Cybersecurity program development for business : the essential planning guide /

"Get answers to all your cybersecurity questions In 2016, we reached a tipping point--a moment where the global and local implications of cybersecurity became undeniable. Despite the seriousness of the topic, the term "cybersecurity" still exasperates many people. They feel terrorized...

Full description

Bibliographic Details
Main Author: Moschovitis, Christos J. P., (Author)
Format: eBook
Language:English
Published: Hoboken, New Jersey : Wiley, [2018]
Subjects:
Online Access:View fulltext via EzAccess
LEADER 07246cam a22007698i 4500
001 on1030444821
003 OCoLC
005 20181205060200.9
006 m o d
007 cr |n|||||||||
008 180328s2018 njua ob 001 0 eng
010 |a  2018015364 
040 |a DLC  |b eng  |e rda  |e pn  |c DLC  |d N$T  |d OCLCQ  |d EBLCP  |d DG1  |d NLE  |d OCLCF  |d YDX  |d UAB  |d UPM  |d OCLCQ  |d IDB  |d DEBBG  |d CUY  |d OCLCQ  |d CNO  |d YOU  |d OCLCQ  |d RECBK 
020 |a 9781119430001  |q (electronic bk.) 
020 |a 1119430003  |q (electronic bk.) 
020 |a 9781119430018  |q (electronic bk.) 
020 |a 1119430011  |q (electronic bk.) 
020 |a 9781119430056 
020 |a 1119430054 
020 |z 9781119429517  |q (hardback) 
020 |z 111942951X  |q (hardback) 
029 1 |a CHNEW  |b 001003253 
029 1 |a CHVBK  |b 516429876 
029 1 |a GBVCP  |b 1027307787 
035 |a (OCoLC)1030444821 
037 |a 9781119430001  |b Wiley 
042 |a pcc 
050 1 0 |a HD30.2  |b .M674 2018eb 
072 7 |a BUS  |x 082000  |2 bisacsh 
072 7 |a BUS  |x 041000  |2 bisacsh 
072 7 |a BUS  |x 042000  |2 bisacsh 
072 7 |a BUS  |x 085000  |2 bisacsh 
082 0 0 |a 658.4/78  |2 23 
084 |a BUS070030  |2 bisacsh 
049 |a MAIN 
100 1 |a Moschovitis, Christos J. P.,  |e author. 
245 1 0 |a Cybersecurity program development for business :  |b the essential planning guide /  |c Chris Moschovitis. 
263 |a 1804 
264 1 |a Hoboken, New Jersey :  |b Wiley,  |c [2018] 
300 |a 1 online resource (xvi, 206 pages) 
336 |a text  |b txt  |2 rdacontent 
337 |a computer  |b n  |2 rdamedia 
338 |a online resource  |b nc  |2 rdacarrier 
520 |a "Get answers to all your cybersecurity questions In 2016, we reached a tipping point--a moment where the global and local implications of cybersecurity became undeniable. Despite the seriousness of the topic, the term "cybersecurity" still exasperates many people. They feel terrorized and overwhelmed. The majority of business people have very little understanding of cybersecurity, how to manage it, and what's really at risk. This essential guide, with its dozens of examples and case studies, breaks down every element of the development and management of a cybersecurity program for the executive. From understanding the need, to core risk management principles, to threats, tools, roles and responsibilities, this book walks the reader through each step of developing and implementing a cybersecurity program. Read cover-to-cover, its a thorough overview, but it can also function as a useful reference book as individual questions and difficulties arise. Unlike other cybersecurity books, the text is not bogged down with industry jargon; Speaks specifically to the executive who is not familiar with the development or implementation of cybersecurity programs; Shows you how to make pragmatic, rational, and informed decisions for your organization; Written by a top-flight technologist with decades of experience and a track record of success. If you're a business manager or executive who needs to make sense of cybersecurity, this book demystifies it for you."--  |c Provided by publisher. 
504 |a Includes bibliographical references and index. 
588 0 |a Print version record and CIP data provided by publisher; resource not viewed. 
