Practical Internet of Things Security: Design a security framework for an Internet connected ecosystem, 2/e
暫譯: 實用物聯網安全:為互聯網連接生態系統設計安全框架,第二版
Brian Russell, Drew Van Duren
- 出版商: Packt Publishing
- 出版日期: 2018-11-30
- 售價: $2,220
- 貴賓價: 9.5 折 $2,109
- 語言: 英文
- 頁數: 382
- 裝訂: Paperback
- ISBN: 178862582X
- ISBN-13: 9781788625821
-
相關分類:
物聯網 IoT、資訊安全
-
相關翻譯:
物聯網安全, 2/e (Practical Internet of Things Security: Design a security framework for an Internet connected ecosystem, 2/e) (簡中版)
商品描述
A practical, indispensable security guide that will navigate you through the complex realm of securely building and deploying systems in our IoT-connected world
Key Features
- Learn best practices to secure your data from the device to the cloud
- Use systems security engineering and privacy-by-design principles to design a secure IoT ecosystem
- A practical guide that will help you design and implement cyber security strategies for your organization
Book Description
With the advent of the Internet of Things (IoT), businesses have to defend against new types of threat. The business ecosystem now includes the cloud computing infrastructure, mobile and fixed endpoints that open up new attack surfaces. It therefore becomes critical to ensure that cybersecurity threats are contained to a minimum when implementing new IoT services and solutions.
This book shows you how to implement cybersecurity solutions, IoT design best practices, and risk mitigation methodologies to address device and infrastructure threats to IoT solutions.
In this second edition, you will go through some typical and unique vulnerabilities seen within various layers of the IoT technology stack and also learn new ways in which IT and physical threats interact. You will then explore the different engineering approaches a developer/manufacturer might take to securely design and deploy IoT devices. Furthermore, you will securely develop your own custom additions for an enterprise IoT implementation. You will also be provided with actionable guidance through setting up a cryptographic infrastructure for your IoT implementations. You will then be guided on the selection and configuration of Identity and Access Management solutions for an IoT implementation. In conclusion, you will explore cloud security architectures and security best practices for operating and managing cross-organizational, multi-domain IoT deployments.
What you will learn
- Discuss the need for separate security requirements and apply security engineering principles on IoT devices
- Master the operational aspects of planning, deploying, managing, monitoring, and detecting the remediation and disposal of IoT systems
- Use Blockchain solutions for IoT authenticity and integrity
- Explore additional privacy features emerging in the IoT industry, such as anonymity, tracking issues, and countermeasures
- Design a fog computing architecture to support IoT edge analytics
- Detect and respond to IoT security incidents and compromises
Who this book is for
This book targets IT Security Professionals and Security Engineers (including pentesters, security architects and ethical hackers) who would like to ensure the security of their organization's data when connected through the IoT. Business analysts and managers will also find this book useful.
Table of Contents
- A Brave New World
- Vulnerabilities, Attacks and Countermeasures
- Approaches to Secure Development
- Secure Design of IoT Devices
- Operational Security Life Cycle
- Cryptographic Fundamentals for IoT Security Engineering
- Identity and Access Management Solutions for the IoT
- Mitigating IoT Privacy Concerns
- Setting Up an IoT Compliance Monitoring Program
- Cloud Security for the IoT
- IoT Incident Response and Forensic Analysis
商品描述(中文翻譯)
一本實用且不可或缺的安全指南,將引導您在我們物聯網連接的世界中安全地構建和部署系統的複雜領域
主要特點
- 學習最佳實踐,保護您的數據從設備到雲端的安全
- 使用系統安全工程和隱私設計原則來設計安全的物聯網生態系統
- 一本實用指南,幫助您為您的組織設計和實施網絡安全策略
書籍描述
隨著物聯網(IoT)的興起,企業必須防範新類型的威脅。商業生態系統現在包括雲計算基礎設施、移動和固定端點,這些都開啟了新的攻擊面。因此,在實施新的物聯網服務和解決方案時,確保網絡安全威脅被控制在最低限度變得至關重要。
本書向您展示如何實施網絡安全解決方案、物聯網設計最佳實踐和風險緩解方法,以應對物聯網解決方案中的設備和基礎設施威脅。
在第二版中,您將了解在物聯網技術堆疊的各個層面中出現的一些典型和獨特的漏洞,並學習IT和物理威脅互動的新方式。然後,您將探索開發者/製造商可能採取的不同工程方法,以安全地設計和部署物聯網設備。此外,您將安全地開發自己的自定義擴展,以實現企業物聯網的實施。您還將獲得可操作的指導,通過設置加密基礎設施來支持您的物聯網實施。接著,您將獲得有關選擇和配置身份和訪問管理解決方案的指導,以便於物聯網實施。最後,您將探索雲安全架構和跨組織、多領域物聯網部署的安全最佳實踐。
您將學到什麼
- 討論分開的安全需求的必要性,並在物聯網設備上應用安全工程原則
- 掌握規劃、部署、管理、監控以及檢測物聯網系統的修復和處置的操作方面
- 使用區塊鏈解決方案來確保物聯網的真實性和完整性
- 探索物聯網行業中出現的其他隱私特徵,如匿名性、追蹤問題和對策
- 設計一個雲邊緣計算架構以支持物聯網邊緣分析
- 檢測和應對物聯網安全事件和妥協
本書適合誰
本書針對IT安全專業人員和安全工程師(包括滲透測試者、安全架構師和道德駭客),希望在通過物聯網連接時確保其組織數據的安全。商業分析師和經理也會發現本書的實用性。
目錄
- 勇敢的新世界
- 漏洞、攻擊與對策
- 安全開發的方法
- 物聯網設備的安全設計
- 操作安全生命週期
- 物聯網安全工程的加密基礎
- 物聯網的身份和訪問管理解決方案
- 緩解物聯網隱私問題
- 設置物聯網合規監控計劃
- 物聯網的雲安全
- 物聯網事件響應和取證分析