Information Security Cost Management
暫譯: 資訊安全成本管理

Bazavan, Ioana V., Lim, Ian

  • 出版商: Auerbach Publication
  • 出版日期: 2019-09-05
  • 售價: $2,810
  • 貴賓價: 9.5$2,670
  • 語言: 英文
  • 頁數: 255
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 0367390426
  • ISBN-13: 9780367390426
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

While information security is an ever-present challenge for all types of organizations today, most focus on providing security without addressing the necessities of staff, time, or budget in a practical manner.

Information Security Cost Management offers a pragmatic approach to implementing information security, taking budgetary and real-world constraints into consideration. By providing frameworks, step-by-step processes, and project management breakdowns, this book demonstrates how to design the best security strategy with the resources you have available.

Organized into five sections, the book-

  • Focuses on setting the right road map so that you can be most effective in your information security implementations
  • Discusses cost-effective staffing, the single biggest expense to the security organization
  • Presents practical ways to build and manage the documentation that details strategy, provides resources for operating annual audits, and illustrates how to advertise accomplishments to senior management effectively
  • Identifies high-risk areas, focusing limited resources on the most imminent and severe threats
  • Describes how to manage the key access controls when faced with manual user management, how to automate user management tasks in a cost effective manner, and how to deal with security breaches

    Demonstrating strategies to maximize a limited security budget without compromising the quality of risk management initiatives, Information Security Cost Management helps you save your organization time and money. It provides the tools required to implement policies, processes, and training that are crucial to the success of a company's security.

  • 商品描述(中文翻譯)

    雖然資訊安全對於各類型的組織來說都是一個持續存在的挑戰,但大多數組織專注於提供安全性,而未能以實際的方式解決人員、時間或預算的必要性。

    《資訊安全成本管理》提供了一種務實的方法來實施資訊安全,考慮到預算和現實世界的限制。通過提供框架、逐步流程和專案管理的細分,本書展示了如何利用可用資源設計最佳的安全策略。

    本書分為五個部分:

  • 專注於設定正確的路線圖,以便在資訊安全實施中達到最佳效果

  • 討論具成本效益的人員配置,這是安全組織最大的開支

  • 提供實用的方法來建立和管理詳細策略的文檔,提供進行年度審計的資源,並有效地向高層管理層宣傳成就

  • 識別高風險區域,將有限的資源集中於最迫切和最嚴重的威脅

  • 描述在面對手動用戶管理時如何管理關鍵訪問控制,如何以具成本效益的方式自動化用戶管理任務,以及如何處理安全漏洞
  • 《資訊安全成本管理》展示了在不妥協風險管理質量的情況下,如何最大化有限的安全預算,幫助您為組織節省時間和金錢。它提供了實施政策、流程和培訓所需的工具,這些對於公司安全的成功至關重要。