Security for your ears: recommended infosec podcasts

Posted by   Martijn Grooten on   Feb 14, 2017

"Don't waste your commute listening to pop music. Listen to infosec lectures and podcasts." Industry veteran Mikko Hyppönen recently shared some useful advice for those wanting to start a career in cybersecurity.

I fully agree with Mikko. In fact, I think this advice should be extended to anyone already working in cybersecurity – listening to podcasts is a good way to keep up with the constant changes in the world of security. Though I am not blessed with a daily commute, I still manage to find a lot of time to listen to podcasts, among them quite a few on security.

Here are some of my favourites.

  • If you really only have time for one short podcast a day, let it be SANS ISC's Stormcast. Presented by SANS Dean of Research Johannes Ullrich, the Daily Stormcast provides an excellent 5-minute summary of what matters in the world of security. Johannes has a very good understanding of security issues and is thus able to distinguish FUD from those threats and vulnerabilities that really matter. For this reason the podcast is very useful for those directly tasked with protecting systems and networks.

  • Almost ten years old, the weekly Risky Business podcast has long been an important fixture in the security landscape. The show is well produced and its guests often have insightful things to say, even when they are sponsored guests: host Patrick Gray never forgets that he is a journalist. It is an essential listen, both for those who want a weekly summary of security news and for those who are interested in the changes in the threat landscape and our efforts to fight those threats.

stormcastriskybusiness.jpg

  • Cyberwire is another daily security news podcast. Though not shy to mention its sponsors, the show does manage to provide a good and concise summary of what's been going on in the world of security. It too tends to avoid FUD in favour of facts and nuances.

  • The three presenters of the brand new Smashing Security are all past VB authors and speakers, thus I was excited to learn about their new adventure in podcast land. Though aimed at an audience whose understanding of security is slightly below that which I claim to possess, the podcast is presented with a good sense of humour, which has already made it one of my favourite security shows.

  • If you like interviews with security experts (or "gurus", as the show calls them), make sure you add the monthly Silver Bullet to your podcast feed. Gary McGraw, Vice President at Synopsys, tends to find interesting guests who talk about their work in and views on security. Past guests have included VB keynote speakers Ross Anderson (who was interviewed twice), Katie Moussouris, and the aforementioned Mikko Hyppönen.

Of course there are many more excellent podcasts. Most weeks, the Threatpost team look back at the stories they published that week, as well as fitting in the odd interview. Sophos researchers Chet Wisniewski and Paul Ducklin look at what was published on the Naked Security blog in their podcast. And if you'd like to hear Bruce Schneier's popular monthly Cryptogram newsletter in audio format, there is a podcast for that too.

Happy listening!

 

 

twitter.png
fb.png
linkedin.png
googleplus.png
reddit.png

 

Latest posts:

Standalone product test: FireEye Endpoint

Virus Bulletin ran a standalone test on FireEye's Endpoint Security solution.

VB2017 video: Consequences of bad security in health care

Jelena Milosevic, a nurse with a passion for IT security, is uniquely placed to witness poor security practices in the health care sector, and to fully understand the consequences. Today, we publish the recording of a presentation given by Jelena at…

Vulnerabilities play only a tiny role in the security risks that come with mobile phones

Both bad news (all devices were pwnd) and good news (pwning is increasingly difficult) came from the most recent mobile Pwn2Own competition. But the practical security risks that come with using mobile phones have little to do with vulnerabilities.

VB2017 paper: The (testing) world turned upside down

At VB2017 in Madrid, industry veteran and ESET Senior Research Fellow David Harley presented a paper on the state of security software testing. Today we publish David's paper in both HTML and PDF format.

VB2017 video: Turning Trickbot: decoding an encrypted command-and-control channel

Trickbot, a banking trojan which appeared this year, seems to be a new, more modular, and more extensible malware descendant of the notorious Dyre botnet trojan. At VB2017, Symantec researcher Andrew Brandt presented a walkthrough of a typical…