EP. 06 Advisory & GRC

First steps in cybersecurity strategy

49 min ·Published 18 July 2025

Episode 6 cover art 49 min

About this episode

This episode is a practical overview of building a robust security policy from the ground up. We start with what a usable threat model looks like, factoring in the modern impact of AI, then show how to identify your most critical infrastructure.

You will learn how different environments and asset types - from exposed to isolated - affect your posture, and the tactical importance of managing API access, maintaining SSL certificates, and understanding the real risks of information leaked on the Darknet.

Episode chapters

  1. 00:00
    Introduction
  2. 00:30
    Where to start with your security policy
  3. 01:40
    Step 1: establish your threat model
  4. 05:10
    The impact of AI on your threat model
  5. 07:15
    Defining the most critical part of your infrastructure
  6. 10:00
    How different infrastructure affects threat modelling
  7. 16:30
    Exposed vs isolated assets
  8. 23:30
    The importance of API access and documentation
  9. 27:50
    SSL certification
  10. 34:25
    Information leaked on the Darknet

Topics covered

  • #SecurityStrategy
  • #ThreatModeling
  • #AttackSurface
  • #APISecurity
  • #Darknet
Copy / Ask AI