Название: Developing Cybersecurity Programs and Policies, 3rd Edition Автор: Omar Santos Издательство: Pearson IT Certification Год: 2018 Страниц: 673 Язык: английский Формат: pdf (true), epub Размер: 13.7 MB
All the Knowledge You Need to Build Cybersecurity Programs and Policies That Work.
Clearly presents best practices, governance frameworks, and key standards
Includes focused coverage of healthcare, finance, and PCI DSS compliance
An essential and invaluable guide for leaders, managers, and technical professionals
Today, cyberattacks can place entire organizations at risk. Cybersecurity can no longer be delegated to specialists: success requires everyone to work together, from leaders on down. Developing Cybersecurity Programs and Policies offers start-to-finish guidance for establishing effective cybersecurity in any organization. Drawing on more than 20 years of real-world experience, Omar Santos presents realistic best practices for defining policy and governance, ensuring compliance, and collaborating to harden the entire organization.
First, Santos shows how to develop workable cybersecurity policies and an effective framework for governing them. Next, he addresses risk management, asset management, and data loss prevention, showing how to align functions from HR to physical security. You™ll discover best practices for securing communications, operations, and access; acquiring, developing, and maintaining technology; and responding to incidents.
Santos concludes with detailed coverage of compliance in finance and healthcare, the crucial Payment Card Industry Data Security Standard (PCI DSS) standard, and the NIST Cybersecurity Framework.
Whatever your current responsibilities, this guide will help you plan, manage, and lead cybersecurityand safeguard all the assets that matter.
Learn How To
Establish cybersecurity policies and governance that serve your organization™s needs Integrate cybersecurity program components into a coherent framework for action Assess, prioritize, and manage security risk throughout the organization Manage assets and prevent data loss Work with HR to address human factors in cybersecurity Harden your facilities and physical environment Design effective policies for securing communications, operations, and access Strengthen security throughout the information systems lifecycle Plan for quick, effective incident response and ensure business continuity Comply with rigorous regulations in finance and healthcare Plan for PCI compliance to safely process payments Explore and apply the guidance provided by the NIST Cybersecurity Framework
Contents:
1 Understanding Cybersecurity Policy and Governance 2 Cybersecurity Policy Organization, Format, and Styles 3 Cybersecurity Framework 4 Governance and Risk Management 5 Asset Management and Data Loss Prevention 6 Human Resources Security 7 Physical and Environmental Security 8 Communications and Operations Security 9 Access Control Management 10 Information Systems Acquisition, Development, and Maintenance 11 Cybersecurity Incident Response 12 Business Continuity Management 13 Regulatory Compliance for Financial Institutions 14 Regulatory Compliance for the Health-Care Sector 15 PCI Compliance for Merchants 16 NIST Cybersecurity Framework Appendix A: Cybersecurity Program Resources Appendix B: Answers to the Multiple Choice Questions Index
Скачать Developing Cybersecurity Programs and Policies, 3rd Edition