The Iot Architect's Guide to Attainable Security and Privacy
暫譯: 物聯網架構師的可達成安全與隱私指南
Fagbemi, Damilare D., Wheeler, David M., Wheeler, Jc
- 出版商: Auerbach Publication
- 出版日期: 2019-10-04
- 售價: $2,800
- 貴賓價: 9.5 折 $2,660
- 語言: 英文
- 頁數: 300
- 裝訂: Hardcover - also called cloth, retail trade, or trade
- ISBN: 081536816X
- ISBN-13: 9780815368168
-
相關分類:
物聯網 IoT、資訊安全
立即出貨 (庫存=1)
買這商品的人也買了...
-
$1,650Digital Crime, Digital Terrorism, 2/e (Paperback)
-
$3,640$3,458 -
$4,980$4,731 -
$2,500$2,375 -
$403網絡空間欺騙 : 構築欺騙防禦的科學基石
-
$2,560$2,432
相關主題
商品描述
This book describes how to architect and design Internet of Things (loT) solutions that provide end-to-end security and privacy at scale. It is unique in its detailed coverage of threat analysis, protocol analysis, secure design principles, intelligent loT's impact on privacy, and the effect of usability on security. The book also unveils the impact of digital currency and the dark web on the loT-security economy. It's both informative and entertaining.
"Filled with practical and relevant examples based on years of experience ... with lively discussions and storytelling related to loT security design flaws and architectural issues."-- Dr. James F. Ransome, Senior Director of Security Development Lifecycle (SOL) Engineering, Intel
'There is an absolute treasure trove of information within this book that will benefit anyone, not just the engineering community. This book has earned a permanent spot on my office bookshelf."-- Erv Comer, Fellow of Engineering, Office of Chief Architect Zebra Technologies
'The importance of this work goes well beyond the engineer and architect. The IoT Architect's Guide to, Attainable Security & Privacy is a crucial resource for every executive who delivers connected products to the market or uses connected products to run their business."-- Kurt Lee, VP Sales and Strategic Alliances at PWNIE Express
"If we collectively fail to follow the advice described here regarding loT security and Privacy, we will continue to add to our mounting pile of exploitable computing devices. The attackers are having a field day. Read this book, now."-- Brook S.E. Schoenfield, Director of Advisory Services at IOActive, previously Master Security Architect at McAfee, and author of Securing Systems
商品描述(中文翻譯)
這本書描述了如何架構和設計物聯網(IoT)解決方案,以提供端到端的安全性和隱私保護,並能夠大規模運作。它在威脅分析、協議分析、安全設計原則、智能物聯網對隱私的影響以及可用性對安全性的影響等方面提供了詳細的覆蓋,具有獨特性。書中還揭示了數位貨幣和暗網對物聯網安全經濟的影響。這本書既具資訊性又具娛樂性。
「充滿了基於多年經驗的實用和相關範例……並且有關於物聯網安全設計缺陷和架構問題的生動討論和故事。」-- 詹姆斯·F·蘭索姆博士,英特爾安全開發生命週期(SOL)工程高級總監
「這本書內含絕對是寶藏般的信息,將使任何人受益,不僅僅是工程界。這本書在我的辦公室書架上贏得了永久的位置。」-- 埃夫·科默,斑馬科技首席架構師辦公室工程院士
「這部作品的重要性遠超過工程師和架構師。《物聯網架構師的可達安全與隱私指南》是每位將連接產品推向市場或使用連接產品來運營業務的高管的重要資源。」-- 庫特·李,PWNIE Express 銷售及戰略聯盟副總裁
「如果我們集體未能遵循這裡描述的有關物聯網安全和隱私的建議,我們將繼續增加可被利用的計算設備的堆疊。攻擊者正如魚得水。現在就讀這本書。」-- 布魯克·S·E·肖恩菲爾德,IOActive 顧問服務總監,曾任 McAfee 首席安全架構師,並著有《系統安全》。
作者簡介
David M. Wheeler, CISSP, CSSLP, GSLC, GREM, is a Senior Principal Engineer in the Platform Security Division of the Architecture Graphics and Software group at Intel Corporation and has thirty years' experience in software, security, and networking for both commercial and government systems. In his current role, Dave is responsible for the research and development of new cryptographic algorithms and protocols, several security APIs, and libraries across Intel including for IoT platforms. He performs security reviews for both Intel's IoT and cryptographic implementations and represents Intel at the IETF.
