The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
Index/Engineering & DevTools/Secure AF
Secure AF artwork

The SOC Brief Turns One 🎂 Insights, Stories & Lessons Learned

Secure AF · 2026-06-10 · 14 min

0:00--:--

Key moments - from our scoring

Substance score

21 / 100

Five dimensions, 20 points each

Insight Density4 / 20
Originality3 / 20
Guest Caliber5 / 20
Specificity & Evidence3 / 20
Conversational Craft6 / 20

The SOC Brief marks its first anniversary with a retrospective interview between host Andrew and producer Sam. The podcast was created to fill a gap in short-form cybersecurity content - existing shows tend to be hours long, making them difficult to consume for busy professionals. The target audience is primarily SOC analysts, blue team members, and anyone on the defensive side who needs to stay current with evolving threat actors, attack vectors, and emerging vulnerabilities. Andrew highlights that the biggest challenge in producing weekly episodes is finding consistently valuable, actionable content beyond major zero-day announcements. He emphasizes communication as critical advice for SOC teams, noting that many organizations fail to share findings across teams or report security posture improvements to leadership - a missed opportunity for proving organizational value. Favorite episodes include conversations with Kemet on CISO perspectives and coverage of nation-state activity (US-Venezuela, US-Iran) because threat motivation shifts from financial gain to disruption, fundamentally changing defensive strategies. The show's core value proposition is delivering tangible, actionable insights in bite-sized weekly segments that listeners can immediately apply in their own environments.

Key takeaways

  • →Short-form cybersecurity podcasts addressing actionable threats and IOCs filled a gap that hour-long shows couldn't - busy professionals need information they can consume in 15 minutes on commute or break time.
  • →The most impactful feedback comes from conference encounters where strangers recognize the brand and report using episode insights and recommendations directly in their security operations.
  • →SOC communication breakdowns - both within teams and upward to C-suite leadership - represent a critical vulnerability; sharing findings, generating reports, and sitting in leadership meetings directly improves security posture and career trajectory.
  • →Nation-state threat actors motivated by disruption rather than financial gain operate with fundamentally different tactics and escalation patterns than financially-motivated cybercriminals, requiring distinct defensive strategies.
  • →Building value as a SOC analyst comes from consistently documenting, reporting, and communicating security improvements to leadership, not just detecting and remediating threats internally.

Guests

Sam (producer)Kemet (CISO perspective contributor)

Topics in this episode

Zero-Day VulnerabilitiesSOC Brief podcastSOC analystsblue teamthreat actorsAPT activityIOCs (Indicators of Compromise)nation-state threatsUS-Venezuela cyber operationsUS-Iran cyber operations

Questions this episode answers

Why was the SOC Brief podcast created?

Andrew created the SOC Brief to fill a gap in short-form cybersecurity podcasts. Most existing cybersecurity podcasts are hours long, making them difficult for busy professionals to consume. The goal was to deliver bite-sized, tangible, actionable information that listeners could digest during a commute or 15-minute break.

Who is the ideal listener for the SOC Brief?

The primary audience is SOC analysts, blue team members, and anyone on the defensive side of cybersecurity who needs to stay current with evolving threat actors, attack vectors, and emerging attack techniques. The show also serves students and early-career cybersecurity professionals learning the field.

What is the biggest challenge in producing the SOC Brief weekly?

Finding consistently valuable, actionable content beyond major zero-day or critical vulnerability announcements. Andrew must actively track APT activity, threat actor tactics, new toolsets, and IOCs to identify stories that deliver tangible value to listeners - not just interesting cybersecurity news.

What advice does Andrew give to SOC analysts already working in the field?

Improve communication both within and outside the SOC team. Share findings about new zero-days, attack techniques, and phishing campaigns. Document and report security improvements to leadership and C-suite through formal reports and meeting attendance - this proves organizational value and career worth.

How do nation-state threat actors differ from financially-motivated cyber criminals?

Nation-state actors motivated by disruption operate with no constraints or negotiation room, unlike financially-motivated cybercriminals who use ransomware or extortion. Disruption-focused attackers will shut down systems without consideration for ransom, fundamentally changing defensive priorities.

What our scoring noted

Our reviewer’s read on each dimension, with quotes from the episode.

Insight Density

4 / 20

This is a meta-commentary episode about the podcast itself rather than substantive cybersecurity content. While the host mentions communication importance and SOC best practices in passing, there are no novel insights, concrete methodologies, specific threat intelligence, or actionable technical guidance. The episode consists primarily of softball self-reflection and audience appreciation rather than densely-packed, learnable information.

