Zero Trust and Third-Party Risk: Reduce the Blast Radius
暫譯: 零信任與第三方風險:減少爆炸半徑
Rasner, Gregory C.
- 出版商: Wiley
- 出版日期: 2023-10-03
- 售價: $1,340
- 貴賓價: 9.5 折 $1,273
- 語言: 英文
- 頁數: 240
- 裝訂: Hardcover - also called cloth, retail trade, or trade
- ISBN: 1394203144
- ISBN-13: 9781394203147
-
相關分類:
Web-crawler 網路爬蟲、資訊安全
海外代購書籍(需單獨結帳)
商品描述
Dramatically lower the cyber risk posed by third-party software and vendors in your organization
In Zero Trust and Third-Party Risk, veteran cybersecurity leader Gregory Rasner delivers an accessible and authoritative walkthrough of the fundamentals and finer points of the zero trust philosophy and its application to the mitigation of third-party cyber risk. In this book, you'll explore how to build a zero trust program and nurture it to maturity. You will also learn how and why zero trust is so effective in reducing third-party cybersecurity risk.
The author uses the story of a fictional organization--KC Enterprises--to illustrate the real-world application of zero trust principles. He takes you through a full zero trust implementation cycle, from initial breach to cybersecurity program maintenance and upkeep. You'll also find:
- Explanations of the processes, controls, and programs that make up the zero trust doctrine
- Descriptions of the five pillars of implementing zero trust with third-party vendors
- Numerous examples, use-cases, and stories that highlight the real-world utility of zero trust
An essential resource for board members, executives, managers, and other business leaders, Zero Trust and Third-Party Risk will also earn a place on the bookshelves of technical and cybersecurity practitioners, as well as compliance professionals seeking effective strategies to dramatically lower cyber risk.
商品描述(中文翻譯)
顯著降低您組織中第三方軟體和供應商所帶來的網路風險
在零信任與第三方風險一書中,資深網路安全領導者Gregory Rasner提供了一個易於理解且權威的指南,介紹零信任哲學的基本原則及其在減輕第三方網路風險中的應用。在這本書中,您將探索如何建立零信任計畫並將其培養至成熟。您還將了解零信任在降低第三方網路安全風險方面的有效性及其原因。
作者以虛構組織KC Enterprises的故事來說明零信任原則的實際應用。他帶您經歷完整的零信任實施週期,從最初的違規到網路安全計畫的維護和保養。您還會發現:
- 構成零信任教義的過程、控制和計畫的解釋
- 實施零信任與第三方供應商的五大支柱的描述
- 眾多例子、使用案例和故事,突顯零信任的實際效用
作為董事會成員、高層主管、經理和其他商業領導者的重要資源,零信任與第三方風險也將在技術和網路安全從業者以及尋求有效策略以顯著降低網路風險的合規專業人士的書架上佔有一席之地。
作者簡介
GREGORY C. RASNER is the author of the previous book Cybersecurity & Third-Party Risk: Third-Party Threat Hunting and the content creator of training and certification program "Third-Party Cyber Risk Assessor" (Third Party Risk Association, 2023). Greg is the co-chair for ISC2 Third-Party Risk Task Force and is an advisor to local colleges on technology and cybersecurity.
作者簡介(中文翻譯)
格雷戈里·C·拉斯納是前一本書網路安全與第三方風險:第三方威脅獵捕的作者,以及培訓和認證計畫「第三方網路風險評估師」(第三方風險協會,2023)的內容創作者。格雷戈是ISC2第三方風險工作小組的共同主席,並擔任當地大學在技術和網路安全方面的顧問。