Kane / Koppel | Information Protection Playbook | Buch | 978-0-12-417232-6 | sack.de

Buch, Englisch, 128 Seiten, Format (B × H): 156 mm x 229 mm, Gewicht: 191 g

Kane / Koppel

Information Protection Playbook

Buch, Englisch, 128 Seiten, Format (B × H): 156 mm x 229 mm, Gewicht: 191 g

ISBN: 978-0-12-417232-6
Verlag: Elsevier Science


The primary goal of the Information Protection Playbook is to serve as a comprehensive resource for information protection (IP) professionals who must provide adequate information security at a reasonable cost. It emphasizes a holistic view of IP: one that protects the applications, systems, and networks that deliver business information from failures of confidentiality, integrity, availability, trust and accountability, and privacy.

Using the guidelines provided in the Information Protection Playbook, security and information technology (IT) managers will learn how to implement the five functions of an IP framework: governance, program planning, risk management, incident response management, and program administration. These functions are based on a model promoted by the Information Systems Audit and Control Association (ISACA) and validated by thousands of Certified Information Security Managers. The five functions are further broken down into a series of objectives or milestones to be achieved in order to implement an IP framework.

The extensive appendices included at the end of the book make for an excellent resource for the security or IT manager building an IP program from the ground up. They include, for example, a board of directors presentation complete with sample slides; an IP policy document checklist; a risk prioritization procedure matrix, which illustrates how to classify a threat based on a scale of high, medium, and low; a facility management self-assessment questionnaire; and a list of representative job descriptions for roles in IP.

The Information Protection Playbook is a part of Elsevier's Security Executive Council Risk Management Portfolio, a collection of real world solutions and "how-to" guidelines that equip executives, practitioners, and educators with proven information for successful security and risk management programs.
Kane / Koppel Information Protection Playbook jetzt bestellen!

Autoren/Hrsg.


Weitere Infos & Material


Information Protection Function 1: Governance

Information Protection Function 2: Program Planning

Information Protection Function 3: Risk Management

Information Protection Function 4: Incident Response Management

Information Protection Function 5: Program Administration

Appendix A: Playbook Summary

Appendix B: Board of Directors Presentation

Appendix C: Information Protection Policies Checklist

Appendix D: An Example Roles and Responsibilities RACI Matrix

Appendix E: Risk Prioritization Procedure Matrix

Appendix F: Security Awareness and Training Menu

Appendix G: Risk Assessment and Compliance Checklist

Appendix H: Incident Response

Appendix I: Facility Management Self-Assessment

Appendix J: Roles in Information Protection

Appendix K: Measurement in Information Protection

Additional Resources


Kane, Greg
Greg Kane has held a director role for the Security Executive Council since 2006. In this role he is responsible for mitigating risk as it applies to IT systems and the extensive intellectual property assets contained within. He has been responsible for disaster recovery and business continuity for various organizations for over 20 years. His work experience also includes analysis of security-related regulations, standards, and guidelines in order to encourage efficient and value-added compliance management. Greg leverages his strong skills in research and analysis to write a monthly security newsletter published to an audience of over 10,000 security practitioners. Before joining the Security Executive Council, Greg provided services to multiple businesses from retail to high tech manufacturing. This included more than 10 successful years with a leading international business consulting services provider. Greg's educational background includes an MS degree in computer science and an MBA.


Ihre Fragen, Wünsche oder Anmerkungen
Vorname*
Nachname*
Ihre E-Mail-Adresse*
Kundennr.
Ihre Nachricht*
Lediglich mit * gekennzeichnete Felder sind Pflichtfelder.
Wenn Sie die im Kontaktformular eingegebenen Daten durch Klick auf den nachfolgenden Button übersenden, erklären Sie sich damit einverstanden, dass wir Ihr Angaben für die Beantwortung Ihrer Anfrage verwenden. Selbstverständlich werden Ihre Daten vertraulich behandelt und nicht an Dritte weitergegeben. Sie können der Verwendung Ihrer Daten jederzeit widersprechen. Das Datenhandling bei Sack Fachmedien erklären wir Ihnen in unserer Datenschutzerklärung.