買這商品的人也買了...
-
$1,029Fundamentals of Data Structures in C
-
$970Introduction to Algorithms, 2/e
-
$960$912 -
$680$646 -
$800$720 -
$650$507 -
$680$646 -
$550$468 -
$880$695 -
$550$468 -
$390$332 -
$580$493 -
$580$458 -
$890$757 -
$780$741 -
$300$237 -
$490$382 -
$199Communication Skills Handbook (Paperback)
-
$260$205 -
$580$458 -
$780$663 -
$650$507 -
$720$569 -
$520$199 -
$520$442
相關主題
商品描述
Description:
Security is too important to be left in the hands of one systems architect or department -- it is the concern of every enterprise. Having a comprehensive plan for making and keeping an enterprise secure is the responsibility of every senior manager, and requires more than the purchase of security software. Enterprise security requires a framework for developing and maintaining a proactive system to provide business assurance and enable new business opportunities.
The authors have designed a much-needed framework for developing enterprise security architecture using key theoretical models and decades of practical experience. The SABSA(r) (Sherwood Applied Business Security Architecture) model is generic and defines a process for architecture development, with each solution unique to the individual business. At the heart of this framework is Business Attribute Profiling, the key step in capturing business requirements, defining measurement approaches and setting performance targets for information system risk management. This approach, lacking for decades in the development of information systems, provides a quantum leap for the many systems architects who have been struggling to achieve this business linkage.
Both technical security personnel and business managers will find this book useful as a tutorial or reference tool. It relates security architecture issues to business requirements using charts and graphs, and includes descriptions of real business situations.
商品描述(中文翻譯)
安全性對於任何企業來說都至關重要,不能僅僅依賴一位系統架構師或某個部門來負責——這是每個企業的共同責任。制定和維護一個全面的企業安全計劃是每位高級管理者的責任,這不僅僅是購買安全軟體那麼簡單。企業安全需要一個框架來開發和維護一個主動的系統,以提供業務保障並啟用新的商業機會。
作者設計了一個急需的框架,用於開發企業安全架構,這個框架基於關鍵的理論模型和數十年的實踐經驗。SABSA(r)(Sherwood 應用商業安全架構)模型是通用的,定義了一個架構開發的過程,每個解決方案都是針對特定企業的獨特需求。在這個框架的核心是商業屬性分析(Business Attribute Profiling),這是捕捉商業需求、定義測量方法和設定資訊系統風險管理績效目標的關鍵步驟。這種方法在資訊系統的開發中缺失了數十年,為許多一直在努力實現商業聯繫的系統架構師提供了一次質的飛躍。
技術安全人員和商業管理者都會發現這本書作為教程或參考工具非常有用。它通過圖表和圖形將安全架構問題與商業需求相關聯,並包括真實商業情境的描述。