Library Hours
Monday to Friday: 9 a.m. to 9 p.m.
Saturday: 9 a.m. to 5 p.m.
Sunday: 1 p.m. to 9 p.m.
Naper Blvd. 1 p.m. to 5 p.m.
     
Limit search to available items
Results Page:  Previous Next
Author Fitzgerald, Todd.

Title Information security governance simplified : from the boardroom to the keyboard / Todd Fitzgerald. [O'Reilly electronic resource]

Imprint Boca Raton : CRC Press, ©2012.
QR Code
Description 1 online resource (xxviii, 381 pages) : illustrations
data file rda
Bibliography Includes bibliographical references and index.
Summary "Security practitioners must be able to build cost-effective security programs while also complying with government regulations. Information Security Governance Simplified: From the Boardroom to the Keyboard lays out these regulations in simple terms and explains how to use control frameworks to build an air-tight information security (IS) program and governance structure. Defining the leadership skills required by IS officers, the book examines the pros and cons of different reporting structures and highlights the various control frameworks available. It details the functions of the security department and considers the control areas, including physical, network, application, business continuity/disaster recover, and identity management. Todd Fitzgerald explains how to establish a solid foundation for building your security program and shares time-tested insights about what works and what doesn't when building an IS program. Highlighting security considerations for managerial, technical, and operational controls, it provides helpful tips for selling your program to management. It also includes tools to help you create a workable IS charter and your own IS policies. Based on proven experience rather than theory, the book gives you the tools and real-world insight needed to secure your information while ensuring compliance with government regulations."-- Provided by publisher.
Contents Ch. 1. Getting information security right : top to bottom -- ch. 2. Developing information security strategy -- ch. 3. Defining the security management organization -- ch. 4. Interacting with the C-suite -- ch. 5. Managing risk to an acceptable level -- ch. 6. Creating effective information security policies -- ch. 7. Security compliance using control frameworks -- ch. 8. Managerial controls : practical security considerations -- ch. 9. Technical controls : practical security considerations -- ch. 10. Operational controls : practical security considerations -- ch. 11. The auditors have arrived, now what? -- ch. 12. Effective security communications -- ch. 13. The law and information security -- ch. 14. Learning from information security incidents -- ch. 15. 17 ways to dismantle information security governance efforts.
Access Open Access EbpS
Subject Information networks -- Security measures.
Information resources management.
Business intelligence.
Information technology -- Security measures.
Réseaux d'information -- Sécurité -- Mesures.
Gestion de l'information.
Technologie de l'information -- Sécurité -- Mesures.
Business intelligence
Information networks -- Security measures
Information resources management
Information technology -- Security measures
Other Form: Print version: Fitzgerald, Todd. Information security governance simplified. Boca Raton : CRC Press, 2011 9781439811634 (DLC) 2011043463
ISBN 9781439811658 (electronic bk.)
1439811652 (electronic bk.)
9780429131905 (e-book : PDF)
0429131909
9781466551282 (e-book)
1466551283
Standard No. 10.1201/b11357 doi
Patron reviews: add a review
Click for more information
EBOOK
No one has rated this material

You can...
Also...
- Find similar reads
- Add a review
- Sign-up for Newsletter
- Suggest a purchase
- Can't find what you want?
More Information