Record Detail Back
A Practical Guide to Managing Information Security
The principles underlying modern approaches to securing information and systems that process information are well documented and well understood by practitioners. Modern techniques and technologies for implementing these principles are also well documented, and it is hard to find an area of information security that has not been the subject of a book or at least an article. However, most of the existing literature seems to concentrate on particular areas of information security, and surprisingly few books cover the entire subject from a management perspective.
The main objective in writing this book was to help information-security managers bridge the gap between theory and practice in the area of information-security management. This book is therefore as much about management as it is about information security. Using a fictitious but realistic case study, the book describes a pragmatic approach to taking control and managing the entire information-security process within a large organization. With the exception of Chapters 2 and 3, which describe the tools available to information-security managers, the emphasis is on the decision-making process rather than on particular techniques or technolo- gies. Every attempt has been made to illustrate the difficulties that are likely to be encountered when applying accepted theoretical ideas to operational environments and to show how these difficulties could be overcome. Important ideas are introduced at an early stage in the book and subsequently applied to a variety of different problems, such as developing the control framework, improving processes, and building the security architecture.
Steve Purser - Personal Name
1st Edtion
1-58053-702-2
NONE
A Practical Guide to Managing Information Security
Information Technology
English
RTECH HOUSE, INC.
2004
1-281
LOADING LIST...
LOADING LIST...