The Ciso's Next Frontier: Ai, Post-Quantum Cryptography and Advanced Security Paradigms
暫譯: CISO的下一個前沿:人工智慧、後量子密碼學與先進安全範式

Badhwar, Raj

  • 出版商: Springer
  • 出版日期: 2021-08-07
  • 售價: $3,370
  • 貴賓價: 9.5$3,202
  • 語言: 英文
  • 頁數: 387
  • 裝訂: Hardcover - also called cloth, retail trade, or trade
  • ISBN: 3030753530
  • ISBN-13: 9783030753535
  • 相關分類: 資訊安全量子計算
  • 海外代購書籍(需單獨結帳)

商品描述

This book provides an advanced understanding of cyber threats as well as the risks companies are facing. It includes a detailed analysis of many technologies and approaches important to decreasing, mitigating or remediating those threats and risks. Cyber security technologies discussed in this book are futuristic and current. Advanced security topics such as secure remote work, data security, network security, application and device security, cloud security, and cyber risk and privacy are presented in this book. At the end of every chapter, an evaluation of the topic from a CISO's perspective is provided. This book also addresses quantum computing, artificial intelligence and machine learning for cyber security
The opening chapters describe the power and danger of quantum computing, proposing two solutions for protection from probable quantum computer attacks: the tactical enhancement of existing algorithms to make them quantum-resistant, and the strategic implementation of quantum-safe algorithms and cryptosystems. The following chapters make the case for using supervised and unsupervised AI/ML to develop predictive, prescriptive, cognitive and auto-reactive threat detection, mitigation, and remediation capabilities against advanced attacks perpetrated by sophisticated threat actors, APT and polymorphic/metamorphic malware.
CISOs must be concerned about current on-going sophisticated cyber-attacks, and can address them with advanced security measures. The latter half of this book discusses some current sophisticated cyber-attacks and available protective measures enabled by the advancement of cybersecurity capabilities in various IT domains. Chapters 6-10 discuss secure remote work; chapters 11-17, advanced data security paradigms; chapters 18-28, Network Security; chapters 29-35, application and device security; chapters 36-39, Cloud security; and chapters 40-46 organizational cyber risk measurement and event probability.
Security and IT engineers, administrators and developers, CIOs, CTOs, CISOs, and CFOs will want to purchase this book. Risk personnel, CROs, IT and Security Auditors as well as security researchers and journalists will also find this useful.

商品描述(中文翻譯)

本書提供了對網路威脅及企業面臨風險的深入理解。內容包括對許多技術和方法的詳細分析,這些技術和方法對於減少、緩解或修復這些威脅和風險至關重要。本書討論的網路安全技術包括未來的和當前的技術。高級安全主題如安全遠端工作、數據安全、網路安全、應用程式和設備安全、雲端安全,以及網路風險和隱私等都在本書中呈現。每章結尾都提供了從首席資訊安全官(CISO)角度對該主題的評估。本書還探討了量子計算、人工智慧和機器學習在網路安全中的應用。

開篇章節描述了量子計算的力量與危險,提出了兩種保護措施以防範可能的量子電腦攻擊:一是戰術性增強現有算法,使其具備抗量子攻擊的能力;二是戰略性實施量子安全算法和加密系統。隨後的章節主張使用監督式和非監督式的人工智慧/機器學習來開發預測性、處方性、認知性和自動反應的威脅檢測、緩解和修復能力,以應對由複雜威脅行為者、APT(高級持續性威脅)和多形態/變形惡意軟體所發動的高級攻擊。

CISO必須關注當前持續的複雜網路攻擊,並可以通過先進的安全措施來應對。本書的後半部分討論了一些當前的複雜網路攻擊及其可用的保護措施,這些措施得益於各個IT領域網路安全能力的進步。第6至10章討論安全遠端工作;第11至17章探討高級數據安全範式;第18至28章涵蓋網路安全;第29至35章專注於應用程式和設備安全;第36至39章講述雲端安全;第40至46章則涉及組織網路風險測量和事件概率。

安全和IT工程師、管理員和開發人員、CIO、CTO、CISO和CFO都會想要購買本書。風險人員、CRO、IT和安全審計員以及安全研究人員和記者也會覺得這本書非常有用。

作者簡介

Raj Badhwar has 25+ years of experience within the Cybersecurity and IT industry. He is currently the CISO for Voya Financial, and has previously held senior Security and IT leadership roles at AIG, BAE Systems Inc., Bank of America, Time Warner Cable, AOL Time Warner, and Sprint.
Raj is a currently a director and secretary of the board of the National Technology Security Coalition (NTSC). He also serves on the cybersecurity advisory boards of Pace University, Rutgers University, and Ithaca College; the customer advisory board for Venafi; and the CISO advisory council for Infosys.
Raj is a certified information systems security professional (CISSP), a certified ethical hacker (CEH), and a FINRA licensed securities professional (Series 99). He has co-authored 14 security patents, and has written and presented in the areas of advanced encryption, post-quantum cryptography, zero trust networks, cloud security pat-terns, and secure remote work paradigms. He has also been inter-viewed as a cybersecurity subject matter expert by WSJ. Raj is proficient in three languages, and conversant in another three languages.
Raj graduated from George Washington University (GWU) with an MS in Information Systems Technology and also holds a BS in Electrical and Electronics engineering from Karnatak University. Raj is an alumnus of St Francis College, Lucknow.

作者簡介(中文翻譯)

Raj Badhwar 在網路安全和資訊科技產業擁有超過 25 年的經驗。他目前是 Voya Financial 的首席資訊安全官 (CISO),並曾在 AIG、BAE Systems Inc.、美國銀行、時代華納有線電視、AOL 時代華納和 Sprint 擔任高級安全和資訊科技領導職位。

Raj 目前是全國科技安全聯盟 (NTSC) 董事會的董事和秘書。他還擔任 Pace University、Rutgers University 和 Ithaca College 的網路安全諮詢委員會成員;Venafi 的客戶諮詢委員會成員;以及 Infosys 的 CISO 諮詢委員會成員。

Raj 是認證資訊系統安全專業人員 (CISSP)、認證道德駭客 (CEH),以及持有 FINRA 註冊證券專業人員 (Series 99) 的執照。他共同撰寫了 14 項安全專利,並在高級加密、後量子密碼學、零信任網路、雲安全模式和安全遠端工作範式等領域撰寫和發表過文章。他還曾被《華爾街日報》採訪,作為網路安全主題專家。Raj 精通三種語言,並能使用另外三種語言進行交流。

Raj 畢業於喬治華盛頓大學 (GWU),獲得資訊系統技術碩士學位,並持有卡納塔克大學的電氣與電子工程學士學位。Raj 是聖方濟各學院 (St Francis College) 的校友。