Identity & Access Management: A Systems Engineering Approach
暫譯: 身份與存取管理:系統工程方法

Omondi Orondo PhD

  • 出版商: CreateSpace Independ
  • 出版日期: 2014-05-03
  • 售價: $1,360
  • 貴賓價: 9.5$1,292
  • 語言: 英文
  • 頁數: 338
  • 裝訂: Paperback
  • ISBN: 1499357060
  • ISBN-13: 9781499357066
  • 海外代購書籍(需單獨結帳)

商品描述

~~~~ In the second edition, we have added a new chapter on modeling of Access Reviews and Certification. When we started working on the Access and Review Certification models following the background that was already laid in the first edition, it was not clear at the outset that a Systems Engineering formulation could be found. It was therefore remarkable to find out that a very solid model was accessible. We invite new and old readers to take a look at the new Chapter 4. ~~~~ The book is a powerful, novel approach to the analysis and synthesis of IAM systems. It is motivated by the realization that the current practice of Information Systems in general, and Identity and Access Management in particular, is increasingly divorced from its Systems Engineering underpinnings. Even for the most innovative and resourceful practitioners, the architecture, design, implementation and support of enterprise Information Technology systems has taken a complex inferential approach, driven by algorithmic and rule based protocols and standards. This work creates a solid foundation for IAM by using established concepts from Systems Engineering, using systems representations for major IAM processes like authentication and authorization. Such systems formulations may then be used to analyze IAM systems in complicated organizations using established Systems Engineering methods. For example, the book shows that problems in IAM such as risk propagation and authentication processes that were heretofore analyzed in terms of prescriptive, algorithmic or empirical schemes, are indeed amenable to general theoretical treatment. The book is specifically designed to be accessible to the general IT practitioner. It is with this goal in mind that it teases out the concepts in a way that anyone with some college education will be able to understand.

商品描述(中文翻譯)

在第二版中,我們新增了一章關於訪問審查和認證建模的內容。當我們開始根據第一版中已經奠定的背景來研究訪問和審查認證模型時,起初並不清楚是否能找到系統工程的公式。因此,發現一個非常穩固的模型是相當值得注意的。我們邀請新舊讀者來看看新增加的第四章。

本書提供了一種強大且新穎的方法來分析和綜合身份與訪問管理(IAM)系統。這一切的動機源於對當前信息系統(尤其是身份與訪問管理)實踐的認識,這些實踐越來越脫離其系統工程的基礎。即使對於最具創新性和資源豐富的從業者來說,企業信息技術系統的架構、設計、實施和支持也採取了複雜的推理方法,這些方法受到算法和基於規則的協議及標準的驅動。

本書通過使用系統工程中的既定概念,為IAM建立了一個堅實的基礎,並使用系統表示法來描述主要的IAM過程,如身份驗證和授權。這些系統公式可以用來分析複雜組織中的IAM系統,並使用既定的系統工程方法。例如,本書顯示IAM中的問題,如風險傳播和身份驗證過程,過去通常是以規範性、算法或經驗方案進行分析的,實際上是可以進行一般理論處理的。

本書特別設計為讓一般IT從業者能夠輕鬆理解。正是基於這一目標,它以一種任何具有大學教育背景的人都能理解的方式來提煉這些概念。