Information Security Science: Measuring the Vulnerability to Data Compromises
暫譯: 資訊安全科學:衡量資料洩漏的脆弱性
Carl Young
- 出版商: Syngress Media
- 出版日期: 2016-06-21
- 售價: $2,710
- 貴賓價: 9.5 折 $2,575
- 語言: 英文
- 頁數: 406
- 裝訂: Paperback
- ISBN: 0128096438
- ISBN-13: 9780128096437
-
相關分類:
資訊安全
海外代購書籍(需單獨結帳)
相關主題
商品描述
Information Security Science: Measuring the Vulnerability to Data Compromises provides the scientific background and analytic techniques to understand and measure the risk associated with information security threats. This is not a traditional IT security book since it includes methods of information compromise that are not typically addressed in textbooks or journals.
In particular, it explores the physical nature of information security risk, and in so doing exposes subtle, yet revealing, connections between information security, physical security, information technology, and information theory. This book is also a practical risk management guide, as it explains the fundamental scientific principles that are directly relevant to information security, specifies a structured methodology to evaluate a host of threats and attack vectors, identifies unique metrics that point to root causes of technology risk, and enables estimates of the effectiveness of risk mitigation.
This book is the definitive reference for scientists and engineers with no background in security, and is ideal for security analysts and practitioners who lack scientific training. Importantly, it provides security professionals with the tools to prioritize information security controls and thereby develop cost-effective risk management strategies.
- Specifies the analytic and scientific methods necessary to estimate the vulnerability to information loss for a spectrum of threats and attack vectors
- Represents a unique treatment of the nexus between physical and information security that includes risk analyses of IT device emanations, visible information, audible information, physical information assets, and virtualized IT environments
- Identifies metrics that point to the root cause of information technology risk and thereby assist security professionals in developing risk management strategies
- Analyzes numerous threat scenarios and specifies countermeasures based on derived quantitative metrics
- Provides chapter introductions and end-of-chapter summaries to enhance the reader’s experience and facilitate an appreciation for key concepts
商品描述(中文翻譯)
《資訊安全科學:測量資料妥協的脆弱性》提供了理解和測量與資訊安全威脅相關風險的科學背景和分析技術。這本書並不是一本傳統的IT安全書籍,因為它包含了在教科書或期刊中通常不會涉及的資訊妥協方法。
特別地,它探討了資訊安全風險的物理性質,並在此過程中揭示了資訊安全、物理安全、資訊技術和資訊理論之間微妙而又顯著的聯繫。這本書也是一本實用的風險管理指南,因為它解釋了與資訊安全直接相關的基本科學原則,指定了一種結構化的方法來評估各種威脅和攻擊向量,識別指向技術風險根本原因的獨特指標,並使風險緩解的有效性評估成為可能。
這本書是沒有安全背景的科學家和工程師的權威參考資料,並且非常適合缺乏科學訓練的安全分析師和從業者。重要的是,它為安全專業人員提供了優先考慮資訊安全控制的工具,從而制定具成本效益的風險管理策略。
- 指定了估計資訊損失脆弱性所需的分析和科學方法,涵蓋各種威脅和攻擊向量
- 代表了物理安全與資訊安全之間的獨特處理,包括IT設備發射、可見資訊、可聽資訊、物理資訊資產和虛擬化IT環境的風險分析
- 識別指向資訊技術風險根本原因的指標,從而協助安全專業人員制定風險管理策略
- 分析了多種威脅情境,並根據衍生的定量指標指定對策
- 提供章節介紹和章末摘要,以增強讀者的體驗並促進對關鍵概念的理解