Information Security Management with ITIL V3 (Paperback)
暫譯: ITIL V3 資訊安全管理
Jacques A. Cazemier, Paul Overbeek, Louk Peters
- 出版商: Van Haren Publishing
- 出版日期: 2010-01-31
- 售價: $2,560
- 貴賓價: 9.5 折 $2,432
- 語言: 英文
- 頁數: 144
- 裝訂: Paperback
- ISBN: 908753552X
- ISBN-13: 9789087535520
-
相關分類:
資訊安全
無法訂購
買這商品的人也買了...
商品描述
This title is a comprehensive source of information on the ITILv3 Information Security Management process. This groundbreaking new title looks at information security from defining what security measures positively support the business, to implementation to maintaining the required level and anticipating required changes. It covers: 1) Fundamentals of information security providing readers insight and give background about what is going to be managed. Topics covered include: types of security controls, business benefits and the perspectives of business, customers, partners, service providers, and auditors. 2) Fundamentals of management of information security - explains what Information Security Management is about and its objectives. Details are also given on implementing the process and the continuous effort required to maintain its quality. 3) ITILv3 and Information Security Management - shows the links with the other ITIL processes. Shows how integrating the Information Security Management activities into existing processes and activities not only supports efficiencies but ultimately is the key way to achieve effective Information Security Management. 4) Implementing Information Security Management - gives practical advice how to put Information Security Management into practice. From awareness in the organization via documentation required, to maturity models. This guidance describes best practices for realizing Information Security Management. Key Features and Benefits: 1) One of the few titles available that covers the Information Security Management process - providing a one-stop shop for information relating to information security in the context of ITIL. 2) Written in a straight forward and easy-to-understand style that makes the book both easy to use and read. Making the information easier to understand. 3) The information within the book is aligned with that in the ISO/IEC 27000 family of information security standards. Helping you to integrate and leverage the strengths of both frameworks. Leading to costs saving, increases in efficiency and a higher level of information security.
商品描述(中文翻譯)
本書是有關 ITILv3 資訊安全管理流程的全面資訊來源。這本開創性的書籍從定義哪些安全措施能正面支持業務開始,探討資訊安全,並涵蓋實施、維持所需的安全水準及預測所需的變更。內容包括:1) 資訊安全的基本原則,為讀者提供洞見並介紹將要管理的背景。涵蓋的主題包括:安全控制的類型、商業利益以及業務、客戶、合作夥伴、服務提供者和審計師的觀點。2) 資訊安全管理的基本原則 - 解釋資訊安全管理的內容及其目標。還詳細說明了實施該流程及維持其質量所需的持續努力。3) ITILv3 與資訊安全管理 - 顯示與其他 ITIL 流程的聯繫。展示如何將資訊安全管理活動整合到現有流程和活動中,不僅支持效率,最終也是實現有效資訊安全管理的關鍵方式。4) 實施資訊安全管理 - 提供實用建議,如何將資訊安全管理付諸實踐。從組織內的意識到所需的文件,再到成熟度模型。本指導描述了實現資訊安全管理的最佳實踐。主要特點和優勢:1) 是少數幾本涵蓋資訊安全管理流程的書籍之一 - 提供有關 ITIL 上下文中資訊安全的資訊的一站式商店。2) 以直接且易於理解的風格撰寫,使本書既易於使用又易於閱讀,讓資訊更容易理解。3) 書中的資訊與 ISO/IEC 27000 系列資訊安全標準中的資訊保持一致,幫助您整合並利用這兩個框架的優勢,從而實現成本節省、效率提升和更高水平的資訊安全。