Iam and Pam Cybersecurity: Securing Identities and Access Management in the Digitalization Era
暫譯: Iam 和 Pam 網路安全:在數位化時代保障身份與存取管理

Nardone, Massimo

  • 出版商: Apress
  • 出版日期: 2025-10-23
  • 售價: $1,030
  • 貴賓價: 9.5$979
  • 語言: 英文
  • 頁數: 137
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 9798868820182
  • ISBN-13: 9798868820182
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

In today's digital age, organizations face growing cyber threats targeting user identities and access credentials. Identity and Access Management (IAM) helps secure identities, manage privileges, and enforce security policies--making it essential for zero-trust security, compliance, and efficiency.

Privileged Access Management (PAM), a specialized branch of IAM, focuses on protecting and monitoring privileged accounts such as administrators, root users, and service accounts. Because these accounts have elevated access, they are prime targets for cyberattacks.

Together, IAM and PAM safeguard access to systems, applications, and data, playing a vital role in cloud security, IoT, and enterprise environments by preventing unauthorized access and mitigating insider threats.

Readers will learn:

- Why securing identities is critical today

- Key differences between IAM and PAM

- Major access management risks and challenges

- Common IAM and PAM solutions (e.g., Azure AD, Okta, CyberArk, BeyondTrust, SSH Communications Security)

商品描述(中文翻譯)

在當今的數位時代,組織面臨著日益增長的網路威脅,這些威脅針對用戶身份和訪問憑證。身份與訪問管理 (IAM) 有助於保護身份、管理權限並執行安全政策,這使其對於零信任安全、合規性和效率至關重要。

特權訪問管理 (PAM) 是 IAM 的一個專門分支,專注於保護和監控特權帳戶,例如管理員、根用戶和服務帳戶。由於這些帳戶擁有更高的訪問權限,因此成為網路攻擊的主要目標。

IAM 和 PAM 一起保護系統、應用程式和數據的訪問,通過防止未經授權的訪問和減輕內部威脅,在雲安全、物聯網和企業環境中發揮著至關重要的作用。

讀者將學到:
- 為什麼保護身份在當今至關重要
- IAM 和 PAM 之間的主要區別
- 主要的訪問管理風險和挑戰
- 常見的 IAM 和 PAM 解決方案(例如,Azure AD、Okta、CyberArk、BeyondTrust、SSH Communications Security)

作者簡介

Massimo Nardone has more than 30 years of experience in information and cybersecurity for IT/OT/IoT/IIoT, web/mobile development, cloud, and IT architecture. His true IT passions are security and Android. He holds an M.Sc. degree in computing science from the University of Salerno, Italy.

Throughout his working career, he has held various positions starting as programming developer, then security teacher, PCI QSA, Auditor, Assessor, Lead IT/OT/SCADA/SCADA/Cloud Architect, CISO, BISO, Executive, Program Director, OT/IoT/IIoT Security Competence Leader, etc.In his last working engagement, he worked as a seasoned Cyber and Information Security Executive, CISO and OT, IoT and IIoT Security competence Leader helping many clients to develop and implement Cyber, Information, OT, IoT Security activities.

He is currently working as Vice President of OT Security for SSH Communications Security.

He is an Apress co-author of numerous books, including Spring Security 6 Recipes, Secure RESTful APIs, Cybersecurity Threats and Attacks in the Gaming Industry, Pro Spring Security, Beginning EJB in Java EE 8, Pro JPA 2 in Java EE 8, Pro Android Games, and has reviewed more than 100 titles.

作者簡介(中文翻譯)

Massimo Nardone 在資訊與網路安全領域擁有超過 30 年的經驗,涵蓋 IT/OT/IoT/IIoT、網頁/行動開發、雲端及 IT 架構。他真正的 IT 熱情在於安全性和 Android。他擁有義大利薩萊諾大學的計算科學碩士學位。

在他的職業生涯中,他擔任過多個職位,起初是程式開發人員,然後成為安全教師、PCI QSA、審核員、評估員、IT/OT/SCADA/雲端架構負責人、CISO、BISO、執行官、計畫總監、OT/IoT/IIoT 安全能力領導者等。在他最近的工作中,他擔任資深的網路與資訊安全執行官、CISO 以及 OT、IoT 和 IIoT 安全能力領導者,幫助許多客戶開發和實施網路、資訊、OT 和 IoT 安全活動。

他目前擔任 SSH Communications Security 的 OT 安全副總裁。他是 Apress 的共同作者,撰寫了多本書籍,包括《Spring Security 6 Recipes》、《Secure RESTful APIs》、《Cybersecurity Threats and Attacks in the Gaming Industry》、《Pro Spring Security》、《Beginning EJB in Java EE 8》、《Pro JPA 2 in Java EE 8》、《Pro Android Games》,並且審閱了超過 100 本書籍。