Information Security The Complete Reference, 2/e (Paperback)
暫譯: 資訊安全完全參考手冊(第二版)

Mark Rhodes-Ousley

買這商品的人也買了...

相關主題

商品描述

Develop and implement an effective end-to-end security program

Today’s complex world of mobile platforms, cloud computing, and ubiquitous data access puts new security demands on every IT professional. Information Security: The Complete Reference, Second Edition (previously titled Network Security: The Complete Reference) is the only comprehensive book that offers vendor-neutral details on all aspects of information protection, with an eye toward the evolving threat landscape. Thoroughly revised and expanded to cover all aspects of modern information security—from concepts to details—this edition provides a one-stop reference equally applicable to the beginner and the seasoned professional.

Find out how to build a holistic security program based on proven methodology, risk analysis, compliance, and business needs. You’ll learn how to successfully protect data, networks, computers, and applications. In-depth chapters cover data protection, encryption, information rights management, network security, intrusion detection and prevention, Unix and Windows security, virtual and cloud security, secure application development, disaster recovery, forensics, and real-world attacks and countermeasures. Included is an extensive security glossary, as well as standards-based references. This is a great resource for professionals and students alike.

  • Understand security concepts and building blocks
  • Identify vulnerabilities and mitigate risk
  • Optimize authentication and authorization
  • Use IRM and encryption to protect unstructured data
  • Defend storage devices, databases, and software
  • Protect network routers, switches, and firewalls
  • Secure VPN, wireless, VoIP, and PBX infrastructure
  • Design intrusion detection and prevention systems
  • Develop secure Windows, Java, and mobile applications
  • Perform incident response and forensic analysis

商品描述(中文翻譯)

### 開發和實施有效的端到端安全計劃

當今複雜的移動平台、雲計算和無處不在的數據訪問為每位 IT 專業人員帶來了新的安全需求。《資訊安全:完整參考手冊,第二版》(前稱《網路安全:完整參考手冊》)是唯一一本提供有關資訊保護所有方面的中立詳細資訊的綜合性書籍,並關注不斷演變的威脅環境。本版經過徹底修訂和擴展,涵蓋現代資訊安全的所有方面——從概念到細節——提供一個適合初學者和資深專業人士的綜合參考。

了解如何基於經驗方法論、風險分析、合規性和業務需求建立全面的安全計劃。您將學會如何成功保護數據、網絡、計算機和應用程序。深入的章節涵蓋數據保護、加密、資訊權限管理、網絡安全、入侵檢測和預防、Unix 和 Windows 安全、虛擬和雲安全、安全應用程序開發、災難恢復、取證以及現實世界的攻擊和對策。書中還包含了廣泛的安全術語表以及基於標準的參考資料。這是專業人士和學生的絕佳資源。

- 理解安全概念和基本構件
- 識別漏洞並減輕風險
- 優化身份驗證和授權
- 使用 IRM 和加密保護非結構化數據
- 防禦存儲設備、數據庫和軟體
- 保護網絡路由器、交換機和防火牆
- 確保 VPN、無線、VoIP 和 PBX 基礎設施的安全
- 設計入侵檢測和預防系統
- 開發安全的 Windows、Java 和移動應用程序
- 執行事件響應和取證分析