C(I)SO - And Now What?: How to Successfully Build Security by Design
暫譯: C(I)SO - 現在該怎麼辦?:如何成功地構建安全設計

Michael S Oberlaender

  • 出版商: CreateSpace Independ
  • 出版日期: 2013-01-31
  • 售價: $1,610
  • 貴賓價: 9.5$1,530
  • 語言: 英文
  • 頁數: 102
  • 裝訂: Paperback
  • ISBN: 1480237418
  • ISBN-13: 9781480237414
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

Have you ever wondered why so many companies and their security leaders fail in today's cyber challenges? Regardless if you are new in this role and look for guidance, or you are considering yourself an expert and just wish to verify that you haven't forgotten anything - this book will help you to tackle the subject right - by building "security by design". The content covers your initial phases in the job such as setting expectations, base lining, gap analysis, capabilities building, and org chart variances. It then leads you to define security architecture, addressing a secure development process, application security and also security policy levels. Further items such as awareness programs, asset management, teaming up with audit, risk management, and finally the strategy development are covered. Then we dive into ROIs, trust relationships, KPIs, incident response, forensics, before we run into crises management by looking at some specific examples of personal experience of the author - himself a C(I)SO for many years. The book is ending by providing advice how to deal with other executive management, and what kind of education, certifications, and networking you need to focus on. If you consistently apply the content and advice provided in this book, you should be all set to succeed in your role as C(I)SO.

商品描述(中文翻譯)

你是否曾經想過為什麼如此多的公司及其安全領導者在當今的網路挑戰中失敗?無論你是這個角色的新手並尋求指導,還是自認為專家並希望確認自己沒有遺漏任何東西——這本書將幫助你正確地處理這個主題,透過建立「設計中的安全性」來實現。內容涵蓋你在工作初期的階段,例如設定期望、基準建立、差距分析、能力建設和組織架構變化。接著引導你定義安全架構,處理安全開發流程、應用安全以及安全政策層級等問題。進一步的項目包括意識提升計畫、資產管理、與審計合作、風險管理,最後是策略發展。然後我們深入探討投資回報率(ROI)、信任關係、關鍵績效指標(KPI)、事件響應、取證,然後通過查看作者本人的一些具體經驗(他自己擔任過多年的C(I)SO)來進入危機管理。本書最後提供了如何與其他高層管理人員打交道的建議,以及你需要專注於什麼樣的教育、認證和人脈建立。如果你持續應用本書中提供的內容和建議,你應該能夠在C(I)SO的角色中取得成功。