No loopholes: Information Security Implementation Guide

Author: (USA) Egan M. (USA) Mather T. Li Yanzhi Li Yanzhi
Publisher:
Publish Date: 2006-01-01
Features: Symantec senior information security experts interpret the threats, challenges, and solutions of enterprise information security! "In today's interconnected world, if a company does not protect its computers, it cannot operate normally. If you are a CEO who has already understood the principles and risks, I suggest you read this book. If your time is money, I can't think of a better investment than this book." — Richard Clarke, former Chairman of the U.S. President's Critical Infrastructure Protection Board, former Special Advisor to the President on Cybersecurity "Every CEO should protect their company's assets. This book helps CEOs understand these challenges and ask the right questions to implement a more effective strategy for their company." — Steve Bennett, President and CEO of Intuit "Mark Egan and Tim Mather help non-technical management personnel fully understand the security challenges faced by companies today." — Eric Benhamou, Chairman of the Board of Directors of 3Com Corporation, palmOne, and PalmSource, Inc. "This book is like a fire alarm for business management at night, making them realize that computer security is not a technical issue—it is actually a business issue, worthy of management's attention and prioritization, just like other key elements within the company." — George Reyes, Chief Financial Officer of Google "This is a must-read for every manager in companies of all sizes." — Howard A. Schmidt, former White House Cybersecurity Advisor, Chief Security Officer of Microsoft, Vice President and Chief Information Security Officer of eBay This book provides an overall description of information security concepts to help business managers better evaluate their company's performance in handling information security issues. It also offers practical methods to assist companies in improving their information security plans. The book is organized according to the steps for establishing an information security plan. Chapter 1 "Information Security Challenges" outlines the challenges of information security and why business managers should be aware of the potential risks these challenges pose to the company. Chapter 2 "Overview of Information Security" introduces information security and the key elements of an effective information security plan. Chapter 3 "Developing an Information Security Plan" introduces a security assessment framework that can be used to evaluate information security plans and create a roadmap for improving them. The next three chapters primarily assess the three components of an information security plan: people, processes, and technology, and develop corresponding improvement plans. Chapter 7 "Information Security Roadmap" summarizes all the analyses and describes how to develop a security roadmap to create an improved information security plan suitable for the company. Chapter 8 "Looking Ahead" explores future trends in information security. This chapter looks ahead to new threats and the solutions the information security industry is developing to address these threats. The final chapter lists the 10 essential elements of an effective information security plan and provides a good summary.

📌 Related Posts