Description
The fourth edition of principles of information security explores the field of information security and assurance with updated content including new innovations in technology and methodologies. Readers will revel in the comprehensive coverage that includes a historical overview of information security, discussions on risk management and security technology, current certification information, and more. The text builds on internationally recognized standards and bodies of knowledge to provide the knowledge and skills students need for their future roles as business decision-makers. Information security in the modern organization is a management issue which technology alone cannot answer; it is a problem that has important economic consequences for which management will be held accountable. Readers can feel confident that they are using a standards-based, content-driven resource to prepare for their work in the field. Features: 1.enhanced section on security models and standards, including access control models, bell-lapadula, biba, and others, as well as enhanced coverage of nist and iso standards 2.new content on security governance adds depth and breadth to the topic 3.updates on the newest laws and a host of identity theft bills 4.includes a new section on addressing the methods and results of systems certification and accreditation in accordance with federal guidelines 5.up-to-date examples and references maintain currency and relevance 6.conforms fully to cnss training standard 4011, which allows federal recognition of programs based on this book 7.uses examples of information security issues, tools and practices implemented in todays businesses, fostering real-world application 8.includes off-line boxes with sidebar articles for further study, and
The fourth edition of principles of information security explores the field of information security and assurance with updated content including new innovations in technology and methodologies. Readers will revel in the comprehensive coverage that includes a historical overview of information security, discussions on risk management and security technology, current certification information, and more. The text builds on internationally recognized standards and bodies of knowledge to provide the knowledge and skills students need for their future roles as business decision-makers. Information security in the modern organization is a management issue which technology alone cannot answer; it is a problem that has... Read More