相關主題
商品描述
Security for a Web 2.0+ World looks at the perplexing issues of cyber security, and will be of interest to those who need to know how to make effective security policy decisions to engineers who design ICT systems – a guide to information security and standards in the Web 2.0+ era. It provides an understanding of IT security in the converged world of communications technology based on the Internet Protocol.
Many companies are currently applying security models following legacy policies or ad-hoc solutions. A series of new security standards (ISO/ITU) allow security professionals to talk a common language. By applying a common standard, security vendors are able to create products and services that meet the challenging security demands of technology further diffused from the central control of the local area network. Companies are able to prove and show the level of maturity of their security solutions based on their proven compliance of the recommendations defined by the standard.
Carlos Solari and his team present much needed information and a broader view on why and how to use and deploy standards. They set the stage for a standards-based approach to design in security, driven by various factors that include securing complex information-communications systems, the need to drive security in product development, the need to better apply security funds to get a better return on investment.
Security applied after complex systems are deployed is at best a patchwork fix. Concerned with what can be done now using the technologies and methods at our disposal, the authors set in place the idea that security can be designed in to the complex networks that exist now and for those in the near future. Web 2.0 is the next great promise of ICT – we still have the chance to design in a more secure path.
Time is of the essence – prevent-detect-respond!
商品描述(中文翻譯)
探索科技如何影響您的業務,以及為什麼典型的安全機制無法解決風險和信任的問題。
《Web 2.0+ 世界的安全性》探討了網路安全的複雜問題,對於需要了解如何做出有效安全政策決策的工程師以及設計資訊通信技術(ICT)系統的人士來說,這本書將會非常有幫助——它是針對 Web 2.0+ 時代的信息安全和標準的指南。它提供了基於網際網路協議的通信技術融合世界中的 IT 安全理解。
許多公司目前仍在依循舊有政策或臨時解決方案來應用安全模型。一系列新的安全標準(ISO/ITU)使安全專業人士能夠使用共同的語言進行交流。透過應用共同標準,安全供應商能夠創造出符合技術挑戰性安全需求的產品和服務,這些需求已經超越了本地區域網路的中央控制。公司能夠根據其對標準所定義建議的合規性來證明和展示其安全解決方案的成熟度。
Carlos Solari 和他的團隊提供了急需的信息以及更廣泛的觀點,解釋為什麼以及如何使用和部署標準。他們為基於標準的安全設計方法奠定了基礎,這一方法受到多種因素的驅動,包括保護複雜的信息通信系統、在產品開發中推動安全的需求,以及更好地運用安全資金以獲得更好的投資回報的需求。
在複雜系統部署後再應用安全措施充其量只是權宜之計。作者關注的是如何利用我們現有的技術和方法來進行 現在 的行動,並提出安全可以被 設計進 現有的複雜網路中,並且適用於不久的將來。Web 2.0 是資訊通信技術的下一個偉大承諾——我們仍然有機會 設計進 更安全的道路。
時間至關重要——預防-檢測-回應!