相關主題
商品描述
This book explains the ongoing war between private business and cyber criminals, state-sponsored attackers, terrorists, and hacktivist groups. Further, it explores the risks posed by trusted employees that put critical information at risk through malice, negligence, or simply making a mistake. It clarifies the historical context of the current situation as it relates to cybersecurity, the challenges facing private business, and the fundamental changes organizations can make to better protect themselves. The problems we face are difficult, but they are not hopeless.
Cybercrime continues to grow at an astounding rate. With constant coverage of cyber-attacks in the media, there is no shortage of awareness of increasing threats. Budgets have increased and executives are implementing stronger defenses. Nonetheless, breaches continue to increase in frequency and scope.
Building a Comprehensive IT Security Program shares why organizations continue to fail to secure their critical information assets and explains the internal and external adversaries facing organizations today. This book supplies the necessary knowledge and skills to protect organizations better in the future by implementing a comprehensive approach to security.
Jeremy Wittkop’s security expertise and critical experience provides insights into topics such as:
- Who is attempting to steal information and why?
- What are critical information assets?
- How are effective programs built?
- How is stolen information capitalized?
- How do we shift the paradigm to better protect our organizations?
- How we can make the cyber world safer for everyone to do business?
商品描述(中文翻譯)
這本書解釋了私營企業與網路犯罪分子、國家贊助的攻擊者、恐怖分子和駭客行動主義團體之間持續的戰爭。此外,它探討了受信任的員工所帶來的風險,這些風險可能因惡意、疏忽或單純的錯誤而使關鍵資訊面臨危險。它闡明了當前情況的歷史背景,與網路安全相關的挑戰,以及組織可以採取的根本性變革,以更好地保護自己。我們面臨的問題雖然困難,但並非無望。
網路犯罪持續以驚人的速度增長。隨著媒體對網路攻擊的持續報導,對日益增加的威脅的認識並不缺乏。預算已增加,執行長們正在實施更強的防禦措施。儘管如此,違規事件的頻率和範圍仍在增加。
《建立全面的 IT 安全計畫》分享了為什麼組織仍然無法保護其關鍵資訊資產,並解釋了當今組織面臨的內部和外部對手。本書提供了必要的知識和技能,以便未來通過實施全面的安全方法來更好地保護組織。
Jeremy Wittkop 的安全專業知識和關鍵經驗提供了對以下主題的見解:
- 誰在試圖竊取資訊,為什麼?
- 什麼是關鍵資訊資產?
- 如何建立有效的計畫?
- 如何利用被竊取的資訊?
- 我們如何改變思維模式以更好地保護我們的組織?
- 我們如何讓網路世界對每個人做生意更安全?