Cloud Security Handbook - Second Edition: Effectively secure cloud environments using AWS, Azure, and GCP
暫譯: 雲端安全手冊(第二版):有效保護使用 AWS、Azure 和 GCP 的雲端環境
Estrin, Eyal
- 出版商: Packt Publishing
- 出版日期: 2025-04-30
- 售價: $1,720
- 貴賓價: 9.5 折 $1,634
- 語言: 英文
- 頁數: 482
- 裝訂: Quality Paper - also called trade paper
- ISBN: 1836200013
- ISBN-13: 9781836200017
-
相關分類:
Amazon Web Services、Microsoft Azure、資訊安全
海外代購書籍(需單獨結帳)
相關主題
商品描述
A complete guide to securing the core components of cloud services, with practical, real-world examples using the built-in security features of Azure, AWS, and GCP
Key Features:
- Discover hands-on techniques for implementing robust cloud security implementation
- Protect your data and cloud infrastructure with tailored security strategies for your business
- Learn how to implement DevSecOps, apply encryption, detect threats and misconfigurations, and maintain cloud compliance
- Purchase of the print or Kindle book includes a free PDF eBook
Book Description:
Securing cloud resources is no easy task-each provider has its unique set of tools, processes, and challenges, demanding specialized expertise. This book cuts through the complexity, delivering practical guidance on embedding security best practices across the core infrastructure components of AWS, Azure, and GCP. It equips information security professionals and cloud engineers with the skills to identify risks and implement robust security controls throughout the design, deployment, and maintenance of public cloud environments.
Starting with the shared responsibility model, cloud service models, and deployment models, this book helps you get to grips with fundamental concepts such as compute, storage, networking, identity management, and encryption. You'll then explore common threats and compliance requirements for cloud environments. As you progress, you'll implement security strategies across deployments ranging from small-scale environments to enterprise-grade production systems, including hybrid and multi-cloud setups.
This edition expands on emerging topics like GenAI service security and DevSecOps, with hands-on examples leveraging built-in security features of AWS, Azure, and GCP.
By the end of this book, you'll confidently secure any cloud environment with a comprehensive understanding of cloud security principles.
What You Will Learn:
- Grasp the fundamental concepts of cloud services
- Secure compute, storage, and networking services across cloud platforms
- Get to grips with identity management in the cloud
- Secure Generative AI services in the cloud
- Audit and monitor cloud services with a security-focused approach
- Identify common threats and implement encryption to safeguard cloud services
- Implement security in hybrid and multi-cloud environments
- Design and maintain scalable security for large-scale cloud deployments
Who this book is for:
This book is for IT professionals and information security personnel taking their first steps in the public cloud or migrating existing environments to the cloud. Cloud engineers, cloud architects, and cloud security professionals responsible for maintaining production environments in the cloud will also benefit from this book. Prior experience with deploying virtual machines, using storage services, and networking will help you to get the most out of this book.
Table of Contents
- Introduction to Cloud Security
- Securing Compute Services - Virtual Machines
- Securing Compute Services - Containers and Kubernetes
- Securing Compute Services - Serverless and FaaS
- Securing Storage Services
- Securing Networking Services - Part 1
- Securing Networking Services - Part 2
- Securing Generative AI Services
- Effective Strategies for Implementing IAM Solutions
- Auditing and Threat Management in Cloud Environments
- Applying Encryption in Cloud Services
- Understanding Common Security Threats to Cloud Services
- Engaging with Cloud Providers
- Managing Hybrid Clouds
- Managing Multi-Cloud Environments
- Implementing DevSecOps
- Security in Large-Scale Environments
商品描述(中文翻譯)
完整指南,針對雲端服務的核心組件進行安全保護,並提供使用 Azure、AWS 和 GCP 內建安全功能的實際案例。
主要特點:
- 探索實用技術以實施強健的雲端安全
- 針對您的業務制定量身訂做的安全策略,以保護您的數據和雲端基礎設施
- 學習如何實施 DevSecOps,應用加密,檢測威脅和錯誤配置,並維持雲端合規性
- 購買印刷版或 Kindle 書籍可獲得免費 PDF 電子書
書籍描述:
保護雲端資源並非易事,每個供應商都有其獨特的工具、流程和挑戰,需求專業的專長。本書簡化了複雜性,提供在 AWS、Azure 和 GCP 的核心基礎設施組件中嵌入安全最佳實踐的實用指導。它使資訊安全專業人員和雲端工程師具備識別風險和在公共雲環境的設計、部署和維護中實施強健安全控制的技能。
本書從共享責任模型、雲端服務模型和部署模型開始,幫助您掌握計算、存儲、網絡、身份管理和加密等基本概念。接著,您將探索雲端環境中的常見威脅和合規要求。隨著進展,您將在從小型環境到企業級生產系統的部署中實施安全策略,包括混合雲和多雲設置。
本版擴展了新興主題,如生成式 AI 服務安全和 DevSecOps,並提供利用 AWS、Azure 和 GCP 內建安全功能的實作範例。
在本書結束時,您將能夠自信地保護任何雲端環境,並全面理解雲端安全原則。
您將學到的內容:
- 掌握雲端服務的基本概念
- 在雲端平台上保護計算、存儲和網絡服務
- 理解雲端中的身份管理
- 保護雲端中的生成式 AI 服務
- 以安全為重點的方法審核和監控雲端服務
- 識別常見威脅並實施加密以保護雲端服務
- 在混合雲和多雲環境中實施安全
- 設計和維護大規模雲端部署的可擴展安全
本書適合對象:
本書適合 IT 專業人員和資訊安全人員,特別是那些在公共雲中邁出第一步或將現有環境遷移到雲端的人。負責維護雲端生產環境的雲端工程師、雲端架構師和雲端安全專業人員也將從本書中受益。具備部署虛擬機、使用存儲服務和網絡的經驗將幫助您充分利用本書。
目錄:
- 雲端安全簡介
- 保護計算服務 - 虛擬機
- 保護計算服務 - 容器和 Kubernetes
- 保護計算服務 - 無伺服器和 FaaS
- 保護存儲服務
- 保護網絡服務 - 第 1 部分
- 保護網絡服務 - 第 2 部分
- 保護生成式 AI 服務
- 實施 IAM 解決方案的有效策略
- 雲端環境中的審核和威脅管理
- 在雲端服務中應用加密
- 理解雲端服務的常見安全威脅
- 與雲端供應商互動
- 管理混合雲
- 管理多雲環境
- 實施 DevSecOps
- 大規模環境中的安全