000 03265cam a22002777i 4500
999 _c19487
_d19487
001 18653937
005 20191217144357.0
008 150611t20142014maua b 001 0 eng d
020 _a9781284031621
020 _a1284031624
020 _a9781284031621 (pbk)
040 _cWAU
082 0 4 _a005.8
_223
_bK5601
100 1 _aKim, David
245 1 0 _aFundamentals of information systems security /
_cDavid Kim and Michael G. Solomon.
250 _a2nd ed.
260 _aBurlington :
_bJones & bartlett,
300 _axxiv, 544 p. :
_billustrations ;
_c24 cm.
490 1 _aJones & Bartlett Learning information systems security & assurance series
650 0 _aComputer security.
650 0 _aInformation resources
_xSecurity measures.
700 1 _aSolomon, Michael
942 _cBK
505 0 _aPart one : The need for information security. Information systems security -- Changing how people and businesses communicate -- Malicious attacks, threats, and vulnerabilities -- The drivers of the information security business -- Part two : The Systems Security Certified Practitioner (SSCP) professional certification from (ISC)2. Access controls -- Security operations and administration -- Auditing, testing, and monitoring -- Risk, response, and recovery -- Cryptography -- Networks and telecommunications -- Malicious code and activity -- Part three : Information security standards, education, certifications, and laws. Information security standards -- Information systems security education and training -- Information security professional certifications -- U.S. compliance laws -- Appendixes. Answer key -- Standard acronyms -- Become a systems security certified practitioner (SSCP) -- Glossary of key terms -- References.
520 _aRevised and updated with the latest information from this fast-paced field, Fundamentals of Information System Security, Second Edition provides a comprehensive overview of the essential concepts readers must know as they pursue careers in information systems security. The text opens with a discussion of the new risks, threats, and vulnerabilities associated with the transformation to a digital world, including a look at how business, government, and individuals operate today. Part 2 is adapted from the Official (ISC)2 SSCP Certified Body of Knowledge and presents a high-level overview of each of the seven domains within the System Security Certified Practitioner certification. The book closes with a resource for readers who desire additional material on information security standards, education, professional certifications, and compliance laws. With its practical, conversational writing style and step-by-step examples, this text is a must-have resource for those entering the world of information systems security. New to the Second Edition: New material on cloud computing, risk analysis, IP mobility, OMNIBus, and Agile Software Development; Includes the most recent updates in Information Systems Security laws, certificates, standards, amendments, and the proposed Federal Information Security Amendments Act of 2013 and HITECH Act; Provides new cases and examples pulled from real-world scenarios; Updated data, tables, and sidebars provide the most current information in the field. -