Security Operations Center: Building, Operating, and Maintaining your SOC (Paperback)
暫譯: 安全運營中心:建立、運營與維護您的 SOC

Joseph Muniz, Gary McIntyre, Nadhem AlFardan

  • 出版商: Cisco Press
  • 出版日期: 2015-10-29
  • 售價: $1,925
  • 貴賓價: 9.5$1,829
  • 語言: 英文
  • 頁數: 448
  • 裝訂: Paperback
  • ISBN: 0134052013
  • ISBN-13: 9780134052014
  • 相關分類: 資訊安全
  • 立即出貨 (庫存 < 3)

買這商品的人也買了...

商品描述

Security Operations Center

Building, Operating, and Maintaining Your SOC

 

The complete, practical guide to planning, building, and operating an effective Security Operations Center (SOC)


Security Operations Center is the complete guide to building, operating, and managing Security Operations Centers in any environment. Drawing on experience with hundreds of customers ranging from Fortune 500 enterprises to large military organizations, three leading experts thoroughly review each SOC model, including virtual SOCs. You’ll learn how to select the right strategic option for your organization, and then plan and execute the strategy you’ve chosen.


Security Operations Center walks you through every phase required to establish and run an effective SOC, including all significant people, process, and technology capabilities. The authors assess SOC technologies, strategy, infrastructure, governance, planning, implementation, and more. They take a holistic approach considering various commercial and open-source tools found in modern SOCs.


This best-practice guide is written for anybody interested in learning how to develop, manage, or improve a SOC. A background in network security, management, and operations will be helpful but is not required. It is also an indispensable resource for anyone preparing for the Cisco SCYBER exam.

 

·         Review high-level issues, such as vulnerability and risk management, threat intelligence, digital investigation, and data collection/analysis

·         Understand the technical components of a modern SOC

·         Assess the current state of your SOC and identify areas of improvement

·         Plan SOC strategy, mission, functions, and services

·         Design and build out SOC infrastructure, from facilities and networks to systems, storage, and physical security

·         Collect and successfully analyze security data

·         Establish an effective vulnerability management practice

·         Organize incident response teams and measure their performance

·         Define an optimal governance and staffing model

·         Develop a practical SOC handbook that people can actually use

·         Prepare SOC to go live, with comprehensive transition plans

·         React quickly and collaboratively to security incidents

·         Implement best practice security operations, including continuous enhancement and improvement

  

商品描述(中文翻譯)

安全運營中心

建立、運營和維護您的 SOC

這是一本完整且實用的指南,旨在規劃、建立和運營一個有效的安全運營中心 (SOC)


安全運營中心 是一本完整的指南,涵蓋在任何環境中建立、運營和管理安全運營中心的所有方面。根據與數百家客戶的經驗,這些客戶包括《財富》500 強企業和大型軍事組織,三位領先專家徹底回顧了每一種 SOC 模型,包括虛擬 SOC。您將學習如何為您的組織選擇合適的戰略選項,然後規劃和執行您所選擇的策略。


安全運營中心 將引導您完成建立和運營有效 SOC 所需的每個階段,包括所有重要的人員、流程和技術能力。作者評估了 SOC 技術、策略、基礎設施、治理、規劃、實施等方面。他們採取整體方法,考慮現代 SOC 中各種商業和開源工具。


這本最佳實踐指南適合任何有興趣學習如何開發、管理或改善 SOC 的人。具備網絡安全、管理和運營的背景將會有所幫助,但並非必需。這也是任何準備參加 Cisco SCYBER 考試的人的不可或缺的資源。

·         回顧高層次問題,例如漏洞和風險管理、威脅情報、數字調查以及數據收集/分析

·         了解現代 SOC 的技術組件

·         評估您 SOC 的當前狀態並識別改進領域

·         規劃 SOC 策略、任務、功能和服務

·         設計和建設 SOC 基礎設施,從設施和網絡到系統、存儲和物理安全

·         收集並成功分析安全數據

·         建立有效的漏洞管理實踐

·         組織事件響應團隊並衡量其表現

·         定義最佳的治理和人員配置模型

·         制定一本實用的 SOC 手冊,讓人們能夠實際使用

·         準備 SOC 上線,並制定全面的過渡計劃

·         快速且協作地對安全事件作出反應

·         實施最佳實踐的安全運營,包括持續增強和改進