Within the Internet of Things, Dave has contributed to Intel's Software-Defined Industrial Systems architecture and Intel's Internet of Things group's Health Application Platform. Prior to Intel, Dave held various lead software and systems architecture positions at Motorola, Honeywell Bull, General Dynamics, as well as his own firm. Dave has designed and built several hardware security engines, including a Type-2 security coprocessor for a software-defined radio, and the Intel Wireless Trust Module--a hardware cryptographic coprocessor on the Intel XScale processor. He has implemented several cryptographic libraries and protocol layers, including an IPSec-type implementation for an SDR radio; header compression protocol layers for IP, TCP, and UDP over multicast; a connectionless network layer protocol; two-factor authentication verification over RADIUS for a firewall VPN; PPP for serial; an instant messaging protocol over Bluetooth; and many others. of Intel's Internet of Things to make Intel's products and software projects secure.
Blog: http: //crypto-corner.typepad.com
Twitter: @dmwheel1
LinkedIn: https: //www.linkedin.com/in/davidmwheeler/
Damilare D. Fagbemi CISSP, GXPN, had what might be considered the best possible introduction to the field of information security. An innovative software system that he built, the first of its kind in Nigeria at the time, was hacked minutes before a highly publicized deployment. After that, needless to say, Damilare got interested in information security fairly quickly. He began learning about the security of data and networks, then took and passed the CISSP. Considering his background in software development, he wondered where the intersection might be between the vast disciplines of software and security. A few years later, in Ireland, he stumbled upon a job advertisement for product security engineering. Th e rest as they say, is history.
Since then, Damilare has had the opportunities to serve as an engineer, architect, and technical leader at high-tech firms such as Intel Corporation and McAfee LLC, in the United States and Ireland. In those roles, he has had the pleasure of working with talented product teams to architect and build secure Internet of Things (IoT), web, and mobile solutions. As part of Intel's innovation in Smart Cities, he designed an IoT solution for Intelligent Transportation and contributed to the architecture of an artificial intelligence (AI)-powered platform for rapid decision making at the IoT edge. Damilare leads the Libraries Product Security Expert Center in Intel's Architecture Graphics and Software group, where he has enjoyed creating and leading a cross-organizational and cross-located security engineering team. He has taught security architecture and design across three continents--North America, Africa, and Europe--and served as Chapter leader of the Open Web Application Security Project (OWASP) in Nigeria. He is also a former co-founder of a software development company, with clients spanning private and government sectors.
Blog: https: //tech.edgeofus.com
Twitter: @damilarefagbemi
LinkedIn: https: //www.linkedin.com/in/damilarefagbemi/
JC Wheeler began her career at US West Cellular analyzing analog network traffic and contributing to the rollout of one of the first commercial CDMA infrastructures in the nation, where she helped design the metrics and tools for CDMA traffic analysis. She then moved to Motorola to design cellular and satellite network protocols, authentication, crypto key management, and end-user features. She began consulting at General Dynamics in 2005, where she designed and integrated VoIP, header compression, multicast communications protocols, over-the-air provisioning, and IPSec variants for both MANET and satellite SDR waveforms. Th e small business she co-owned won a DoD SBIR and was a semifinalist in Th e Arizona Innovation Challenge for its smartphone secure framework; it was also a Navy Phase 2 SBIR subcontractor, building an AI engine to troubleshoot MANET radio configurations. JC is now retired and enjoys researching new technologies and macroeconomic trends.
