Risk Analysis and Security Countermeasure Selection (Hardcover)
暫譯: 風險分析與安全對策選擇 (精裝版)

Thomas L. Norman CPP/PSP/CSC

  • 出版商: CRC
  • 出版日期: 2009-12-18
  • 售價: $3,000
  • 貴賓價: 9.5$2,850
  • 語言: 英文
  • 頁數: 422
  • 裝訂: Hardcover
  • ISBN: 1420078704
  • ISBN-13: 9781420078701
  • 相關分類: Penetration-test
  • 已過版

買這商品的人也買了...

相關主題

商品描述

When properly conducted, risk analysis enlightens, informs, and illuminates, helping management organize their thinking into properly prioritized, cost-effective action. Poor analysis, on the other hand, usually results in vague programs with no clear direction and no metrics for measurement. Although there is plenty of information on risk analysis, it is rare to find a book that explains this highly complex subject with such startling clarity. Very few, if any, focus on the art of critical thinking and how to best apply it to the task of risk analysis.

The first comprehensive resource to explain how to evaluate the appropriateness of countermeasures, from a cost-effectiveness perspective, Risk Analysis and Security Countermeasure Selection details the entire risk analysis process in language that is easy to understand. It guides readers from basic principles to complex processes in a step-by-step fashion, evaluating DHS–approved risk assessment methods, including CARVER, API/NPRA, RAMCAP, and various Sandia methodologies.

Using numerous case illustrations, the text clearly explains the five core principles of the risk analysis lifecycle—determining assets, threats, vulnerabilities, risks, and countermeasures. It also supplies readers with a completely adaptable graphic risk analysis tool that is simple to use, can be applied in public or private industries, and works with all DHS–approved methods. This reader-friendly guide provides the tools and insight needed to effectively analyze risks and secure facilities in a broad range of industries, including DHS designated critical infrastructure in the chemical, transportation, energy, telecommunications, and public health sectors.

商品描述(中文翻譯)

當風險分析進行得當時,它能夠啟發、告知並照亮,幫助管理層將思考組織成適當優先順序的、具成本效益的行動。相反地,糟糕的分析通常會導致模糊的計畫,缺乏明確的方向和衡量指標。儘管有大量關於風險分析的信息,但很少有書籍能以如此驚人的清晰度解釋這一高度複雜的主題。幾乎沒有書籍專注於批判性思維的藝術以及如何將其最佳應用於風險分析的任務。

《風險分析與安全對策選擇》是第一本全面資源,解釋如何從成本效益的角度評估對策的適當性,詳細說明了整個風險分析過程,使用易於理解的語言。它以逐步的方式引導讀者從基本原則到複雜過程,評估DHS(國土安全部)批准的風險評估方法,包括CARVER、API/NPRA、RAMCAP以及各種Sandia方法論。

本書使用大量案例插圖,清楚地解釋了風險分析生命周期的五個核心原則——確定資產、威脅、脆弱性、風險和對策。它還為讀者提供了一個完全可調整的圖形風險分析工具,簡單易用,適用於公共或私營行業,並與所有DHS批准的方法兼容。這本讀者友好的指南提供了有效分析風險和保護設施所需的工具和見解,涵蓋了包括DHS指定的化學、交通、能源、電信和公共衛生等行業的關鍵基礎設施。