Rogers / Fuller / Miles | Network Security Evaluation Using the NSA IEM | E-Book | sack.de
E-Book

E-Book, Englisch, 450 Seiten, Web PDF

Rogers / Fuller / Miles Network Security Evaluation Using the NSA IEM


1. Auflage 2005
ISBN: 978-0-08-048943-8
Verlag: Elsevier Science & Techn.
Format: PDF
Kopierschutz: 1 - PDF Watermark

E-Book, Englisch, 450 Seiten, Web PDF

ISBN: 978-0-08-048943-8
Verlag: Elsevier Science & Techn.
Format: PDF
Kopierschutz: 1 - PDF Watermark



Network Security Evaluation provides a methodology for conducting technical security evaluations of all the critical components of a target network. The book describes how the methodology evolved and how to define the proper scope of an evaluation, including the consideration of legal issues that may arise during the evaluation. More detailed information is given in later chapters about the core technical processes that need to occur to ensure a comprehensive understanding of the network's security posture.

Ten baseline areas for evaluation are covered in detail. The tools and examples detailed within this book include both Freeware and Commercial tools that provide a detailed analysis of security vulnerabilities on the target network. The book ends with guidance on the creation of customer roadmaps to better security and recommendations on the format and delivery of the final report.

* There is no other book currently on the market that covers the National Security Agency's recommended methodology for conducting technical security evaluations
* The authors are well known in the industry for their work in developing and deploying network security evaluations using the NSA IEM
* The authors also developed the NSA's training class on this methodology

Rogers / Fuller / Miles Network Security Evaluation Using the NSA IEM jetzt bestellen!

Weitere Infos & Material


1;Cover;1
2;Contents;13
3;Prologue Why the IEM?;27
4;Chapter 1 Introducing the INFOSEC Evaluation Methodology;33
5;Chapter 2 Before the Evaluation Starts;49
6;Chapter 3 Setting Expectations;77
7;Chapter 4 Scoping the Evaluation;97
8;Chapter 5 Legal Principles for Information Security Evaluations1;125
9;Chapter 6 Building the Technical Evaluation Plan;173
10;Chapter 7 Starting Your On-Site Efforts;197
11;Chapter 8 Network Discovery Activities;225
12;Chapter 9 Collecting the Majority of Vulnerabilities;271
13;Chapter 10 Fine-Tuning the Evaluation;303
14;Chapter 11 The Onsite Closing Meeting;323
15;Chapter 12 Post-Evaluation Analysis;341
16;Chapter 13 Creating Measurements and Trending Results;361
17;Chapter 14 Trending Metrics;383
18;Chapter 15 Final Reporting;401
19;Chapter 16 Summing Up;421
20;Appendix A Examples of INFOSEC Tools by Baseline Activity;427
21;Technical Evaluation Plan Outline and Sample;443
22;Index;453
23;Related Titles;464



Ihre Fragen, Wünsche oder Anmerkungen
Vorname*
Nachname*
Ihre E-Mail-Adresse*
Kundennr.
Ihre Nachricht*
Lediglich mit * gekennzeichnete Felder sind Pflichtfelder.
Wenn Sie die im Kontaktformular eingegebenen Daten durch Klick auf den nachfolgenden Button übersenden, erklären Sie sich damit einverstanden, dass wir Ihr Angaben für die Beantwortung Ihrer Anfrage verwenden. Selbstverständlich werden Ihre Daten vertraulich behandelt und nicht an Dritte weitergegeben. Sie können der Verwendung Ihrer Daten jederzeit widersprechen. Das Datenhandling bei Sack Fachmedien erklären wir Ihnen in unserer Datenschutzerklärung.