Cantitate/Preț
Produs

Security De-Engineering: Solving the Problems in Information Risk Management

Autor Ian Tibble
en Limba Engleză Paperback – 13 dec 2011
As hacker organizations surpass drug cartels in terms of revenue generation, it is clear that the good guys are doing something wrong in information security. Providing a simple foundational remedy for our security ills, Security De-Engineering: Solving the Problems in Information Risk Management is a definitive guide to the current problems impacting corporate information risk management. It explains what the problems are, how and why they have manifested, and outlines powerful solutions.

Ian Tibble delves into more than a decade of experience working with close to 100 different Fortune 500s and multinationals to explain how a gradual erosion of skills has placed corporate information assets on a disastrous collision course with automated malware attacks and manual intrusions. Presenting a complete journal of hacking feats and how corporate networks can be compromised, the book covers the most critical aspects of corporate risk information risk management.
  • Outlines six detrimental security changes that have occurred in the past decade
  • Examines automated vulnerability scanners and rationalizes the differences between their perceived and actual value
  • Considers security products—including intrusion detection, security incident event management, and identity management
The book provides a rare glimpse at the untold stories of what goes on behind the closed doors of private corporations. It details the tools and products that are used, typical behavioral traits, and the two types of security experts that have existed since the mid-nineties—the hackers and the consultants that came later. Answering some of the most pressing questions about network penetration testing and cloud computing security, this book provides you with the understanding and tools needed to tackle today’s risk management issues as well as those on the horizon.
Citește tot Restrânge

Preț: 49575 lei

Preț vechi: 61969 lei
-20% Nou

Puncte Express: 744

Preț estimativ în valută:
9490 9760$ 7873£

Carte tipărită la comandă

Livrare economică 19 februarie-05 martie

Preluare comenzi: 021 569.72.76

Specificații

ISBN-13: 9781439868348
ISBN-10: 1439868344
Pagini: 332
Dimensiuni: 156 x 234 x 18 mm
Greutate: 0.45 kg
Ediția:1
Editura: CRC Press
Colecția Auerbach Publications

Public țintă

Academic and Professional Practice & Development

Cuprins

People and Blame. Whom Do You Blame? The Hackers. Checklists and Standards Evangelists. De-Engineering of Security. How Security Changed Post 2000. Automated Vulnerability Scanners. Eternal Yawn: Careers in Information Security. Penetration Testing-Old and New. Love of Clouds and Incidents-Vain Search for Validation. Security Products. Intrusion Detection. Other Products. Re-Engineering Of Security. One Professional Accreditation Program to Bind Them All. Index.

Recenzii

This is a passionate call to arms to recognise the contribution of engineering to business. In highlighting what the author believes is a diminishing role of qualified engineers, he lights the lighthouse beacon in the hope that business can thereby avoid crashing into the rocks of avoidable incident and financial loss.
—Written by Wendy Goucher, Information security consultant, writing on www.infosecskills.com

Read the full review at: http://resources.infosecskills.com/mm-cat-list-books/mm-cat-list-infosec/114-book-review-sedeeng

Notă biografică

Ian Tibble was an IT specialist with IBM Global Services before entering into the security arena. His experience of more than 11 years in information security allowed him to gain practical risk management expertise from both an architectural IT and a business analysis aspect. His experience in Infosec has been with service providers Trusecure (now Verizon) and PricewaterhouseCoopers, and also with end users in logistics, banking, and insurance. He has been engaged with security service delivery projects with close to 100 Fortune 500 companies and multinational financial institutions in Asia (Indonesia, Singapore, Malaysia, Taiwan, Hong Kong, and Australia) and Europe.

Descriere

With organizations facing growing security challenges from both automated and manual attacks, these incidents now represent more of a threat to the bottom line than ever before. This book explains the problems in corporate information security and how to solve them. Based on more than a decade of global experience, the author explains how the industry has faltered and how a gradual decline in analytical skills has led the corporate world on a disastrous collision course with automated malware attacks and manual intrusions.