000 05710cam a2200409 a 4500
001 ocm12850766
005 20240430143954.0
007 ta
008 050915s2002 nyua b 001 0 eng d
010 _a 2002284328
015 _aGBA2-Y9966
020 _a0471072982
035 _a(OCoLC)ocm48931786
040 _aUKM
_cUKM
_dTXH
_dTXA
_dOCLCQ
_dDLC
042 _alccopycat
050 0 0 _aHF5548.32
_b.B73 2002
090 _aHF 5548.32 .B73 2002
100 1 _aBraithwaite, Timothy,
_d1942-
_957650
245 1 0 _aSecuring e-business systems :
_ba guide for managers and executives /
_cTimothy Braithwaite.
246 3 _aSecuring e business systems :
_ba guide for managers and executives.
260 _aNew York :
_bWiley,
_cc2002.
300 _axvi, 272 p. :
_bill. ;
_c24 cm.
504 _aIncludes bibliographic references and index.
505 0 _aElectronic Business Systems Security -- How Is E-Business Security Defined? -- Can E-Business Security Be Explained More Simply? -- Is E-Business Security Really Such a Big Deal? -- Is E-Business Security More Important Than Other Information Technology Initiatives? -- How Does an Organization Get Started? -- Instead of Playing "Catch-Up," What Should an Organization Be Doing to Design E-Business Systems That Are Secure in the First Place? -- E-Business Systems and Infrastructure Support Issues -- E-Business Defined -- A Short History of E-Business Innovations -- The Need for Secure E-Business Systems -- Software: The Vulnerable Underbelly of Computing -- The Interoperability Challenge and E-Business Success -- E-Business Security: An Exercise in Trade-Offs -- Few Systems Are Designed to Be Secure -- Security Weaknesses in E-Business Infrastructure and "Best Practices" Security -- Fundamental Technical Security Threats -- The Guiding Principles of Protection -- "Best Practice" Prevention, Detection, and Countermeasures and Recovery Techniques -- Managing E-Business Systems and Security -- Misconceptions and Questionable Assumptions -- Managing E-Business Systems as a Corporate Asset -- E-Business Security Program Management -- A "Just-in-Time" Strategy for Securing the E-Business System: The Role for Security Monitoring and Incident Response -- The Current State of E-Business Security -- Standard Requirements of an E-Business Security Strategy -- A New Security Strategy -- The Crucial Role of Security Monitoring and Incident Response to the Securing of E-Business Systems -- The Current State of Intrusion Detection Systems (IDS) -- Defining a Cost-Effective Security Monitoring and Incident Response Capability -- Alternatives to Building "Your Own" Security Monitoring and Incident Response Capability -- Designing and Delivering Secured E-Business Application Systems -- Past Development Realities -- Contemporary Development Realities -- Developing Secured E-Business Systems -- Using the SDR Framework -- Choosing a Systems Development Methodology That Is Compatible with the SDR Framework -- Participants in the Identification of Security and Integrity Controls -- Importance of Automated Tools -- A Cautionary Word About New Technologies -- Justifying E-Business Security and the Security Management Program -- The "Quantifiable" Argument -- Emerging "Nonquantifiable" Arguments -- Benefits Justifications Must Cover Security Program Administration -- Computers, Software, Security, and Issues of Liability -- Evolving Theories of Responsibility -- Likely Scenarios -- How Might a Liability Case Unfold? -- Questions to Be Asked to Ensure That Reasonable Care Has Been Taken in Developing a Secure E-Business System -- The National Critical Infrastructure Protection (CIP) Initiative -- The Problem of Dependency -- Critical Infrastructure Protection (CIP) Purpose, Directives, Organizations, and Relationships -- Frequently Asked Questions About the IT-ISAC -- Critical Information Infrastructure Protection Issues that Need Resolution -- Y2K Lessons Learned and Their Importance for E-Business Security -- Systems Development Review Framework for E-Business Development Projects -- A Corporate Plan of Action for Securing E-Business Systems (Sample) -- E-Business Risk Management Review Model Instructions for Use.
520 _aToday's e-business depends on the security of its networks and information technology infrastructure to safeguard its customers and its profits. But with rapid innovation and the emergence of new threats and new countermeasures, keeping up with security is becoming more complex than ever. Securing E-Business Systems offers a new model for developing a proactive program of security administration that works as a continuous process of identifying weaknesses and implementing solutions. This book offers a real, working design for managing an IT security program with the attention it truly warrants, treating security as a constant function that adapts to meet a company's changing security needs.
650 0 _aElectronic commerce
_xSecurity measures.
_974484
650 0 _aBusiness enterprises
_xComputer networks
_xSecurity measures.
_974485
650 0 _aInternet
_xSecurity measures.
_974486
852 _9p39.95
_y10-26-2002
907 _a13578
_b08-12-10
_c08-06-10
942 _cBOOK
_00
998 _aaudmc
_b10-26-02
_cm
_da
_e-
_feng
_gnyu
_h0
906 _a7
_bcbc
_ccopycat
_d2
_encip
_f20
_gy-gencatlg
925 0 _aacquire
_b2 shelf copies
_xpolicy default
945 _g0
_i633438
_j0
_laudmc
_nCopy Type:01 - Books
_o-
_p146.82
_q-
_r-
_s-
_t1
_u0
_v0
_w0
_x0
_yi10191513
_z08-06-10
999 _c13578
_d13578