@threatpunterGitHub - https://github.com/threat-punter00:00 Introduction and Casual Banter00:21 Guest Introduction: David French01:11 David's Background and Career Journey02:40 Detection Engineering and Origin Stories04:18 Current Role and Responsibilities05:05 Getting into Cybersecurity08:30 Detection as Code: Concepts and Practices12:34 Testing Detections: Challenges and Strategies16:51 Tools and Techniques for Detection Testing19:25 Open Source Tools and Community Contributions23:23 AI in Detection Engineering26:32 Exploring AI Tools for Coding and Presentations27:50 Deep Research and Its Impact28:52 Journey into Public Speaking40:00 Community Engagement and Networking40:29 Upcoming Conference and Final Thoughts43:45 The Importance of Coding for Security Professionals=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
Josh Mason and Wade Wells bring us an exciting episode of Simply Defensive, featuring special guest Eddie Miro. Eddie shares his journey in cybersecurity, offering insights into his experiences at DEFCON, the creation of Octopus Game, and his mission to make cybersecurity more inclusive.Join us as we delve into the benefits of Capture the Flag (CTF) competitions and how they can help new entrants feel comfortable and connected in the cybersecurity community. Learn about the importance of diversity in cybersecurity, tips for getting started with CTFs, different types of CTFs, and how networking can make a significant impact on your career.Don't miss out on this engaging conversation packed with practical advice and inspiration for both beginners and seasoned cybersecurity professionals.Episode Links: https://www.linkedin.com/in/theedmiroshow/https://nationalcyberleague.org/https://cyberskyline.com/https://linktr.ee/octopusgame00:00 Welcome and Introductions00:32 Reconnecting with Old Friends01:27 Octopus Game at DEFCON02:58 The Importance of Diversity in Cybersecurity06:48 Challenges of Blue Team CTFs10:10 National Cyber League and CTF Benefits15:16 Networking and Job Hunting in Cybersecurity18:05 Reflecting on Career Transitions18:29 Jimmy's Journey and Networking20:03 The Value of CTFs21:29 Getting Started with CTFs25:28 Different Styles of CTFs28:21 The Role of Programming in Cybersecurity30:49 Using AI in Cybersecurity32:55 Final Thoughts and Advice=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
In this episode of Simply Defensive, hosts Josh Mason and Wade Wells welcome Mitch Cohen, privacy and OPSEC expert from flare.io.Mitch shares his journey to becoming a 'digital ghost' and offers valuable insights into operational security (OPSEC) and privacy practices. He discusses the importance of securing personal information, the risks associated with poor OPSEC, and provides actionable steps for improving digital privacy.Josh, Wade, and Mitch explore real-world examples, the ethical implications of privacy, and how to strike a balance between convenience and security.An excellent resource for cybersecurity professionals and anyone interested in protecting their digital footprint.Learn more in the flare.io Discord00:00 Introduction to Simply Defensive00:27 Meet Mitch Cohen: Privacy and OPSEC Expert01:29 The Importance of OPSEC04:13 Defining OPSEC and Its Relevance07:07 Real-World OPSEC Challenges08:23 Balancing Public Presence and Privacy12:44 Threat Models and OPSEC Strategies18:07 Practical OPSEC Tips and Personal Stories20:53 Rolling Back Your Public Profile21:48 Digital Spring Cleaning: Deleting Old Posts23:03 The Art of Misinformation: Poisoning the Well24:51 Changing Your Appearance for OPSEC27:38 Resources for Learning OPSEC31:23 The Importance of Privacy as a Human Right36:41 Convenience vs. Security: The Trade-offs40:01 Final Thoughts and Advice for Blue Teamers =========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
Navigating the Cybersecurity Landscape with Edna Johnson: From Developer to Threat HunterJoin hosts Josh Mason and Wade Wells as they welcome Edna Johnson, a vibrant and passionate cybersecurity engineer, to Simply Defensive. Edna shares her journey from initially wanting to be a developer to diving deep into the world of cybersecurity, attending and volunteering at major conferences such as Defcon and BSides.She discusses her role in various cybersecurity groups, her imposter syndrome battles, and the importance of volunteering and community engagement in this field. Listen in for valuable insights on threat hunting, content creation, and the significance of understanding basic processes in blue teaming. Don't miss this fantastic episode filled with real-world advice and behind-the-scenes stories from Edna's inspiring career!Connect with Edna:https://www.linkedin.com/in/ednajonsson/https://www.buzzsprout.com/1749189 https://deathcon.io/00:00 Introduction and Guest Welcome00:36 Edna Johnson's Background and Achievements01:53 Challenges and Successes in CTFs03:41 Journey into Cybersecurity05:12 Teaching Cybersecurity and Overcoming Imposter Syndrome08:52 Involvement with BSides and Networking During the Pandemic10:39 Current Projects and Content Development11:49 Exploring AI-Generated Honeypots14:06 Passion for Threat Hunting and Script Writing14:58 Involvement with Death Con17:01 Exploring the Unique Aspects of Death Con17:35 The Value of Networking and Friendships18:17 Extended Access to Labs and Workshops19:21 Organizing Death Con San Diego20:59 The Benefits of Volunteering in Cybersecurity24:40 Joining and Growing DEF CON Groups30:34 Final Thoughts and Advice for Blue Teamers=========================Connect with your hosts:Josh Mason: https://www.linkedin.com/in/joshuacmasonWade Wells: https://www.linkedin.com/in/wadingthrulogs=========================Sponsored by ThreatLocker @ThreatLockerAllow what you need, block everything else... Including ransomware. Zero trust Endpoint Protection Platform from ThreatLocker. Learn more at https://simplycyber.io/threatlocker=========================Simply Cyber empowers people who want a rewarding cybersecurity career 💪=========================All the ways to connect with Simply Cyberhttps://SimplyCyber.io/Socials=========================This podcast is presented by Simply Cyber Media Group
loading
Comments 
loading