Management of Information Security, 6/e (IE-Paperback)【內含Access Code,經刮除不受退】
暫譯: 資訊安全管理,第6版 (IE-平裝本)【內含存取碼,經刮除不受退】

Michael E. Whitman , Herbert J. Mattord

  • 出版商: Cengage Learning
  • 出版日期: 2019-01-01
  • 定價: $1,120
  • 售價: 9.8$1,098
  • 語言: 英文
  • 頁數: 752
  • ISBN: 9814834734
  • ISBN-13: 9789814834735
  • 相關分類: 資訊安全
  • 立即出貨 (庫存=1)

買這商品的人也買了...

相關主題

商品描述

本書序言

    This sixth edition of Management of Information Security tightens its focus on the managerial aspects of information security, continues to expand the coverage of governance and compliance issues, and continues to reduce the coverage of foundational and technical components. While retaining enough foundational material to allow reinforcement of key concepts, this edition has fewer technical examples. This edition also contains updated in-depth discussions and Offline features, and additional coverage in key managerial areas: risk management, information security governance, access control models, and information security program assessment and metrics.
    The material on personnel management has been consolidated and reorganized. Personnel placement, staffing, and credentials are now covered in Chapter 5, and employment practices are discussed in Chapter 9. Digital forensics is now covered in Chapter 2.
    In general, the entire text has been updated and re-organized to reflect changes in the field, including revisions to sections on national and international laws and standards, such as the ISO 27000 series, among others. Throughout the text, the content has been updated, with newer and more relevant examples and discussions. A complete coverage matrix of the topics in this edition is available to instructors to enable mapping of the previous coverage to the new structure. Please contact your sales representative for access to the matrix.

本書特色

●CERTIFIED INFORMATION SYSTEMS SECURITY PROFESSIONALS (CISSP) AND CERTIFIED INFORMATION SECURITY MANAGERS (CISM) INFORMATION INTEGRATED THROUGHOUT. The authors have carefully incorporated both CISSP and CISM bodies of knowledge throughout the text to prepare your students for certification. Chapter scenarios follow a fictional company as it encounters various information security issues. Meaningful group discussion questions follow each scenario to prompt lively classroom dialogue and debate.
●WRITTEN BY SECURITY PROFESSIONALS. This text and its ancillary features were meticulously designed by security professionals who are also teaching faculty members. Their experiences and expertise from classroom and industry are woven throughout chapter content to provide instructors with a well-designed, comprehensive security management instructional tool, complete with modern virtual ancillaries and teaching support aids. The text reflects key industry trends and issues, while facilitating the organization, delivery and assessment of student knowledge.
●"VIEWPOINT" ESSAYS ILLUSTRATE INTRUIGING TOPICS. Written by security practitioners and academics, Viewpoint essays in each chapter use real-world examples to illustrate chapter concepts at work in today's business environments.
●ACTIVITIES, QUESTIONS AND PROJECTS REINFORCE SKILLS. Your students have numerous opportunities to apply what they are learning with in-depth review questions, hands-on activities and case projects in every chapter.
●EMPHASIS ON KEY EXECUTIVE AND MANAGERIAL ASPECTS OF INFORMATION SECURITY. As they progress through the text, students build on their strong foundation of key concepts and become proficient in the most important areas of information security and management.

商品描述(中文翻譯)

本書序言

    本書《資訊安全管理》第六版更加專注於資訊安全的管理面向,持續擴展對治理和合規問題的涵蓋範圍,並減少對基礎和技術組件的討論。雖然保留了足夠的基礎材料以加強關鍵概念,但本版的技術範例較少。本版還包含更新的深入討論和離線功能,以及在關鍵管理領域的額外內容:風險管理、資訊安全治理、存取控制模型,以及資訊安全計畫評估和指標。

    人員管理的材料已被整合和重新組織。人員配置、招聘和資歷現在在第五章中討論,雇用實務則在第九章中探討。數位取證現在在第二章中涵蓋。

    總體而言,整個文本已更新和重新組織,以反映該領域的變化,包括對國家和國際法律及標準(如ISO 27000系列等)部分的修訂。整個文本的內容已更新,包含更新且更相關的範例和討論。本版主題的完整涵蓋矩陣可供教師使用,以便將先前的內容映射到新結構。請聯繫您的業務代表以獲取該矩陣的訪問權限。

本書特色

● 整合了認證資訊系統安全專業人員(CISSP)和認證資訊安全管理人員(CISM)的資訊。作者在整個文本中仔細融入了CISSP和CISM的知識體系,以幫助您的學生準備認證考試。章節情境跟隨一個虛構公司,該公司面臨各種資訊安全問題。每個情境後面都有有意義的小組討論問題,以促進生動的課堂對話和辯論。

● 由安全專業人士撰寫。本書及其附屬功能由同時擔任教學成員的安全專業人士精心設計。他們在課堂和行業中的經驗和專業知識貫穿於章節內容中,為教師提供了一個設計良好、全面的安全管理教學工具,並配備現代虛擬附屬品和教學支持工具。文本反映了關鍵行業趨勢和問題,同時促進學生知識的組織、傳遞和評估。

● “觀點”文章闡述引人入勝的主題。由安全從業者和學者撰寫的觀點文章在每章中使用現實世界的範例來說明章節概念在當今商業環境中的應用。

● 活動、問題和專案加強技能。您的學生在每章中都有眾多機會應用他們所學的知識,透過深入的回顧問題、實作活動和案例專案。

● 強調資訊安全的關鍵執行和管理面向。隨著他們在文本中的進展,學生在關鍵概念的堅實基礎上不斷深化,並在資訊安全和管理的最重要領域變得熟練。

目錄大綱

1. Introduction to Management of Information Security
2. Compliance: Law and Ethics
3. Governance and Strategic Planning for Security
4. Information Security Policy
5. Developing the Security Program
6. Risk Management: Identifying and Assessing Risk
7. Risk Management: Controlling Risk
8. Security Management Models
9. Security Management Practices
10. Planning for Contingencies
11. Security Maintenance 
12. Protection Mechanisms

目錄大綱(中文翻譯)

1. Introduction to Management of Information Security

2. Compliance: Law and Ethics

3. Governance and Strategic Planning for Security

4. Information Security Policy

5. Developing the Security Program

6. Risk Management: Identifying and Assessing Risk

7. Risk Management: Controlling Risk

8. Security Management Models

9. Security Management Practices

10. Planning for Contingencies

11. Security Maintenance 

12. Protection Mechanisms

最後瀏覽商品 (20)