Security Awareness Design in the New Normal Age
暫譯: 新常態時代的安全意識設計

Goucher, Wendy F.

  • 出版商: CRC
  • 出版日期: 2022-07-18
  • 售價: $2,870
  • 貴賓價: 9.5$2,727
  • 語言: 英文
  • 頁數: 128
  • 裝訂: Hardcover - also called cloth, retail trade, or trade
  • ISBN: 103204764X
  • ISBN-13: 9781032047645
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

People working in our cyber world have access to a wide range of information including sensitive personal or corporate information which increases the risk to it. One of the aspects of the protection of this data is to train the user to behave more securely. This means that every person who handles sensitive information, their own or that of other people, be aware of the risks that their use can pose as well as how to do their job in such a way as to reduce that risk.

The approach we use for that is called 'Security awareness' but would be more accurately described as security 'un-awareness' because most of the problems come where the user doesn't know about a risk from their behaviour, or its potential impact. In these post COVID days of 'New Normal' working, in which staff spend more of their time working at home, organisations are still responsible for the protection of sensitive personal and corporate data. This means that it is more important than ever to create an effective security awareness communication process.

This book will primarily consider the problem of hitting that 'Sweet Spot' in the age of 'New Normal' working, which means that the knowledge about secure practice is not only understood and remembered, but also reliably put into practice - even when a person is working alone. This will be informed by academic research as well as experience, both my own and learnt from my fellow professionals, and then will be used to demonstrate how 'New Normal' working can improve security awareness as well as challenge it.

商品描述(中文翻譯)

在我們的網路世界中,工作的人們可以接觸到各種資訊,包括敏感的個人或企業資訊,這增加了其風險。保護這些數據的一個方面是訓練使用者以更安全的方式行為。這意味著每一位處理敏感資訊的人,無論是自己的還是他人的,都應該意識到他們的使用可能帶來的風險,以及如何以減少這些風險的方式來執行他們的工作。

我們所使用的方法稱為「安全意識」,但更準確地說應該描述為安全的「無意識」,因為大多數問題出現在使用者對其行為所帶來的風險或其潛在影響並不知情。在這個後 COVID 時代的「新常態」工作中,員工花更多時間在家工作,組織仍然負責保護敏感的個人和企業數據。這意味著建立一個有效的安全意識溝通過程比以往任何時候都更為重要。

本書將主要考慮在「新常態」工作時代中達到那個「甜蜜點」的問題,這意味著對安全實踐的知識不僅被理解和記住,還能可靠地付諸實踐——即使在一個人獨自工作時。這將基於學術研究以及我自己的經驗和從同行專業人士那裡學到的經驗,然後用來展示「新常態」工作如何改善安全意識以及挑戰它。

作者簡介

Wendy Goucher is an Information Security and Risk Consultant at Goucher Consulting. Most of her work is focused on working with organisations to devise policy and procedures that are both compliant with external rules and operationally effective. Wendy has also designed and delivered security awareness programs and material in a range of organisations including a FTSE 100 organisation. She also used her training and experience as a lecturer as part of a team that produced the teaching materials for a security awareness curriculum to be rolled out to children ages 5 to 18 in a middle eastern country. More recently Wendy is the author of the successful 'Nettie in Cyberland' series of books which use stories to start the conversation about cyber security between children around the age of five and their parents and carers. Her other books include Information Security Auditor: Careers in Information Security (BCS Guides to IT Roles) 2015 and has co-authored The CIO's Guide to Information Security Incident Management in 2018.

作者簡介(中文翻譯)

Wendy Goucher 是 Goucher Consulting 的資訊安全與風險顧問。她的工作主要集中在與組織合作,制定符合外部規範且在操作上有效的政策和程序。Wendy 也設計並提供了安全意識計畫和材料,涵蓋多個組織,包括一家 FTSE 100 的公司。她還利用自己作為講師的訓練和經驗,作為團隊的一部分,製作了一套安全意識課程的教學材料,將在一個中東國家推廣給 5 到 18 歲的兒童。最近,Wendy 是成功的《Nettie in Cyberland》系列書籍的作者,這些書籍利用故事來啟動五歲左右的兒童與其父母和看護者之間有關網路安全的對話。她的其他書籍包括《資訊安全審計師:資訊安全職業(BCS IT 角色指南)》2015 年版,並於 2018 年共同撰寫了《CIO 的資訊安全事件管理指南》。