I think a lot of it came down to um there weren't a lot of short form podcasts out there discussing cybersecurity news
the lack of communication, especially outside of the SOC itself, is astounding sometimes

Originality

3 / 20

The episode recycles well-worn platitudes about the podcast format, communication importance, and staying curious. There are no contrarian takes, first-principles arguments, or fresh perspectives on cybersecurity challenges. The advice to 'be hungry' and 'build a home lab' are standard entry-level guidance, and the framing of SOC challenges as communication issues, while valid, is unsurprising and broadly known.

be hungry, get out there and look for information, try to better yourself wherever you can
There's all kinds of tools that you can utilize out there. Um maybe build your own home lab, set up a honeypot

Guest Caliber

5 / 20

The episode features only the host Andrew and producer Sam, neither of whom are introduced with relevant credentials or seniority. While Andrew appears to be a SOC operator, there is no evidence of scale of operations, past leadership roles, or domain authority. A brief mention of 'Kemet' from a previous episode doesn't compensate - this anniversary episode lacks a substantive practitioner guest or senior operator to anchor credibility.

I'm your host, Andrew
my colleague and our show's producer is joining me

Specificity & Evidence

3 / 20

The episode contains almost no concrete data, named examples, metrics, or specific evidence. The host alludes vaguely to threat actors, APTs, zero-days, phishing campaigns, and the 'US Venezuela' and 'US Iran' incidents without naming them, providing details, or citing numbers. There are no statistics, dollar figures, timelines, or verifiable references that would allow a listener to learn or act on specific information.

when the US Venezuela stuff was going on, and currently we have like the US Iran stuff
you know, what APTs are out there, what certain threat actors are doing, you know, what new tool sets are being utilized

Conversational Craft

6 / 20

Sam's questions are generic and softball, mostly inviting Andrew to explain the podcast concept and reflect on its success rather than probing deeper or challenging claims. There are few follow-ups that push for specifics, no disagreement or productive tension, and no attempts to uncover nuance. The conversation feels like a scripted celebration rather than an inquiry designed to extract learning or test ideas.

who did you picture as your like ideal listener when you first started
what has been your favorite episode or topic you've covered within this last year

Conversation analysis

Computed from the transcript - who did the talking, and the words that came up most.

Most-used words

sock12episode11brief11cybersecurity11information10anyone6short5listen5side5attack5keep5advice5podcast4questions4listeners4start4

Episode notes

Got a question or comment? Message us here! It’s our 1-year anniversary! From bite-sized cyber insights to growing a passionate listener base, this episode reflects on the journey, the challenges, and the wins along the way. Expect laughs, lessons, and behind-the-scenes stories you won’t want to miss. Support the show Watch full episodes at youtube.com/@aliascybersecurity. Listen on Apple Podcasts, Spotify and anywhere you get your podcasts.

Full transcript

14 min

Transcribed and scored by The B2B Podcast Index.

Good morning, good afternoon, or good evening, whenever you may be, and welcome to a special one-year anniversary episode of the Sock Brief. This is still your go-to podcast for staying ahead of the ever-evolving world of cybersecurity threats. I'm your host, Andrew, and today we're going to do something a little bit different. Instead of me walking through the latest threats, hacks, or cybersecurity news, my colleague and our show's producer is joining me to turn the tables and ask me some questions about the podcast itself.

Hi, Sam. How are you? Hi, good. How are you?

Thanks for letting me sit in in this host seat for a little bit. No, awesome. I appreciate you joining me. This is awesome.

I also want to say a special hello to all the sock brief listeners out there. Shout out. Hi. So let's, I guess, jump right in.

My first question I got for you is why did you decide to start the sock brief a year ago? Uh, why did we start the sock brief? I think a lot of it came down to um there weren't a lot of short form podcasts out there discussing cybersecurity news. There are a lot of great podcasts out there talking about cybersecurity events, you know, hacks that are happening, vulnerabilities, cool things going on in cybersecurity, but a lot of them are hours long.

Um, and you know, not a lot of people have time to sit and listen to that all in one go, or maybe you're just invested in something else, or you start listening and then you stop because you had to take a break. And so our main, you know, idea with starting the sock brief was trying to get some bite-sized, tangible, usable information out that people like you could listen to on the way to work, you know. 100%. I think you really um hit the nail on the hammer, hammer on the nail, thing.

Yes, yeah, something like that. Um, I really do imagine some people, you know, just taking their a walk or their 15-minute break and just being able to tap in and it's just quick, easy, keeps you up to date without doing too much. Not saying, you know, sometimes these hour-long ones, you never know what's going on. Yeah.

Um it gives you just more flexibility. Yeah, flexibility, versions, if you will. Um, and speaking of, you know, these types of listeners, who did you picture as your like ideal listener when you first started? And how do you think that audience has like changed over time?

