A Practical Guide to Security Engineering and Information Assurance
暫譯: 安全工程與資訊保障實務指南

Herrmann, Debra S.

  • 出版商: Auerbach Publication
  • 出版日期: 2019-09-11
  • 售價: $2,810
  • 貴賓價: 9.5$2,670
  • 語言: 英文
  • 頁數: 408
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 0367396831
  • ISBN-13: 9780367396831
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

Today the vast majority of the world's information resides in, is derived from, and is exchanged among multiple automated systems. Critical decisions are made, and critical action is taken based on information from these systems. Therefore, the information must be accurate, correct, and timely, and be manipulated, stored, retrieved, and exchanged safely, reliably, and securely. In a time when information is considered the latest commodity, information security should be top priority.
A Practical Guide to Security Engineering and Information Assurance gives you an engineering approach to information security and information assurance (IA). The book examines the impact of accidental and malicious intentional action and inaction on information security and IA. Innovative long-term vendor, technology, and application-independent strategies show you how to protect your critical systems and data from accidental and intentional action and inaction that could lead to system failure or compromise.
The author presents step-by-step, in-depth processes for defining information security and assurance goals, performing vulnerability and threat analysis, implementing and verifying the effectiveness of threat control measures, and conducting accident and incident investigations. She explores real-world strategies applicable to all systems, from small systems supporting a home-based business to those of a multinational corporation, government agency, or critical infrastructure system.
The information revolution has brought its share of risks. Exploring the synergy between security, safety, and reliability engineering, A Practical Guide to Security Engineering and Information Assurance consolidates and organizes current thinking about information security/IA techniques, approaches, and best practices. As this book will show you, there is considerably more to information security/IA than firewalls, encryption, and virus protection.

商品描述(中文翻譯)

今天,世界上絕大多數的信息都存在於多個自動化系統中,並且這些信息是從這些系統中獲得和交換的。根據這些系統的信息,做出關鍵決策並採取關鍵行動。因此,信息必須準確、正確且及時,並且必須安全、可靠和安全地進行操作、存儲、檢索和交換。在信息被視為最新商品的時代,信息安全應該是首要任務。

《安全工程與信息保障實用指南》為您提供了一種針對信息安全和信息保障(IA)的工程方法。本書探討了意外和惡意故意行為及不作為對信息安全和IA的影響。創新的長期供應商、技術和應用無關的策略向您展示如何保護您的關鍵系統和數據,免受可能導致系統故障或妥協的意外和故意行為及不作為的影響。

作者提供了逐步深入的過程,以定義信息安全和保障目標,執行漏洞和威脅分析,實施和驗證威脅控制措施的有效性,以及進行事故和事件調查。她探討了適用於所有系統的現實世界策略,從支持家庭業務的小型系統到跨國公司、政府機構或關鍵基礎設施系統的系統。

信息革命帶來了風險。通過探索安全性、安全性和可靠性工程之間的協同作用,《安全工程與信息保障實用指南》整合並組織了當前對信息安全/IA技術、方法和最佳實踐的思考。正如本書所展示的,信息安全/IA的內容遠不止防火牆、加密和病毒保護。