ShopSpell

Building a Practical Information Security Program [Paperback]

$83.99       (Free Shipping)
68 available
  • Category: Books (Computers)
  • Author:  Jason Andress, Mark Leary
  • Author:  Jason Andress, Mark Leary
  • ISBN-10:  0128020423
  • ISBN-10:  0128020423
  • ISBN-13:  9780128020425
  • ISBN-13:  9780128020425
  • Publisher:  Syngress
  • Publisher:  Syngress
  • Pages:  202
  • Pages:  202
  • Binding:  Paperback
  • Binding:  Paperback
  • Pub Date:  01-Apr-2016
  • Pub Date:  01-Apr-2016
  • SKU:  0128020423-11-MPOD
  • SKU:  0128020423-11-MPOD
  • Item ID: 100169672
  • Seller: ShopSpell
  • Ships in: 2 business days
  • Transit time: Up to 5 business days
  • Delivery by: Apr 10 to Apr 12
  • Notes: Brand New Book. Order Now.

Building a Practical Information Security Program provides users with a strategic view on how to build an information security program that aligns with business objectives. The information provided enables both executive management and IT managers not only to validate existing security programs, but also to build new business-driven security programs. In addition, the subject matter supports aspiring security engineers to forge a career path to successfully manage a security program, thereby adding value and reducing risk to the business. Readers learn how to translate technical challenges into business requirements, understand when to go big or go home, explore in-depth defense strategies, and review tactics on when to absorb risks. This book explains how to properly plan and implement an infosec program based on business strategy and results.



  • Provides a roadmap on how to build a security program that will protect companies from intrusion
  • Shows how to focus the security program on its essential mission and move past FUD (fear, uncertainty, and doubt) to provide business value
  • Teaches how to build consensus with an effective business-focused program

Why We Need Security Programs

Develop a Security Strategy

Integrate Security into the Organization

Establish a Security Organization

Develop a Security Policy

Manage the Risks

Protect the Data

Manage the Security of Third Parties and Vendors

Conduct Security Awareness and Training

Develop Metrics to Measure Program Effectiveness

Demonstrates how to resolve immediate tactical needs, transform security needs into strategic goals, and put programs into operation with full lifecycle managementl£.

Add Review