For sure. I think the like the main target audience, I guess, really is anyone interested in cybersecurity. Um, just to kind of understand the ins and outs or kind of things that we look for or new stories that we're paying attention to, but mainly socks themselves, like anyone in a sock, anyone blue team, uh anyone on the defensive side, like um, you know, our world, this job is constantly changing. There's new attacks, there's new attack vectors, there are new, there's new methods, there's new attackers daily.

Yeah. Um, and and you know, groups that that are around for a long time today may just be completely gone tomorrow. And the same with their attack techniques. So um one of the things, you know, we wanted to make sure we were doing is um getting information to people that could use it or would want to use it and learn from it.

100%. So again, on this path of listeners and kind of target audience, what has been the most surprising feedback or really any feedback or reactions that you've received from the audience? Uh honestly, uh some of the most surprising is going to, you know, cybersecurity conferences just around the country, uh, and just having people recognize the sock brief, like, oh, you know, hey, I listened to that. Um, and just input or, you know, um just people telling us that they they love it, like they enjoy uh the the information that they get from it, that it adds value, and that they can take these little like snippets and go, hey, I didn't know that was actually going on.

Yeah. And any recommendation that I might have, you know, during the podcast, they might be able to take something out of that and utilize that in their own environment. And so that's been pretty cool. Uh it was actually really surprising the first time that someone was like, Oh, hey, the sock brief.

And I was like, Oh. Okay. Yeah. Yeah, it's pretty cool.

Yeah, that's awesome. I really do love how you kind of input um key takeaways or maybe something to work on for that week, kind of towards the end of each episode, because I think it helps put put it into perspective or help practice it for maybe those who um are in the field who or even I mean, I listen to it obviously. And um just kind of gives me a good base understanding coming from, you know, not a cybersecurity background. So Right.

And and I think that's like the learning aspect of it as well, is you can listen to a story or read an article that tell you, hey, this crazy new terrifying attack is happening. Yeah. But what do you do about it? You know, and like how many people writing these clickbait articles or whatever, like, you know, are giving you something tangible, like, hey, yeah, this is happening, but you can do something about it.

Yeah, exactly. I think it's a good um you intertwine it all really well. I try. Yes.

You do that. Um, so kind of pivoting a little bit, I do want to ask you about one of your biggest challenges that you've faced so far, kind of just producing a weekly, this weekly, you know, snippet each week. Honestly, for me, it's it's keeping within topics or or subject matter that I think people can actually get value from. Um you know, if there's some really interesting or critical vulnerability that's popped up, some new zero day, you know, that's an easy episode.

Um, but that's not always the case. And, you know, trying to find, you know, or paying attention to recent cybersecurity events, like, you know, what APTs are out there, what certain threat actors are doing, you know, what new tool sets are being utilized. Um, if if you're not out there looking for that information itself, um, you know, you may not know, like, oh, hey, there's this side load DLL that doesn't look too terribly malicious, what's going on here? While if you're actually looking at stuff and you're looking at these IOCs and and you know, all this recent activity, you might be able to go, oh, hey, you know, I recognize that from something I read or something I listened to.

Yeah. And so trying to keep each episode with that tangible like value add is probably the the the biggest challenge there. Yeah, a hundred percent. Well, I guess speaking of episodes in general, what has been your favorite episode or topic you've covered within this last year?

The favorite episode or topic. I don't know. Um probably the I hate saying this because I don't uh uh the maybe not uh the most popular one, but uh I really enjoy having conversations with Kemet. Yeah.

Uh so bringing him in for like the CISO perspective on thing, um, on things, sorry, um is is great. Uh the the guy's just such a wealth of knowledge. And um like if you haven't seen a uh Kemet presentation uh or sat in on a Kemet tabletop, like getting, you know, 15, 10 or 15 minutes of time out of him is just like it's like oh, there's like value add in every single thing he's saying. Um and so from a sock perspective, you know, I I lean on him heavily for things.

Uh just kind of getting to share that wealth of information he he has in this short bite side seg segment. It was just fun. It's like how much, how much information can we cram into this short amount of time? That's probably my my favorite one.

Um, I also kind of enjoy um discussing the um the nation state ones, like when the US Venezuela stuff was going on, and currently we have like the US Iran stuff, uh, just because it it gets into kind of like the espionage side of things and it really shifts the focus from what we see a majority of the time from these threat actors who are you know motivated by money and financial gains to uh they just want to disrupt. And so that changes things drastically, surprisingly. Like when your motivation is just to disrupt, you know, there's a no-hole bar.

You know, there's no, there's no like, you know, hey, we're just gonna ransom you we want money. It's it's uh, we just want to shut you down. So it gets interesting. Uh, but those are those are pretty fun.

I enjoy those. That's awesome. Um, so I guess kind of these last couple of questions kind of lean more into the advice um aspect of the show. So what's one piece of advice you would give to SOC analysts or cybersecurity, maybe students or early on learners who listen to the show?