作者簡介(中文翻譯)
David M. Wheeler, CISSP, CSSLP, GSLC, GREM 是英特爾公司架構圖形與軟體組的平臺安全部門的高級首席工程師,擁有三十年的商業及政府系統軟體、安全和網路經驗。在目前的職位中,David 負責新加密演算法和協議的研究與開發,以及多個安全 API 和庫,包括針對物聯網 (IoT) 平臺的部分。他對英特爾的 IoT 和加密實作進行安全審查,並代表英特爾參加 IETF 會議。
在物聯網領域,David 對英特爾的軟體定義工業系統架構和英特爾物聯網小組的健康應用平臺做出了貢獻。在加入英特爾之前,David 在摩托羅拉、霍尼韋爾布爾、通用動力等公司擔任過多個軟體和系統架構的領導職位,還曾經創辦自己的公司。David 設計並建造了幾個硬體安全引擎,包括一個用於軟體定義無線電的 Type-2 安全協處理器,以及英特爾無線信任模組——一個在英特爾 XScale 處理器上的硬體加密協處理器。他實作了幾個加密庫和協議層,包括 SDR 無線電的 IPSec 類實作;IP、TCP 和 UDP 的標頭壓縮協議層;無連接網路層協議;透過 RADIUS 進行防火牆 VPN 的雙因素身份驗證;串行的 PPP;透過藍牙的即時通訊協議;以及其他許多項目,以確保英特爾的產品和軟體專案的安全。
部落格: http://crypto-corner.typepad.com
推特: @dmwheel1
LinkedIn: https://www.linkedin.com/in/davidmwheeler/
Damilare D. Fagbemi CISSP, GXPN,可以說是以最佳的方式進入資訊安全領域。他所建造的一個創新軟體系統,當時在奈及利亞是首創,卻在一次高度公開的部署前幾分鐘被駭客攻擊。之後,Damilare 自然對資訊安全產生了濃厚的興趣。他開始學習數據和網路的安全,並通過了 CISSP。考慮到他在軟體開發方面的背景,他想知道軟體和安全這兩個廣泛學科之間的交集在哪裡。幾年後,在愛爾蘭,他偶然發現了一則產品安全工程的工作廣告。接下來的故事就如同人們所說的那樣,成為歷史。
自那時以來,Damilare 有機會在美國和愛爾蘭的高科技公司如英特爾公司和 McAfee LLC 擔任工程師、架構師和技術領導。在這些角色中,他有幸與才華橫溢的產品團隊合作,架構和建造安全的物聯網 (IoT)、網頁和行動解決方案。作為英特爾在智慧城市創新的一部分,他設計了一個智能交通的 IoT 解決方案,並為一個基於人工智慧 (AI) 的邊緣快速決策平臺的架構做出了貢獻。Damilare 在英特爾的架構圖形與軟體組領導圖書館產品安全專家中心,並享受創建和領導一個跨組織和跨地區的安全工程團隊。他在北美、非洲和歐洲三大洲教授安全架構和設計,並曾擔任奈及利亞開放網路應用安全專案 (OWASP) 的章節領導。他也是一家軟體開發公司的前共同創辦人,客戶涵蓋私營和政府部門。
部落格: https://tech.edgeofus.com
推特: @damilarefagbemi
LinkedIn: https://www.linkedin.com/in/damilarefagbemi/
JC Wheeler 在美國西部行動電話公司開始了她的職業生涯,分析類比網路流量並參與全國首批商業 CDMA 基礎設施的推出,她幫助設計了 CDMA 流量分析的指標和工具。隨後,她轉到摩托羅拉設計行動和衛星網路協議、身份驗證、加密金鑰管理和終端用戶功能。她於 2005 年開始在通用動力公司擔任顧問,設計並整合 VoIP、標頭壓縮、多播通訊協議、空中配置和 IPSec 變體,適用於 MANET 和衛星 SDR 波形。她共同擁有的小型企業獲得了國防部 SBIR 資助,並在亞利桑那創新挑戰賽中成為半決賽選手,該企業的智能手機安全框架也曾是海軍第二階段 SBIR 的分包商,負責建造一個 AI 引擎以排除 MANET 無線電配置的故障。JC 現在已退休,享受研究新技術和宏觀經濟趨勢的樂趣。