The Cio's Guide to Information Security Incident Management
暫譯: CIO資訊安全事件管理指南

Pemble, Matthew William Arthur, Goucher, Wendy Fiona

  • 出版商: Auerbach Publication
  • 出版日期: 2020-09-30
  • 售價: $2,070
  • 貴賓價: 9.5$1,967
  • 語言: 英文
  • 頁數: 242
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 0367656973
  • ISBN-13: 9780367656973
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

This book will help IT and business operations managers who have been tasked with addressing security issues. It provides a solid understanding of security incident response and detailed guidance in the setting up and running of specialist incident management teams. Having an incident response plan is required for compliance with government regulations, industry standards such as PCI DSS, and certifications such as ISO 27001. This book will help organizations meet those compliance requirements.

商品描述(中文翻譯)

本書將幫助被指派處理安全問題的 IT 和業務運營經理。它提供了對安全事件響應的深入理解,以及在設立和運行專業事件管理團隊方面的詳細指導。擁有一個事件響應計劃是遵循政府法規、行業標準(如 PCI DSS)和認證(如 ISO 27001)的必要條件。本書將幫助組織滿足這些合規要求。

作者簡介

Eur Ing Matthew William Arthur Pemble, CEng, FBCS, MIET, is one of the founders and directors of Goucher Consulting, a niche security consultancy, specializing in corporate standards and compliance. Perhaps recently best known for his contributions to security testing and incident management, Matthew also has considerable experience in policy-based and technical security. As well has having worked for the military, and private sector organizations ranging from large banks to small consultancies, he has also provided product development support to various security vendors, including Cronto and Qualys, Inc. He currently spends much of his time working on the privacy and security issues, and preparing to deal with any incidents, regarding Scotland's next census.

 

 

Wendy Goucher is a specialist in the behavioural aspect of information security, which we now have to call 'Cyber Security, ' and co-director of Goucher Consulting Ltd. Her background is in social science and her first career was as a lecturer in any management subject that didn't involve numbers, which included economics. For her day job, Wendy currently works on a range of business projects including audit and compliance preparation and training program design, with both public and private sector organizations. Wendy earned a Msc. (by research), from the University of Glasgow, in which she examined the shoulder surfing threat to mobile working. Wendy's skill and unusual perspective on information security has enabled her to present at a number of international security conferences across the world. It also gave her the chance to become involved in a number of key projects with the BCS, ISACA, and the IEEE including producing international guidelines for security awareness training. She is also a published author with input into a number of professional publications, including a book on the career of information security auditors for the British Computer Society, and some non-standard elements to this book on incident management, and a history book. The latter had nothing to do with her day job until an archive needed to review its risk management.

 

 

作者簡介(中文翻譯)

Eur Ing Matthew William Arthur Pemble,CEng,FBCS,MIET,是Goucher Consulting的創始人之一及董事,這是一家專注於企業標準和合規性的專業安全顧問公司。最近,他因在安全測試和事件管理方面的貢獻而廣為人知,Matthew在基於政策和技術安全方面也擁有相當的經驗。除了曾在軍方工作外,他還在從大型銀行到小型顧問公司的私營部門組織中任職,並為多家安全供應商提供產品開發支持,包括Cronto和Qualys, Inc.。目前,他大部分時間都在處理隱私和安全問題,並準備應對蘇格蘭下一次人口普查的任何事件。

Wendy Goucher是信息安全行為方面的專家,現在我們稱之為「網絡安全」,並且是Goucher Consulting Ltd.的共同董事。她的背景是社會科學,第一份工作是講授任何不涉及數字的管理科目,包括經濟學。作為日常工作,Wendy目前在多個商業項目上工作,包括審計和合規準備以及培訓計劃設計,與公共和私營部門組織合作。Wendy在格拉斯哥大學獲得了研究碩士學位,研究了移動工作中的肩膀窺視威脅。Wendy在信息安全方面的技能和獨特視角使她能夠在全球多個國際安全會議上發表演講。這也讓她有機會參與BCS、ISACA和IEEE的一些關鍵項目,包括制定安全意識培訓的國際指導方針。她還是一位已出版的作者,參與了多本專業出版物的撰寫,包括為英國計算機學會撰寫的有關信息安全審計員職業的書籍,以及這本關於事件管理的書籍中的一些非標準元素和一本歷史書。後者與她的日常工作無關,直到一個檔案需要審查其風險管理。