Security Automation Essentials: Streamlined Enterprise Security Management & Monitoring with SCAP (Paperback)

Greg Witte, Melanie Cook, Matt Kerr, Shane Shaffer

  • 出版商: McGraw-Hill Education
  • 出版日期: 2012-07-24
  • 定價: $2,100
  • 售價: 5.0$1,050
  • 語言: 英文
  • 頁數: 288
  • 裝訂: Paperback
  • ISBN: 0071772510
  • ISBN-13: 9780071772518
  • 相關分類: 資訊安全
  • 立即出貨 (庫存 < 4)

商品描述

The definitive guide to information security automation technologies

Security Automation Essentials: Streamlined Enterprise Security Management & Monitoring with SCAP provides IT security managers in both government agencies and private organizations with full details on the capabilities of SCAP (Security Content Automation Protocol) technologies. SCAP reduces dozens of individual security-related tasks (checking that patches are up to date) to simple, streamlined, and automated tasks that produce standardized results. It aids in the integration and ease of use of multiple, non-interoperable products and platforms.

This book is written by a team of subject matter experts from G2, a leading computer security company working closely with the SCAP standards agency (NIST), government clients, including the Department of Defense, NSA, Drug Enforcement Administration, and FDA, and private clients such as American Express, Monster.com, and Black & Decker. The book delivers a complete and accessible overview of SCAP, including enumerations of common platforms, vulnerabilities, and configurations. SCAP's open-standard, SML-based language is discussed, along with the Open Vulnerability and Assessment Language (OVAL), and how it communicates.

Security Automation Essentials: Streamlined Enterprise Security Management & Monitoring with SCAP

  • Features thorough, accessible explanations for security professionals of all levels about what SCAP is and what it can do to automate and streamline network security practices
  • Helps you immediately take advantage of SCAP support in existing products, and includes tips for purchasing new security products and services that can interoperate with existing enterprise systems
  • Includes case studies of SCAP streamlining in practice
  • Supplemented by an author website with up-to-date resources and announcements on the latest developments in the field
  • Provides a solid foundation for studying particular SCAP components in more detail and customizing/programming SCAP content and tools

Coverage includes:
What Is SCAP; SCAP Languages; SCAP Enumerations; SCAP Vulnerability Measurement; Putting the Pieces Together; Using SCAP In Your Enterprise; Emerging SCAP Technologies

商品描述(中文翻譯)

《安全自動化技術的權威指南》

《安全自動化基礎:使用SCAP進行簡化的企業安全管理與監控》為政府機構和私營組織的IT安全經理提供了有關SCAP(安全內容自動化協議)技術能力的詳細信息。SCAP將數十個個別的安全相關任務(檢查補丁是否最新)簡化為簡單、簡化和自動化的任務,並產生標準化的結果。它有助於集成和使用多個不互操作的產品和平台。

本書由G2的專家團隊撰寫,G2是一家領先的計算機安全公司,與SCAP標準機構(NIST)、政府客戶(包括國防部、NSA、禁毒局和FDA)以及美國運通、Monster.com和Black & Decker等私營客戶密切合作。本書提供了SCAP的完整且易於理解的概述,包括常見平台、漏洞和配置的列舉。本書還討論了SCAP的開放標準、基於SML的語言,以及它如何進行通信。

《安全自動化基礎:使用SCAP進行簡化的企業安全管理與監控》的特點包括:
- 為安全專業人員提供了詳盡且易於理解的解釋,介紹了SCAP是什麼以及它如何自動化和簡化網絡安全實踐。
- 幫助您立即利用現有產品中的SCAP支持,並提供購買與現有企業系統互操作的新安全產品和服務的提示。
- 包括SCAP簡化實踐的案例研究。
- 作者網站提供最新資源和領域發展的公告。
- 為更詳細地研究特定SCAP組件並自定義/編程SCAP內容和工具提供了堅實的基礎。

本書的內容包括:
- 什麼是SCAP;
- SCAP語言;
- SCAP列舉;
- SCAP漏洞測量;
- 將各個組件組合在一起;
- 在企業中使用SCAP;
- 新興的SCAP技術。