505 0 |a Intro; TITLE PAGE; TABLE OF CONTENTS; FOREWORD; PREFACE; Something Completely Different; ABOUT THE AUTHOR; ACKNOWLEDGMENTS; CHAPTER 1: Understanding Risk; How Much Is It Worth to You?; Risk! Not Just a Board Game; CHAPTER 2: Everything You Always Wanted to Know About Tech (But Were Afraid to Ask Your Kids); In the Beginning ... ; Key Definitions; Note; CHAPTER 3: A Cybersecurity Primer; Cybersecurity Defined; The Meaning of Security; Measuring Cybersecurity's Success; Deter, Identify, Protect, Detect, Respond; Cybersecurity Controls and Defense in Depth; Defense in Depth; The Threats. 
505 8 |a Threat Agents; Key Trends Influencing Threat Agents; The Nature of Hackers; Attack Process; Types of Attacks; A Brief Cyberglossary of Terms; CHAPTER 4: Management, Governance, and Alignment; Why Governance Matters; Strategy, Steering, and Standards; Critical Success Factors; CHAPTER 5: Your Cybersecurity Program: A High-Level Overview; Vision and Mission Statements; Culture and Strategy; Off to See the Wizard; What's at Risk?; Threat Assessment; At the Club House Turn!; Mitigating Risk; Incident-Response Planning; CHAPTER 6: Assets; Asset Classification; Asset Metadata. 
505 8 |a Business-Impact Analysis; One Spreadsheet to Rule Them All; CHAPTER 7: Threats; Types of Threats; Threat Rankings; Threat Intelligence; Threat Modeling; CHAPTER 8: Vulnerabilities; Who Is Who in Vulnerabilities Tracking; Zero-Day Exploits; Vulnerabilities Mapping; Vulnerability Testing; Prioritizing Vulnerability Remediation; CHAPTER 9: Environments; On-Premises (Onsite) Computing Environments; Private-Cloud Computing Environments; Public-Cloud Computing Environments; Hybrid-Cloud Computing Environments; The Internet of Things (IoT); Distributed Workforces; CHAPTER 10: Controls. 
505 8 |a Preventative Controls; Detective Controls; Corrective Controls; Compensatory Controls; Defense in Depth; People, Technology, and Operations; Communications; Policies, Standards, Procedures, and Guidelines; Regulatory Compliance: The European Example; Pulling It All Together; CHAPTER 11: Incident-Response Planning; Incident-Response Planning: Not Just a Good Idea-It's the Law!; Incident-Response Plan Phases; Preparing Your Incident-Response Plan; Identifying Incidents; Containing Incidents; Treating Incidents; Incident Recovery; Post-Incident Review; Do It All Over Again!; CHAPTER 12: People. 
505 8 |a What's in It for Me?; Attitude Adjustment!; The Right Message, Delivered the Right Way; Cybersecurity-Awareness Training; CHAPTER 13: Living Cybersecure!; General Data Protection Regulation (GDPR), Privacy, and Regulators; Artificial Intelligence and Machine Learning; Blockchain; Quantum Computing; BIBLIOGRAPHY; APPENDIX: Clear and Present Danger; INDEX; END USER LICENSE AGREEMENT. 
650 0 |a Information technology  |x Management. 
650 0 |a Business enterprises  |x Computer programs. 
650 0 |a Computer networks  |x Security measures. 
650 0 |a Computer industry. 
650 7 |a BUSINESS & ECONOMICS  |x Industries  |x Computer Industry.  |2 bisacsh 
650 7 |a BUSINESS & ECONOMICS  |x Industrial Management.  |2 bisacsh 
650 7 |a BUSINESS & ECONOMICS  |x Management.  |2 bisacsh 
650 7 |a BUSINESS & ECONOMICS  |x Management Science.  |2 bisacsh 
650 7 |a BUSINESS & ECONOMICS  |x Organizational Behavior.  |2 bisacsh 
650 7 |a Computer industry.  |2 fast  |0 (OCoLC)fst00872154 
650 7 |a Computer networks  |x Security measures.  |2 fast  |0 (OCoLC)fst00872341 
650 7 |a Information technology  |x Management.  |2 fast  |0 (OCoLC)fst00973112 
655 4 |a Electronic books. 
776 0 8 |i Print version:  |a Moschovitis, Christos J.P.  |t Cybersecurity program development for business.  |d Hoboken, New Jersey : John Wiley & Sons, Inc., [2018]  |z 9781119429517  |w (DLC) 2017058958  |w (OCoLC)1030447832 
856 4 0 |z View fulltext via EzAccess  |u https://ezaccess.library.uitm.edu.my/login?url=https://doi.org/10.1002/9781119430018 
994 |a 92  |b DG1