

Lance Hayden, Ph.D., CISSP, CISM, is a Solutions Architect and Information Scientist with Cisco System's World Wide Security Practice where he helps Cisco's customers make informed decisions about their security operations.
Meer over Lance HaydenIT Security Metrics
A Practical Framework for Measuring Security & Protecting Data
Samenvatting
Implement an Effective Security Metrics Project or Program
'IT Security Metrics' provides a comprehensive approach to measuring risks, threats, operational activities, and the effectiveness of data protection in your organization. The book explains how to choose and design effective measurement strategies and addresses the data requirements of those strategies.
The Security Process Management Framework is introduced and analytical strategies for security metrics data are discussed. You'll learn how to take a security metrics program and adapt it to a variety of organizational contexts to achieve continuous security improvement over time. Real-world examples of security measurement projects are included in this definitive guide.
- Define security metrics as a manageable amount of usable data
- Design effective security metrics
- Understand quantitative and qualitative data, data sources, and collection and normalization methods
- Implement a programmable approach to security using the Security Process Management Framework
- Analyze security metrics data using quantitative and qualitative methods
- Design a security measurement project for operational analysis of security metrics
- Measure security operations, compliance, cost and value, and people, organizations, and culture
- Manage groups of security measurement projects using the Security Improvement Program
- Apply organizational learning methods to security metrics
Specificaties
Inhoudsopgave
1. What is A Security Metric?
2. Designing Effective Security Metrics; Chapter 3. Understanding Data
Case Study 1: In Search of Enterprise Metrics
Part 2: Implementing Security Metrics
4. The Security Process Management Framework
5. Analyzing Security Metrics Data
6. Designing the Security Measurement Project
Case Study 2: Normalizing tool data in a security posture assessment
Part 3: Exploring Security Measurement Projects
7. Measuring Security Operations
8. Measuring Compliance and Conformance; Chapter 9. Measuring Security Cost and Value
10. Measuring People, Organizations, and Culture
Case Study 3: Web Application Vulnerabilities
Part 4: Beyond Security Metrics
11. The Security Improvement Program
12. Learning Security: Different Context for Security Process Management
Case Study 4: Getting Management Buy-In For a Metrics Program
Index
Anderen die dit boek kochten, kochten ook
Net verschenen
Rubrieken
- aanbestedingsrecht
- aansprakelijkheids- en verzekeringsrecht
- accountancy
- algemeen juridisch
- arbeidsrecht
- bank- en effectenrecht
- bestuursrecht
- bouwrecht
- burgerlijk recht en procesrecht
- europees-internationaal recht
- fiscaal recht
- gezondheidsrecht
- insolventierecht
- intellectuele eigendom en ict-recht
- management
- mens en maatschappij
- milieu- en omgevingsrecht
- notarieel recht
- ondernemingsrecht
- pensioenrecht
- personen- en familierecht
- sociale zekerheidsrecht
- staatsrecht
- strafrecht en criminologie
- vastgoed- en huurrecht
- vreemdelingenrecht