Mastering Cloud Security Posture Management (CSPM): Secure multi-cloud infrastructure across AWS, Azure, and Google Cloud using proven techniques
暫譯: 掌握雲端安全姿態管理 (CSPM):使用經驗法則保障 AWS、Azure 和 Google Cloud 的多雲基礎設施安全
Nomani, Qamar
- 出版商: Packt Publishing
- 出版日期: 2024-01-31
- 售價: $2,220
- 貴賓價: 9.5 折 $2,109
- 語言: 英文
- 頁數: 472
- 裝訂: Quality Paper - also called trade paper
- ISBN: 1837638403
- ISBN-13: 9781837638406
-
相關分類:
Amazon Web Services、Google Cloud、Microsoft Azure、資訊安全
海外代購書籍(需單獨結帳)
商品描述
Strengthen your security posture in all aspects of CSPM technology, from security infrastructure design to implementation strategies, automation, and remedial actions using operational best practices across your cloud environment
Key Features:
- Choose the right CSPM tool to rectify cloud security misconfigurations based on organizational requirements
- Optimize your security posture with expert techniques for in-depth cloud security insights
- Improve your security compliance score by adopting a secure-by-design approach and implementing security automation
- Purchase of the print or Kindle book includes a free PDF eBook
Book Description:
This book will help you secure your cloud infrastructure confidently with cloud security posture management (CSPM) through expert guidance that'll enable you to implement CSPM effectively, ensuring an optimal security posture across multi-cloud infrastructures.
The book begins by unraveling the fundamentals of cloud security, debunking myths about the shared responsibility model, and introducing key concepts such as defense-in-depth, the Zero Trust model, and compliance. Next, you'll explore CSPM's core components, tools, selection criteria, deployment strategies, and environment settings, which will be followed by chapters on onboarding cloud accounts, dashboard customization, cloud assets inventory, configuration risks, and cyber threat hunting.
As you progress, you'll get to grips with operational practices, vulnerability and patch management, compliance benchmarks, and security alerts. You'll also gain insights into cloud workload protection platforms (CWPPs). The concluding chapters focus on Infrastructure as Code (IaC) scanning, DevSecOps, and workflow automation, providing a thorough understanding of securing multi-cloud environments.
By the end of this book, you'll have honed the skills to make informed decisions and contribute effectively at every level, from strategic planning to day-to-day operations.
What You Will Learn:
- Find out how to deploy and onboard cloud accounts using CSPM tools
- Understand security posture aspects such as the dashboard, asset inventory, and risks
- Explore the Kusto Query Language (KQL) and write threat hunting queries
- Explore security recommendations and operational best practices
- Get to grips with vulnerability, patch, and compliance management, and governance
- Familiarize yourself with security alerts, monitoring, and workload protection best practices
- Manage IaC scan policies and learn how to handle exceptions
Who this book is for:
If you're a cloud security administrator, security engineer, or DevSecOps engineer, you'll find this book useful every step of the way-from proof of concept to the secured, automated implementation of CSPM with proper auto-remediation configuration. This book will also help cybersecurity managers, security leads, and cloud security architects looking to explore the decision matrix and key requirements for choosing the right product. Cloud security enthusiasts who want to enhance their knowledge to bolster the security posture of multi-cloud infrastructure will also benefit from this book.
商品描述(中文翻譯)
加強您在CSPM技術各方面的安全姿態,從安全基礎設施設計到實施策略、自動化及使用最佳操作實踐進行補救行動,涵蓋您的雲端環境
主要特點:
- 根據組織需求選擇合適的CSPM工具來修正雲端安全錯誤配置
- 利用專家技術優化您的安全姿態,深入了解雲端安全
- 通過採用安全設計的方法和實施安全自動化來提高您的安全合規性評分
- 購買印刷版或Kindle書籍可獲得免費PDF電子書
書籍描述:
本書將幫助您自信地保護您的雲端基礎設施,通過雲端安全姿態管理(CSPM)的專家指導,使您能夠有效實施CSPM,確保在多雲基礎設施中達到最佳安全姿態。
本書首先揭示雲端安全的基本原則,揭穿有關共享責任模型的迷思,並介紹防禦深度、零信任模型和合規性等關鍵概念。接下來,您將探索CSPM的核心組件、工具、選擇標準、部署策略和環境設置,隨後的章節將涵蓋雲端帳戶的上線、儀表板自定義、雲端資產清單、配置風險和網路威脅獵捕。
隨著進展,您將掌握操作實踐、漏洞和補丁管理、合規基準和安全警報。您還將深入了解雲工作負載保護平台(CWPPs)。結尾章節專注於基礎設施即代碼(IaC)掃描、DevSecOps和工作流程自動化,提供對保護多雲環境的全面理解。
在本書結束時,您將磨練出做出明智決策的技能,並在每個層面上有效貢獻,從戰略規劃到日常操作。
您將學到什麼:
- 了解如何使用CSPM工具部署和上線雲端帳戶
- 理解安全姿態的各個方面,如儀表板、資產清單和風險
- 探索Kusto查詢語言(KQL)並撰寫威脅獵捕查詢
- 探索安全建議和操作最佳實踐
- 掌握漏洞、補丁和合規管理及治理
- 熟悉安全警報、監控和工作負載保護最佳實踐
- 管理IaC掃描政策並學習如何處理例外情況
本書適合誰:
如果您是雲端安全管理員、安全工程師或DevSecOps工程師,您會發現本書在每一步都非常有用——從概念驗證到安全、自動化的CSPM實施,並配置適當的自動補救。本書也將幫助尋求探索決策矩陣和選擇合適產品的關鍵要求的網路安全經理、安全負責人和雲端安全架構師。希望增強知識以提升多雲基礎設施安全姿態的雲端安全愛好者也將從本書中受益。