Building and Implementing a Security Certification and Accreditation Program: Official (ISC)2 Guide to the CAP CBK demonstrates the practicality and effectiveness of certification and accreditation (C&A) as a risk management methodology for IT systems in both public and private organizations. It provides security professionals with an overview of C&A components, enabling them to document the status of the security controls of their IT systems, and learn how to secure systems via standard, repeatable processes.
This book consists of four main sections. It begins with a description of what it takes to build a certification and accreditation program at the organization level, followed by an analysis of various C&A processes and how they interrelate. The text then provides a case study of the successful implementation of certification and accreditation in a major U.S. government department. It concludes by offering a collection of helpful samples in the appendices.
"Sinopsis" puede pertenecer a otra edición de este libro.
"This book focuses on the processes that must be employed by an organization to establish a certification and accreditation program based on current federal government criteria Pat has structured this book to address the key issues in certification and accreditation, including roles and responsibilities, the life cycle, and even a discussion of pitfalls to avoid. As with all of Pat's work, he provides the reader with practical information on what works and what does not "Even if government certification and accreditation is not your concern, the new ISO 27002 (formerly ISO17799) will require all of us to look for a process to make certification and accreditation bearable. Pat has succeeded in doing just that with this practical and readable book." Thomas R. Peltier, Peltier Associates, Member of the ISSA Hall of Fame, from the Foreword
Building and Implementing a Security Certification and Accreditation Program: Official (ISC)2 Guide to the CAP CBK demonstrates the practicality and effectiveness of certification and accreditation (C&A) as a risk management methodology for IT systems in both public and private organizations. It provides security professionals with an overview of C&A components, enabling them to document the status of the security controls of their IT systems, and learn how to secure systems via standard, repeatable processes.
This book consists of four main sections. It begins with a description of what it takes to build a certification and accreditation program at the organization level, followed by an analysis of various C&A processes and how they interrelate. The text then provides a case study of the successful implementation of certification and accreditation in a major U.S. government department. It concludes by offering a collection of helpful samples in the appendices.
"Sobre este título" puede pertenecer a otra edición de este libro.
Librería: The Maryland Book Bank, Baltimore, MD, Estados Unidos de America
hardcover. Condición: Very Good. 1st Edition. Used - Very Good. Nº de ref. del artículo: 8-S-1-0295
Cantidad disponible: 1 disponibles
Librería: World of Books (was SecondSale), Montgomery, IL, Estados Unidos de America
Condición: Good. Item in good condition and has highlighting/writing on text. Used texts may not contain supplemental items such as CDs, info-trac etc. Nº de ref. del artículo: 00101130479
Cantidad disponible: 1 disponibles
Librería: BennettBooksLtd, Los Angeles, CA, Estados Unidos de America
hardcover. Condición: New. In shrink wrap. Looks like an interesting title! Nº de ref. del artículo: Q-0849320623
Cantidad disponible: 1 disponibles
Librería: SHIMEDIA, Brooklyn, NY, Estados Unidos de America
Condición: New. Satisfaction Guaranteed or your money back. Nº de ref. del artículo: 0849320623
Cantidad disponible: 1 disponibles