Warehouse Stock Clearance Sale

Grab a bargain today!


Information Security Management Handbook, Sixth Edition, Volume 6
By

Rating

Product Description
Product Details

Table of Contents

Access Control. Telecommunications & Network Security. Information Security & Risk Management. Application Security. Cryptography. Security Architecture & Design. Operations Security. Business Continuity Planning & Disaster Recovery Planning. Legal, Regulations, Compliance & Investigation. Physical Security.

About the Author

About the Editors:

Sadly, Harold F. Tipton passed away on Friday, March 16, 2012. We’re grateful for his many years of friendship and guidance. Hal was instrumental in the creation and development of the information security publishing program at CRC Press.

Hal was an independent consultant and past president of the International Information System Security Certification Consortium (ISC)2. He was the director of Computer Security for Rockwell International Corporation for 15 years. He initiated the Rockwell computer and data security program in 1977 and then continued to administer, develop, enhance, and expand the program to accommodate the control needs produced by technological advances until his retirement from Rockwell in 1994. He was a member of the Information Systems Security Association (ISSA) since 1982, president of the Los Angeles Chapter in 1984, and president of the national organization of ISSA from 1987 to 1989. He was added to the ISSA Hall of Fame and the ISSA Honor Roll in 2000. He received the Computer Security Institute "Lifetime Achievement Award" in 1994 and the (ISC)2 "Hal Tipton Award" in 2001. He was a member of the National Institute for Standards and Technology (NIST) Computer and Telecommunications Security Council and the National Research Council Secure Systems Study Committee (for the National Academy of Science). He received a bachelor of science degree in engineering from the U.S. Naval Academy, a master’s degree in personnel administration from George Washington University, and a certificate in computer science from the University of California, Irvine. He published several papers on information security issues in the Information Security Management Handbook, Data Security Management, Information Systems Security, and the National Academy of Sciences report Computers at Risk.

He was a frequent speaker at all major information security conferences, including the Computer Security Institute, ISSA Annual Working Conference, Computer Security Workshop, MIS Conferences, AIS Security for Space Operations, DOE Computer Security Conference, National Computer Security Conference, IIA Security Conference, EDPAA, UCCEL Security and Audit Users Conference, and Industrial Security Awareness Conference. He conducted and participated in information security seminars for (ISC)2, Frost & Sullivan, UCI, CSULB, System Exchange Seminars, and the Institute for International Research.

Micki Krause Nozaki, CISSP, has held positions in the information security profession for the past 20 years. She was previously the chief information security officer at Pacific Life Insurance Company in Newport Beach, California, where she was accountable for directing their information protection and security program enterprisewide. Micki has held several leadership roles in industry-influential groups including the Information Systems Security Association (ISSA) and the International Information System Security Certification Consortium (ISC)2 and is a longterm advocate for professional security education and certification. In 2003, Krause received industry recognition as a recipient of the "Women of Vision" award given by the Information Security magazine. In 2002, Krause was honored as the second recipient of the Harold F. Tipton Award in recognition of her sustained career excellence and outstanding contributions to the profession. She is a reputed speaker, published author, and coeditor of the Information Security Management Handbook series.

Reviews

DOMAIN 1: ACCESS CONTROL
Access Control AdministrationWhat Business Associates Need to Know About Protected Health Information Under HIPAA and HITECH; Rebecca HeroldDOMAIN 2: TELECOMMUNICATIONS AND NETWORK SECURITY
Internet, Intranet, Extranet SecurityE-mail Security; Terence FernandesDOMAIN 3: INFORMATION SECURITY AND RISK MANAGEMENT
Security Management Concepts and PrinciplesAppreciating Organizational Behavior and Institutions to Solidify Your Information Security Program; Robert Pittman
Risk ManagementThe Information Security Auditors Have Arrived, Now What?; Todd FitzgeraldContinuous Monitoring: Extremely Valuable to Deploy Within Reason; Foster J. Henderson and Mark A. PodrackySocial Networking; Sandy BacikInsider Threat Defense; Sandy BacikRisk Management in Public Key Certificate Applications; Alex GolodServer Virtualization: Information Security Considerations; Thomas A. Johnson
Security Management PlanningSecurity Requirements Analysis; Sean M. PriceCERT Resilience Management Model: An Overview; Bonnie A. Goins Pilewski and Christopher PilewskiManaging Bluetooth Security; E. Eugene Schultz, Matthew W. A. Pemble, and Wendy Goucher
Employment Policies and PracticesSlash and Burn: In Times of Recession, Do Not Let Emotions Drive Business Decisions; Seth KinnettA "Zero Trust" Model for Security; Ken Shaurette and Thomas J. SchleppenbachDOMAIN 4: APPLICATION DEVELOPMENT SECURITY
System Development ControlsApplication Whitelisting; Georges JahchanDesign of Information Security for Large System Development Projects; James C. MurphyBuilding Application Security Testing into the Software Development Life Cycle; Sandy Bacik
Malicious CodeTwenty-Five (or Forty) Years of Malware History; Robert M. SladeDOMAIN 5: CRYPTOGRAPHY
Cryptographic Concepts, Methodologies, and PracticesFormat Preserving Encryption; Ralph Spencer PooreElliptic Curve Cryptosystems; Jeff StapletonPirating the Ultimate Killer APP: Hacking Military Unmanned Aerial Vehicles; Sean P. McbrideDOMAIN 6: SECURITY ARCHITECTURE AND DESIGN
Principles of Computer and Network Organizations, Architectures, and DesignsService-Oriented Architecture; Walter B. WilliamsCloud Security; Terry KomperdaEnterprise Zones of Trust; Sandy BacikDOMAIN 7: OPERATIONS SECURITY: OPERATIONS CONTROLS
Complex Event Processing for Automated Security Event Analysis; Rob SheinRecords Management; Sandy BacikDOMAIN 8: BUSINESS CONTINUITY AND DISASTER RECOVERY PLANNING
Business Continuity PlanningData Backup Strategies: Traditional Versus Cloud: Carl B. JacksonDOMAIN 9: LEGAL, REGULATIONS, COMPLIANCE, AND INVESTIGATIONS
Major Categories of Computer CrimeManaging Advanced Persistent Threats; Eugene Schultz and Cuc Du
Incident HandlingVirtualization Forensics; Paul A. HenryDOMAIN 10: PHYSICAL (ENVIRONMENTAL) SECURITY
Elements of Physical SecurityTerrorism: An Overview; Frank Bolz, Kenneth J. Dudonis, and David P. Schulz
Technical ControlsCountermeasure Goals and Strategies; Thomas L. NormanIndex

Ask a Question About this Product More...
 
Look for similar items by category
Item ships from and is sold by Fishpond Retail Limited.

Back to top
We use essential and some optional cookies to provide you the best shopping experience. Visit our cookies policy page for more information.