Developing Cybersecurity Programs and Policies 3rd
暫譯: 開發網路安全計畫與政策 第三版
Omar Santos
- 出版商: Pearson IT Certifica
- 出版日期: 2018-08-10
- 定價: $2,760
- 售價: 8.0 折 $2,208
- 語言: 英文
- 頁數: 672
- 裝訂: Paperback
- ISBN: 0789759403
- ISBN-13: 9780789759405
-
相關分類:
資訊安全
-
相關翻譯:
網路空間安全計畫與策略開發 (簡中版)
立即出貨 (庫存=1)
相關主題
商品描述
All the Knowledge You Need to Build Cybersecurity Programs and Policies That Work
Clearly presents best practices, governance frameworks, and key standards
Includes focused coverage of healthcare, finance, and PCI DSS compliance
An essential and invaluable guide for leaders, managers, and technical professionals
Today, cyberattacks can place entire organizations at risk. Cybersecurity can no longer be delegated to specialists: success requires everyone to work together, from leaders on down. Developing Cybersecurity Programs and Policies offers start-to-finish guidance for establishing effective cybersecurity in any organization. Drawing on more than 20 years of real-world experience, Omar Santos presents realistic best practices for defining policy and governance, ensuring compliance, and collaborating to harden the entire organization.
First, Santos shows how to develop workable cybersecurity policies and an effective framework for governing them. Next, he addresses risk management, asset management, and data loss prevention, showing how to align functions from HR to physical security. You’ll discover best practices for securing communications, operations, and access; acquiring, developing, and maintaining technology; and responding to incidents.
Santos concludes with detailed coverage of compliance in finance and healthcare, the crucial Payment Card Industry Data Security Standard (PCI DSS) standard, and the NIST Cybersecurity Framework.
Whatever your current responsibilities, this guide will help you plan, manage, and lead cybersecurity–and safeguard all the assets that matter.
Learn How To
· Establish cybersecurity policies and governance that serve your organization’s needs
· Integrate cybersecurity program components into a coherent framework for action
· Assess, prioritize, and manage security risk throughout the organization
· Manage assets and prevent data loss
· Work with HR to address human factors in cybersecurity
· Harden your facilities and physical environment
· Design effective policies for securing communications, operations, and access
· Strengthen security throughout the information systems lifecycle
· Plan for quick, effective incident response and ensure business continuity
· Comply with rigorous regulations in finance and healthcare
· Plan for PCI compliance to safely process payments
· Explore and apply the guidance provided by the NIST Cybersecurity Framework
商品描述(中文翻譯)
所有您需要的知識,以建立有效的網路安全計畫和政策
明確呈現最佳實踐、治理框架和關鍵標準
包括針對醫療保健、金融和PCI DSS合規性的專注涵蓋
對於領導者、管理者和技術專業人員來說,這是一本必不可少且無價的指南
今天,網路攻擊可能使整個組織面臨風險。網路安全不再能夠僅由專家負責:成功需要每個人共同努力,從領導者到基層員工。《發展網路安全計畫和政策》提供了從頭到尾的指導,以在任何組織中建立有效的網路安全。Omar Santos根據超過20年的實務經驗,提出了定義政策和治理、確保合規性以及協作以加強整個組織的現實最佳實踐。
首先,Santos展示了如何制定可行的網路安全政策和有效的治理框架。接著,他探討了風險管理、資產管理和數據損失防護,展示了如何將人力資源到實體安全的功能進行對齊。您將發現保護通訊、操作和訪問的最佳實踐;獲取、開發和維護技術;以及應對事件的策略。
Santos最後詳細介紹了金融和醫療保健的合規性、關鍵的支付卡產業數據安全標準(PCI DSS)以及NIST網路安全框架。
無論您目前的責任是什麼,這本指南將幫助您規劃、管理和領導網路安全,並保護所有重要的資產。
學習如何
・建立符合您組織需求的網路安全政策和治理
・將網路安全計畫組件整合成一個連貫的行動框架
・評估、優先排序並管理整個組織的安全風險
・管理資產並防止數據損失
・與人力資源合作,解決網路安全中的人為因素
・加強您的設施和物理環境
・設計有效的政策以保護通訊、操作和訪問
・在信息系統生命周期中加強安全性
・計劃快速有效的事件響應並確保業務連續性
・遵守金融和醫療保健中的嚴格法規
・計劃PCI合規性以安全處理支付
・探索並應用NIST網路安全框架提供的指導