Agile Security Operations: Engineering for agility in cyber defense, detection, and response
暫譯: 敏捷安全運營:為網絡防禦、檢測和響應的敏捷性進行工程設計

Hettema, Hinne

  • 出版商: Packt Publishing
  • 出版日期: 2022-02-17
  • 售價: $1,580
  • 貴賓價: 9.5$1,501
  • 語言: 英文
  • 頁數: 254
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 1801815518
  • ISBN-13: 9781801815512
  • 相關分類: Agile Software資訊安全
  • 立即出貨 (庫存=1)

相關主題

商品描述

Get to grips with security operations through incident response, the ATT&CK framework, active defense, and agile threat intelligence


Key Features:

  • Explore robust and predictable security operations based on measurable service performance
  • Learn how to improve the security posture and work on security audits
  • Discover ways to integrate agile security operations into development and operations


Book Description:

Agile security operations allow organizations to survive cybersecurity incidents, deliver key insights into the security posture of an organization, and operate security as an integral part of development and operations. It is, deep down, how security has always operated at its best.

Agile Security Operations will teach you how to implement and operate an agile security operations model in your organization. The book focuses on the culture, staffing, technology, strategy, and tactical aspects of security operations. You'll learn how to establish and build a team and transform your existing team into one that can execute agile security operations. As you progress through the chapters, you'll be able to improve your understanding of some of the key concepts of security, align operations with the rest of the business, streamline your operations, learn how to report to senior levels in the organization, and acquire funding.

By the end of this Agile book, you'll be ready to start implementing agile security operations, using the book as a handy reference.


What You Will Learn:

  • Get acquainted with the changing landscape of security operations
  • Understand how to sense an attacker's motives and capabilities
  • Grasp key concepts of the kill chain, the ATT&CK framework, and the Cynefin framework
  • Get to grips with designing and developing a defensible security architecture
  • Explore detection and response engineering
  • Overcome challenges in measuring the security posture
  • Derive and communicate business values through security operations
  • Discover ways to implement security as part of development and business operations


Who this book is for:

This book is for new and established CSOC managers as well as CISO, CDO, and CIO-level decision-makers. If you work as a cybersecurity engineer or analyst, you'll find this book useful. Intermediate-level knowledge of incident response, cybersecurity, and threat intelligence is necessary to get started with the book.

商品描述(中文翻譯)

掌握安全運營,透過事件響應、ATT&CK 框架、主動防禦和敏捷威脅情報

主要特點:


  • 探索基於可衡量服務性能的穩健且可預測的安全運營

  • 學習如何改善安全態勢並進行安全審計

  • 發現將敏捷安全運營整合到開發和運營中的方法

書籍描述:
敏捷安全運營使組織能夠在網絡安全事件中生存,提供有關組織安全態勢的關鍵見解,並將安全作為開發和運營的不可或缺的一部分進行運作。這本質上是安全運營的最佳狀態。

《敏捷安全運營》將教您如何在您的組織中實施和運作敏捷安全運營模型。該書專注於安全運營的文化、員工、技術、策略和戰術方面。您將學習如何建立和組建團隊,並將現有團隊轉變為能夠執行敏捷安全運營的團隊。隨著您逐步深入各章,您將能夠改善對安全的一些關鍵概念的理解,將運營與業務的其他部分對齊,簡化您的運營,學習如何向組織的高層報告,並獲得資金。

在這本敏捷書籍結束時,您將準備好開始實施敏捷安全運營,並將該書作為方便的參考。

您將學到什麼:


  • 熟悉不斷變化的安全運營環境

  • 理解如何感知攻擊者的動機和能力

  • 掌握殺鏈、ATT&CK 框架和 Cynefin 框架的關鍵概念

  • 掌握設計和開發可防禦的安全架構

  • 探索檢測和響應工程

  • 克服衡量安全態勢的挑戰

  • 通過安全運營推導和傳達商業價值

  • 發現將安全作為開發和業務運營一部分的實施方法

本書適合誰:
本書適合新任和資深的 CSOC 經理,以及 CISO、CDO 和 CIO 級別的決策者。如果您是一名網絡安全工程師或分析師,您會發現這本書非常有用。開始閱讀本書需要具備中級的事件響應、網絡安全和威脅情報知識。