The New School of Information Security (Paperback)
暫譯: 新資訊安全學校(平裝本)
Adam Shostack, Andrew Stewart
- 出版商: Addison Wesley
- 出版日期: 2008-04-05
- 定價: $1,225
- 售價: 5.0 折 $613
- 語言: 英文
- 頁數: 288
- 裝訂: Paperback
- ISBN: 0321814908
- ISBN-13: 9780321814906
-
相關分類:
資訊安全
立即出貨
相關主題
商品描述
--David Mortman, CSO-in-Residence Echelon One, former CSO Siebel Systems
Why is information security so dysfunctional? Are you wasting the money you spend on security? This book shows how to spend it more effectively. How can you make more effective security decisions? This book explains why professionals have taken to studying economics, not cryptography--and why you should, too. And why security breach notices are the best thing to ever happen to information security. It’s about time someone asked the biggest, toughest questions about information security. Security experts Adam Shostack and Andrew Stewart don’t just answer those questions--they offer honest, deeply troubling answers. They explain why these critical problems exist and how to solve them. Drawing on powerful lessons from economics and other disciplines, Shostack and Stewart offer a new way forward. In clear and engaging prose, they shed new light on the critical challenges that are faced by the security field. Whether you’re a CIO, IT manager, or security specialist, this book will open your eyes to new ways of thinking about--and overcoming--your most pressing security challenges. The New School enables you to take control, while others struggle with non-stop crises.
- Better evidence for better decision-making
Why the security data you have doesn’t support effective decision-making--and what to do about it - Beyond security “silos”: getting the job done together
Why it’s so hard to improve security in isolation--and how the entire industry can make it happen and evolve - Amateurs study cryptography; professionals study economics
What IT security leaders can and must learn from other scientific fields - A bigger bang for every buck
How to re-allocate your scarce resources where they’ll do the most good
商品描述(中文翻譯)
《新學校》這本書的出現正是時候。安全作為純技術的時代早已過去,現代從業者需要理解安全的社會和認知層面,才能取得成功。Shostack 和 Stewart 教導讀者所需的知識——我只希望在我剛開始時就能擁有這本書。
--David Mortman,Echelon One 的駐場首席安全官,前 Siebel Systems 首席安全官
為什麼資訊安全如此失能?你花在安全上的錢是否在浪費?這本書展示了如何更有效地花費這些資金。你如何做出更有效的安全決策?這本書解釋了為什麼專業人士開始研究經濟學,而不是密碼學——以及你也應該這樣做的原因。還有為什麼安全漏洞通知是資訊安全史上最好的事情。是時候有人提出關於資訊安全的最大、最棘手的問題了。安全專家 Adam Shostack 和 Andrew Stewart 不僅回答這些問題——他們提供誠實且深具挑戰性的答案。他們解釋了這些關鍵問題存在的原因以及如何解決它們。Shostack 和 Stewart 從經濟學及其他學科中汲取強有力的教訓,提供了一條新的前進之路。以清晰且引人入勝的文筆,他們為安全領域面臨的關鍵挑戰提供了新的見解。無論你是 CIO、IT 經理還是安全專家,這本書都將讓你對思考和克服最迫切的安全挑戰有新的認識。《新學校》使你能夠掌控局面,而其他人則在不斷的危機中掙扎。
- 更好的證據以促進更好的決策
為什麼你擁有的安全數據無法支持有效的決策——以及該如何解決
- 超越安全“孤島”:共同完成任務
為什麼在孤立中改善安全如此困難——以及整個行業如何實現並進化
- 業餘者研究密碼學;專業人士研究經濟學
IT 安全領導者可以且必須從其他科學領域學到什麼
- 每一分錢都要花得更有價值
如何重新分配你稀缺的資源,使其發揮最大的效益