Adaptive Security Management Architecture
暫譯: 自適應安全管理架構

Tiller, James S.

  • 出版商: Auerbach Publication
  • 出版日期: 2019-11-26
  • 售價: $2,810
  • 貴賓價: 9.5$2,670
  • 語言: 英文
  • 頁數: 482
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 0367452294
  • ISBN-13: 9780367452292
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

For an organization to function effectively, its security controls must not be so restrictive that the business is denied the ability to be innovative and flexible. But increasingly pervasive threats mandate vigilance in unlikely areas. Adaptive Security Management Architecture enables security professionals to structure the best program designed to meet the complex needs of an entire organization, taking into account the organization's business goals as well as the surrounding controls, processes, and units already in existence.



Security aligned with business needs



Introducing the concept of Adaptive Security Management Architecture (ASMA), the book explains how an organization can develop an adaptive security program closely aligned to business needs, making it an enabling force that helps the organization achieve its goals and objectives. Describing how to achieve this adaptability, the book cites several examples and concepts to demonstrate aspects of managing change. It presents the end product of a successful security management system and examines the finer points of how it can be accomplished.



Risk management and governance



The book explores the security and business attributes that must be considered in the development of services and discusses the importance of consistency of management of services. In a section on risk management, the author explains how this important component is directly integrated with the ASMA model. He also discusses the critical element of governance and its importance to demonstrating value and ensuring effective adaptation. Lastly, the book examines how proper organizational management can give the executive and leadership team the necessary oversight to ensure the entire security program meets stated expectations. It also describes the capability maturity model, which ensures that all the co-dependent features of the

商品描述(中文翻譯)

為了讓一個組織有效運作,其安全控制措施必須不至於過於嚴格,以至於妨礙業務的創新和靈活性。然而,日益普遍的威脅要求在不太可能的領域保持警惕。自適應安全管理架構使安全專業人員能夠構建最佳計劃,以滿足整個組織的複雜需求,考慮到組織的業務目標以及現有的控制措施、流程和單位。

與業務需求對齊的安全性

本書介紹了自適應安全管理架構(ASMA)的概念,解釋了組織如何開發與業務需求緊密對齊的自適應安全計劃,使其成為幫助組織實現目標和宗旨的推動力量。書中描述了如何實現這種適應性,並引用了幾個例子和概念來展示管理變革的各個方面。它呈現了一個成功的安全管理系統的最終產品,並探討了如何實現這一目標的細節。

風險管理與治理

本書探討了在服務開發中必須考慮的安全和業務屬性,並討論了服務管理一致性的重要性。在風險管理的一節中,作者解釋了這一重要組成部分如何與ASMA模型直接整合。他還討論了治理的關鍵要素及其在展示價值和確保有效適應中的重要性。最後,本書探討了適當的組織管理如何為執行和領導團隊提供必要的監督,以確保整個安全計劃符合既定期望。它還描述了能力成熟度模型,以確保所有相互依賴的特徵。

作者簡介

  • Presents IT security status using managerial measures of performance such as balanced scorecards
  • Shows how the security of IT relates to risk business analysis
  • Demonstrates how to align the practices of each facet of business so they work together using the same strategies
  • Describes how the facets of a secure IT system are related to the security of suppliers and customers
  • 作者簡介(中文翻譯)

    - 使用平衡計分卡等管理績效指標呈現資訊科技安全狀態
    - 顯示資訊科技的安全性如何與風險商業分析相關
    - 演示如何使業務各個面向的實踐協同運作,使用相同的策略
    - 描述安全資訊科技系統的各個面向如何與供應商和客戶的安全性相關聯