Applied Security Visualization (Paperback)

Raffael Marty

  • 出版商: Addison Wesley
  • 出版日期: 2008-07-01
  • 定價: $1,980
  • 售價: 8.0$1,584
  • 語言: 英文
  • 頁數: 552
  • 裝訂: Paperback
  • ISBN: 0321510100
  • ISBN-13: 9780321510105
  • 相關分類: 資訊安全
  • 立即出貨

買這商品的人也買了...

商品描述

APPLIED SECURITY VISUALIZATION

 

“Collecting log data is one thing, having relevant information is something else. The art to transform all kinds of log data into meaningful security information is the core of this book. Raffy illustrates in a straight forward way, and with hands-on examples, how such a challenge can be mastered. Let's get inspired.”

–Andreas Wuchner, Head of Global IT Security, Novartis

 

Use Visualization to Secure Your Network Against the Toughest, Best-Hidden Threats

 

As networks become ever more complex, securing them becomes more and more difficult. The solution is visualization. Using today’s state-of-the-art data visualization techniques, you can gain a far deeper understanding of what’s happening on your network right now. You can uncover hidden patterns of data, identify emerging vulnerabilities and attacks, and respond decisively with countermeasures that are far more likely to succeed than conventional methods.

 

In Applied Security Visualization, leading network security visualization expert Raffael Marty introduces all the concepts, techniques, and tools you need to use visualization on your network. You’ll learn how to identify and utilize the right data sources, then transform your data into visuals that reveal what you really need to know. Next, Marty shows how to use visualization to perform broad network security analyses, assess specific threats, and even improve business compliance.

 

He concludes with an introduction to a broad set of visualization tools. The book’s CD also includes DAVIX, a compilation of freely available tools for security visualization.

 

You'll learn how to:

• Intimately understand the data sources that are essential for effective visualization

• Choose the most appropriate graphs and techniques for your IT data

• Transform complex data into crystal-clear visual representations

• Iterate your graphs to deliver even better insight for taking action

• Assess threats to your network perimeter, as well as threats imposed by insiders

• Use visualization to manage risks and compliance mandates more successfully

• Visually audit both the technical and organizational aspects of information and network security

• Compare and master today’s most useful tools for security visualization

 

Contains the live CD Data Analysis and Visualization Linux (DAVIX). DAVIX is a compilation of powerful tools for visualizing networks and assessing their security. DAVIX runs directly from the CD-ROM, without installation.

 

Raffael Marty is chief security strategist and senior product manager for Splunk, the leading provider of large-scale, high-speed indexing and search technology for IT infrastructures. As customer advocate and guardian, he focuses on using his skills in data visualization, log management, intrusion detection, and compliance. An active participant on industry standards committees such as CEE (Common Event Expression) and OVAL (Open Vulnerability and Assessment Language), Marty created the Thor and AfterGlow automation tools, and founded the security visualization portal secviz.org. Before joining Splunk, he managed the solutions team at ArcSight, served as IT security consultant for PriceWaterhouseCoopers, and was a member of the IBM Research Global Security Analysis Lab.

 

商品描述(中文翻譯)

《應用安全可視化》

「收集日誌數據是一回事,擁有相關信息是另一回事。將各種日誌數據轉化為有意義的安全信息的藝術是本書的核心。Raffy以直接的方式和實際示例展示了如何掌握這一挑戰。讓我們獲得靈感。」
- Andreas Wuchner,諾華全球IT安全主管

利用可視化保護您的網絡免受最棘手、最隱蔽的威脅

隨著網絡變得越來越複雜,保護它們變得越來越困難。解決方案是可視化。利用當今最先進的數據可視化技術,您可以更深入地了解您的網絡當前的情況。您可以發現數據中隱藏的模式,識別新出現的漏洞和攻擊,並以比傳統方法更有可能成功的對策做出果斷回應。

在《應用安全可視化》中,領先的網絡安全可視化專家Raffael Marty介紹了您在網絡上使用可視化所需的所有概念、技術和工具。您將學習如何識別和利用正確的數據來源,然後將您的數據轉化為揭示您真正需要了解的視覺化內容。接下來,Marty展示了如何使用可視化進行廣泛的網絡安全分析,評估特定的威脅,甚至改善業務合規性。

他最後介紹了一套廣泛的可視化工具。該書的光盤還包括DAVIX,這是一個用於安全可視化的免費工具集合。

您將學習如何:
- 深入了解對於有效可視化至關重要的數據來源
- 選擇最適合您的IT數據的圖表和技術
- 將複雜的數據轉化為清晰的視覺表示
- 通過迭代圖表來提供更好的洞察力以採取行動
- 評估您網絡周邊的威脅以及內部人員帶來的威脅
- 使用可視化更成功地管理風險和合規要求
- 對信息和網絡安全的技術和組織方面進行視覺審計
- 比較並掌握當今最有用的安全可視化工具

光盤中包含了數據分析和可視化Linux(DAVIX)。DAVIX是一個強大的用於可視化網絡並評估其安全性的工具集合。DAVIX可以直接從光盤運行,無需安裝。

Raffael Marty是Splunk的首席安全策略師和高級產品經理,Splunk是IT基礎設施的大規模高速索引和搜索技術的領先提供商。作為客戶倡導者和守護者,他專注於使用他在數據可視化、日誌管理、入侵檢測和合規性方面的技能。作為行業標準委員會(如CEE和OVAL)的積極參與者,Marty創建了Thor和AfterGlow自動化工具,並創辦了安全可視化門戶secviz.org。在加入Splunk之前,他管理了ArcSight的解決方案團隊,擔任普華永道的IT安全顧問,並且是I