System Administration Ethics: Ten Commandments for Security and Compliance in a Modern Cyber World
暫譯: 系統管理倫理:現代網路安全與合規的十條戒律

Ljubuncic, Igor, Litterer, Tom

  • 出版商: Apress
  • 出版日期: 2019-10-31
  • 售價: $2,190
  • 貴賓價: 9.5$2,081
  • 語言: 英文
  • 頁數: 290
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 1484249879
  • ISBN-13: 9781484249871
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

Successfully navigate through the ever-changing world of technology and ethics and reconcile system administration principles for separation of duty, account segmentation, administrative groups and data protection. As security breaches become more common, businesses need to protect themselves when facing ethical dilemmas in today's digital landscape. This book serves as a equitable guideline in helping system administrators, engineers - as well as their managers - on coping with the ethical challenges of technology and security in the modern data center by providing real-life stories, scenarios, and use cases from companies both large and small.
You'll examine the problems and challenges that people working with customer data, security and system administration may face in the cyber world and review the boundaries and tools for remaining ethical in an environment where it is so easy to step over a line - intentionally or accidentally. You'll also see how to correctly deal with multiple ethical situations, problems that arise, and their potential consequences, with examples from both classic and DevOps-based environments.
Using the appropriate rules of engagement, best policies and practices, and proactive "building/strengthening" behaviors, System Administration Ethics provides the necessary tools to securely run an ethically correct environment.
What You'll Learn
  • The concepts of Least Privilege and Need to Know
  • Request change approval and conduct change communication
  • Follow "Break Glass" emergency procedures
  • Code with data breaches, hacking and security violations, and proactively embrace and design for failures
  • Build and gain trust with employees and build the right ethical culture
  • Review what managers can do to improve ethics and protect their employees

Who This Book Is ForThis book's primary audience includes system administrators and information security specialists engaged with the creation, process and administration of security policies and systems. A secondary audience includes company leaders seeking to improve the security, privacy, and behavioral practices.

商品描述(中文翻譯)

成功地在不斷變化的科技與倫理世界中導航,並調和系統管理原則,包括職責分離、帳戶分段、管理群組和數據保護。隨著安全漏洞變得越來越普遍,企業在面對當今數位環境中的倫理困境時,需要保護自己。本書作為一個公平的指導方針,幫助系統管理員、工程師及其管理者應對現代數據中心中技術與安全的倫理挑戰,提供來自大小公司的真實故事、情境和案例。

您將檢視與客戶數據、安全性和系統管理相關的工作人員在網路世界中可能面臨的問題和挑戰,並回顧在一個如此容易越界的環境中保持倫理的界限和工具——無論是故意還是意外。您還將看到如何正確處理多種倫理情境、出現的問題及其潛在後果,並從經典和基於 DevOps 的環境中舉例說明。

透過適當的參與規則、最佳政策和實踐,以及主動的「建設/加強」行為,《系統管理倫理》提供了安全運行倫理正確環境所需的工具。

您將學到的內容:
- 最小權限和需要知道的概念
- 請求變更批准並進行變更溝通
- 遵循「打破玻璃」的緊急程序
- 針對數據洩露、駭客攻擊和安全違規進行編碼,並主動擁抱和設計失敗
- 與員工建立信任並建立正確的倫理文化
- 回顧管理者可以做什麼來改善倫理並保護員工

本書的主要讀者包括從事安全政策和系統創建、流程及管理的系統管理員和資訊安全專家。次要讀者包括希望改善安全性、隱私和行為實踐的公司領導者。

作者簡介

Igor Ljubuncic is a physicist by vocation and a Linux geek by profession. Igor comes with many years of experience in the hi-tech industry, including medical, high-performance computing, data center, cloud, and hosting fields, with emphasis on complex problem solving and the scientific method. To date, Igor's portfolio includes 15 patents, 16 books, several open-source projects, numerous articles published in leading journals and magazines, and presentations at prestigious international conferences like LinuxCon, CloudOpen, OpenStack days, IEEE events, and others. In his free time, Igor writes car reviews, fantasy novels and manages his award-winning blog, dedoimedo.com

Tom Litterer is a business leader and a future-focused thinker with three decades of experience in the industry. Tom spent the first six years of his career as a UNIX system administrator, transitioning from novice to expert. He has since managed each of the key areas within IT, including help desk, site operations, high performance computing (HPC) services, identity and access management, lab operations, internal cloud deployment, engineering tools and licensing. He was also the global manager of Intel's HPC servers and storage chip design environment. Tom is currently the Associate Director of Data Center and Cloud Infrastructure at Portland State University (PSU), Oregon, US. In this role, he is responsible for all Linux, Windows, virtualization, storage, backup, and HPC services in local data centers as well as the university's cloud infrastructure.

作者簡介(中文翻譯)

伊戈爾·柳本奇克是一位職業物理學家和專業的Linux極客。伊戈爾在高科技產業擁有多年經驗,涵蓋醫療、高效能計算、數據中心、雲端和託管領域,特別強調複雜問題解決和科學方法。迄今為止,伊戈爾的作品包括15項專利、16本書籍、幾個開源專案、在領先期刊和雜誌上發表的多篇文章,以及在LinuxCon、CloudOpen、OpenStack Days、IEEE活動等著名國際會議上的演講。在空閒時間,伊戈爾撰寫汽車評論、奇幻小說,並管理他獲獎的部落格 dedoimedo.com。

湯姆·利特勒是一位商業領袖和未來導向的思考者,擁有三十年的行業經驗。湯姆的職業生涯前六年擔任UNIX系統管理員,從新手轉變為專家。此後,他管理了IT內部的每個關鍵領域,包括幫助台、現場運營、高效能計算(HPC)服務、身份和訪問管理、實驗室運營、內部雲部署、工程工具和授權。他還曾擔任英特爾HPC伺服器和存儲晶片設計環境的全球經理。湯姆目前是美國俄勒岡州波特蘭州立大學(PSU)數據中心和雲基礎設施的副主任。在這個角色中,他負責當地數據中心的所有Linux、Windows、虛擬化、存儲、備份和HPC服務,以及大學的雲基礎設施。