One piece of advice, man. That I mean, I think uh the advice would be different for maybe each one of those uh groups. Uh for someone who's maybe a student or learning, um I I would just say be hungry, get out there and look for information, try to better yourself wherever you can. There's all kinds of tools that you can utilize out there.

Um maybe build your own home lab, set up a honeypot, you know, things like that that that can help you kind of understand how those attacks work and how they unfold. The other side of it, um, for like SOCS, like if you're if you're already in this field and you're working with the team, um, communication, I like as silly as it may sound, I you know, I'm not talking about like go work with a red teamer or go learn how this you know attack operates. But I I just from personal experience working with other SOC teams, uh, the lack of communication, especially outside of the SOC itself, is astounding sometimes.

Um, and it's something that I harp on almost every episode. Uh, I know I brought it up a majority of the episodes, but sharing your findings or sharing um information about new zero days or attack techniques or phishing campaigns is so critical to an organization's security posture. Um, I mean, it's like, you know, there's some crazy disease out there and you found a cure to it and you're not telling anyone about it. Right.

You know, like I guess maybe that's not a great analogy, but um being able to share information on like, especially within the SOC team itself, like, hey guys, be aware, check out these IOCs that you know that are out there. How do we adjust our existing tools to keep an eye out for this stuff? And a lot of times we just find that like people will just get that information and make a change, but they're not telling anyone about it, or they don't let, especially C-suite people who they think like, well, they don't care about this.

Like, if you want a great way to like get a raise or prove prove your worth, start generating reports about what's happening. Send those to your C-suite people, sit in on those meetings. Um, that that probably my biggest piece of advice there. Nice.

Yeah, no, I can 100% agree with that. Um sorry, let me go through here. I guess I'll ask you one last question. Um, so if again, it's another big one.

So uh I'll give you this. But if somebody has never listened to the sock brief before, how would you describe the sock brief in a sentence? I would just describe it as a daily uh well, maybe not daily. Let's take it back.

I would describe it as a weekly bite-sized cybersecurity news and strategy podcast. I think that's I don't know how accurate that is. But I think that's short and sweet. One sentence, yeah.

Yeah. Nice. Well, thank you so much for letting me, you know, kind of poke and prod and ask some of these some of these questions. I think one year is really cool, really impressive.

I love the the bite-sized um aspect of it. So I'm excited to continue to see where it goes than this next year. For sure. And Sam, thank you so much for joining me on our anniversary episode here and for all the great questions.

Uh, it really has been a great year uh for building the SOC Brief, and I appreciate everything that you've done to help uh make that a reality. Um, and I'm kind of really proud of what we've done together on this. So to our listeners, uh, thank you for being here every week. Uh your time and attention mean a lot to us, and we'll keep doing our best to deliver the short practical episodes that help you do your job and uh stay ahead of any kind of threat that's out there.

Uh so this week, if you've been meaning to share an episode with a colleague or a friend, now's the perfect time. And if you have any feedback or ideas for the next year, hit us up on social media. And that's a wrap for this episode of the Sock Brief. Uh, keep your eyes open, keep sharpening those skills, and uh we'll be back next week with a brand new episode.

As always, stay secure out there. Bye. Thank you. Bye.

Related episodes across the Index

Other episodes covering the same guests and topics, from across The B2B Podcast Index.

  • Weathering the AI Vulnerability Storm with Gadi Evron, Rob Lee and Ed SkoudisCyber Leaders · on Zero-Day Vulnerabilities89 / 100
  • Stop 90% of Ransomware Attacks with Basic Cyber HygieneThe Backup Wrap-Up · on Zero-Day Vulnerabilities82 / 100
  • Future-proofing and StorytellingCyber Security Business · on Zero-Day Vulnerabilities80 / 100
  • AI's Double-Edged Sword: Risks, Rewards and Race Dynamics in Cybersecurity with Dr. Joanna SantosParadigm Shock · on Zero-Day Vulnerabilities69 / 100
  • Hacking Culture, Community, and Curiosity: Evolving Security Research in a Modern WorldIoT Security Podcast · on Zero-Day Vulnerabilities67 / 100
  • Tony Sager: The Case for Cyber Hygiene FirstAfternoon Cyber Tea with Ann Johnson · on Zero-Day Vulnerabilities65 / 100

More from Secure AF

All episodes →
  • FortiBleed Attacks: Turning Fortinet Firewalls into Credential Stealers34 / 100
  • You're Probably Not Hacked, You're Being Tracked86 / 100
  • Incident Response 101: What to Do When You’re Under Attack66 / 100
  • Canvas Breach Breakdown: What 9,000+ Outages Teach Us About SaaS Risk85 / 100
  • Arch Linux AUR Compromise - Supply Chain Risks in the Open Source World
Explore the best B2B Engineering & DevTools podcasts →
All Secure AF episodes →