買這商品的人也買了...
-
$560$476 -
$400$316 -
$250$198 -
$1,830$1,739 -
$1,881Aws Certified Cloud Practitioner Study Guide with 500 Practice Test Questions: Foundational (Clf-C02) Exam (Paperback)
-
$2,090Comptia Datasys+ Study Guide: Exam Ds0-001 (Paperback)
-
$520$411 -
$300$237 -
$650$325 -
$880$695
相關主題
商品描述
The first expert discussion of the foundations of cybersecurity
In Cybersecurity First Principles, Rick Howard, the Chief Security Officer, Chief Analyst, and Senior fellow at The Cyberwire, challenges the conventional wisdom of current cybersecurity best practices, strategy, and tactics and makes the case that the profession needs to get back to first principles. The author convincingly lays out the arguments for the absolute cybersecurity first principle and then discusses the strategies and tactics required to achieve it.
In the book, you'll explore:
- Infosec history from the 1960s until the early 2020s and why it has largely failed
- What the infosec community should be trying to achieve instead
- The arguments for the absolute and atomic cybersecurity first principle
- The strategies and tactics to adopt that will have the greatest impact in pursuing the ultimate first principle
- Case studies through a first principle lens of the 2015 OPM hack, the 2016 DNC Hack, the 2019 Colonial Pipeline hack, and the Netflix Chaos Monkey resilience program
- A top to bottom explanation of how to calculate cyber risk for two different kinds of companies
This book is perfect for cybersecurity professionals at all levels: business executives and senior security professionals, mid-level practitioner veterans, newbies coming out of school as well as career-changers seeking better career opportunities, teachers, and students.
商品描述(中文翻譯)
網路安全基礎的首次專家討論
在網路安全第一原則一書中,Rick Howard,Cyberwire的首席安全官、首席分析師及高級研究員,挑戰了當前網路安全最佳實踐、策略和戰術的傳統智慧,並主張這個行業需要回歸第一原則。作者有說服力地闡述了絕對網路安全第一原則的論點,然後討論了實現該原則所需的策略和戰術。
在本書中,您將探索:
- 從1960年代到2020年代初的資訊安全歷史,以及為何它在很大程度上失敗了
- 資訊安全社群應該努力實現的目標
- 絕對和原子網路安全第一原則的論點
- 採用的策略和戰術,將對追求最終第一原則產生最大影響
- 透過第一原則的視角分析2015年OPM駭客事件、2016年DNC駭客事件、2019年Colonial Pipeline駭客事件以及Netflix的Chaos Monkey韌性計畫的案例研究
- 如何為兩種不同類型的公司計算網路風險的全面解釋
本書非常適合各級網路安全專業人士:商業高管和高級安全專業人士、中層實務工作者、剛從學校畢業的新手,以及尋求更好職業機會的職業轉換者、教師和學生。