Information Security Fundamentals
Developing an information security program that adheres to the principle of security as a business enabler must be the first step in an enterprise‘s effort to build an effective security program. Following in the footsteps of its bestselling predecessor, Information Security Fundamentals, Second Edition provides information security professionals with a clear understanding of the fundamentals of security required to address the range of issues they will experience in the field.The book examines the elements of computer security, employee roles and responsibilities, and common threats. It discusses the legal requirements that impact security policies, including Sarbanes-Oxley, HIPAA, and the Gramm-Leach-Bliley Act. Detailing physical security requirements and controls, this updated edition offers a sample physical security policy and includes a complete list of tasks and objectives that make up an effective information protection program.

Includes ten new chapters

Broadens its coverage of regulations to include FISMA, PCI compliance, and foreign requirements

Expands its coverage of compliance and governance issues

Adds discussions of ISO 27001, ITIL, COSO, COBIT, and other frameworks

Presents new information on mobile security issues

Reorganizes the contents around ISO 27002

The book discusses organization-wide policies, their documentation, and legal and business requirements. It explains policy format with a focus on global, topic-specific, and application-specific policies. Following a review of asset classification, it explores access control, the components of physical security, and the foundations and processes of risk analysis and risk management.The text concludes by describing business continuity planning, preventive controls, recovery strategies, and how to conduct a business impact analysis. Each chapter in the book h

1101598140
Information Security Fundamentals
Developing an information security program that adheres to the principle of security as a business enabler must be the first step in an enterprise‘s effort to build an effective security program. Following in the footsteps of its bestselling predecessor, Information Security Fundamentals, Second Edition provides information security professionals with a clear understanding of the fundamentals of security required to address the range of issues they will experience in the field.The book examines the elements of computer security, employee roles and responsibilities, and common threats. It discusses the legal requirements that impact security policies, including Sarbanes-Oxley, HIPAA, and the Gramm-Leach-Bliley Act. Detailing physical security requirements and controls, this updated edition offers a sample physical security policy and includes a complete list of tasks and objectives that make up an effective information protection program.

Includes ten new chapters

Broadens its coverage of regulations to include FISMA, PCI compliance, and foreign requirements

Expands its coverage of compliance and governance issues

Adds discussions of ISO 27001, ITIL, COSO, COBIT, and other frameworks

Presents new information on mobile security issues

Reorganizes the contents around ISO 27002

The book discusses organization-wide policies, their documentation, and legal and business requirements. It explains policy format with a focus on global, topic-specific, and application-specific policies. Following a review of asset classification, it explores access control, the components of physical security, and the foundations and processes of risk analysis and risk management.The text concludes by describing business continuity planning, preventive controls, recovery strategies, and how to conduct a business impact analysis. Each chapter in the book h

230.0 In Stock
Information Security Fundamentals

Information Security Fundamentals

by Thomas R. Peltier
Information Security Fundamentals

Information Security Fundamentals

by Thomas R. Peltier

Hardcover(New)

$230.00 
  • SHIP THIS ITEM
    In stock. Ships in 3-7 days. Typically arrives in 3 weeks.
  • PICK UP IN STORE

    Your local store may have stock of this item.

Related collections and offers


Overview

Developing an information security program that adheres to the principle of security as a business enabler must be the first step in an enterprise‘s effort to build an effective security program. Following in the footsteps of its bestselling predecessor, Information Security Fundamentals, Second Edition provides information security professionals with a clear understanding of the fundamentals of security required to address the range of issues they will experience in the field.The book examines the elements of computer security, employee roles and responsibilities, and common threats. It discusses the legal requirements that impact security policies, including Sarbanes-Oxley, HIPAA, and the Gramm-Leach-Bliley Act. Detailing physical security requirements and controls, this updated edition offers a sample physical security policy and includes a complete list of tasks and objectives that make up an effective information protection program.

Includes ten new chapters

Broadens its coverage of regulations to include FISMA, PCI compliance, and foreign requirements

Expands its coverage of compliance and governance issues

Adds discussions of ISO 27001, ITIL, COSO, COBIT, and other frameworks

Presents new information on mobile security issues

Reorganizes the contents around ISO 27002

The book discusses organization-wide policies, their documentation, and legal and business requirements. It explains policy format with a focus on global, topic-specific, and application-specific policies. Following a review of asset classification, it explores access control, the components of physical security, and the foundations and processes of risk analysis and risk management.The text concludes by describing business continuity planning, preventive controls, recovery strategies, and how to conduct a business impact analysis. Each chapter in the book h


Product Details

ISBN-13: 9781138436893
Publisher: Taylor & Francis
Publication date: 07/27/2017
Edition description: New
Pages: 438
Product dimensions: 6.12(w) x 9.19(h) x (d)

Table of Contents

Developing Policies. Organization of Information Security. Cryptology. Risk Management. Building and Maintaining an Effective Security Awareness Program. Physical Security. Disaster Recovery and Business Continuity Planning;. Continuity of Operations Planning. Access Controls. Information System Development, Acquisition, and Maintenance. Information Security Incident Management. Asset Classification. Threats to Information Security. Information Security Policies: A Practitioner's View. Glossary. Appendices: Facilitated Risk Analysis and Assessment Process. Business Impact Analysis.
From the B&N Reads Blog

Customer Reviews