CISSP Cyber Training Podcast - CISSP Training Program
CISSP Cyber Training Podcast - CISSP Training Program
Shon Gerber, vCISO, CISSP, Cybersecurity Consultant and Entrepreneur
CCT 370: CISSP Cryptography, FIPS Validation, and Post-Quantum (Domain 3)
38 minutes Posted Sep 14, 2026 at 11:00 am.
Welcome And Domain 3 Focus
The Sticker Analogy For Compliance
What A Cryptographic Module Is
FIPS Mode Versus FIPS Validation
Historical Status And 500 Day Queues
Harvest Now Decrypt Later Explained
Study Programs And Resources Plug
Cryptography As A Managed Life Cycle
FIPS 140-3 Changes Worth Knowing
Key Management Where Crypto Fails
PKI Trust Expiration And Revocation
Cryptanalysis Categories And Assumptions
Quantum Risk And What Breaks
NIST Post Quantum Standards And Dates
Inventory First Then Migrate
CISSP Question Traps And Manager Moves
Closing And How To Support
0:00
38:32
Download MP3
Show notes
Send us Fan Mail A compliance deadline can change your security posture without changing a single bit of your encryption. We start with a simple sticker-on-the-windshield analogy that maps directly to what’s happening with FIPS 140 validations: your VPN can keep encrypting, your database can keep protecting data, and yet an assessor can still mark you down because “working” is not the same as “validated.” We walk through the practical CISSP Domain 3 lesson behind the noise: the difference be...