Federal Cloud Computing: The Definitive Guide for Cloud Service Providers
Autor Matthew Methenyen Limba Engleză Paperback – 19 ian 2017
You will learn the basics of the NIST risk management framework (RMF) with a specific focus on cloud computing environments, all aspects of the Federal Risk and Authorization Management Program (FedRAMP) process, and steps for cost-effectively implementing the Assessment and Authorization (A&A) process, as well as strategies for implementing Continuous Monitoring, enabling the Cloud Service Provider to address the FedRAMP requirement on an ongoing basis.
This updated edition will cover the latest changes to FedRAMP program, including clarifying guidance on the paths for Cloud Service Providers to achieve FedRAMP compliance, an expanded discussion of the new FedRAMP Security Control, which is based on the NIST SP 800-53 Revision 4, and maintaining FedRAMP compliance through Continuous Monitoring. Further, a new chapter has been added on the FedRAMP requirements for Vulnerability Scanning and Penetration Testing.
- Provides a common understanding of the federal requirements as they apply to cloud computing
- Offers a targeted and cost-effective approach for applying the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF)
- Features both technical and non-technical perspectives of the Federal Assessment and Authorization (A&A) process that speaks across the organization
Preț: 477.18 lei
Preț vechi: 596.47 lei
-20% Nou
Puncte Express: 716
Preț estimativ în valută:
91.32€ • 94.86$ • 75.86£
91.32€ • 94.86$ • 75.86£
Carte tipărită la comandă
Livrare economică 03-17 februarie 25
Preluare comenzi: 021 569.72.76
Specificații
ISBN-13: 9780128097106
ISBN-10: 0128097108
Pagini: 536
Dimensiuni: 191 x 235 x 32 mm
Greutate: 1.11 kg
Ediția:2
Editura: ELSEVIER SCIENCE
ISBN-10: 0128097108
Pagini: 536
Dimensiuni: 191 x 235 x 32 mm
Greutate: 1.11 kg
Ediția:2
Editura: ELSEVIER SCIENCE
Public țintă
Information security professionals and consultants, system administrators, IT administrators and managers focused on information security, as well as security auditors, security engineers, virtualization specialists, software developers, and compliance specialists.Cuprins
1. Introduction to the federal cloud computing strategy 2. Cloud computing standards 3. A case for open source 4. Security and privacy in public cloud computing 5. Applying the NIST risk management framework 6. Risk management 7. Comparison of federal and international security certification standards 8. FedRAMP primer 9. The FedRAMP cloud computing security requirements 10. Security testing: Vulnerability assessments and penetration testing 11. Security assessment and authorization: Governance, preparation, and execution 12. Strategies for continuous monitoring 13. Continuous monitoring through security automation 14. A case study for cloud service providers