Securing the Enterprise: A Practical Guide for Cisos, Cxos, and It Security Professionals
暫譯: 企業安全:CISO、CXO 與 IT 安全專業人員的實用指南
Jha, Gs
- 出版商: Apress
- 出版日期: 2025-09-27
- 售價: $2,160
- 貴賓價: 9.5 折 $2,052
- 語言: 英文
- 頁數: 322
- 裝訂: Quality Paper - also called trade paper
- ISBN: 9798868816536
- ISBN-13: 9798868816536
-
相關分類:
Penetration-test
海外代購書籍(需單獨結帳)
相關主題
商品描述
Cybersecurity is no longer just an IT issue; it is a business-critical function requiring executive oversight and strategic implementation. This book offers a practical approach to cybersecurity leadership, risk management, and frameworks such as NIST, MITRE ATT&CK, and Zero Trust.
The book blends executive strategy with hands-on cybersecurity methodologies, providing a holistic understanding for CXOs, CISOs, and IT security professionals.
By exploring real-world case studies and breaches, such as SolarWinds and Colonial Pipeline, this book equips you with proactive defense strategies, governance insights, and the technical knowledge required to secure enterprise infrastructures effectively.
What You Will Learn
- Align cybersecurity with business strategy and executive decision making
- Cover practical implementation of frameworks such as NIST CSF, ISO 27001, and Zero Trust
- Respond to cyber incidents and build a resilient security culture
- Understand key cybersecurity principles, including threat intelligence and risk management
- Study advanced cybersecurity topics, including AI-driven threats, ransomware, and cloud security
Who This Book Is For
Cybersecurity professionals, CISOs, CIOs, IT security architects, and risk managers; plus business executives, Chief Experience Officers (CXOs), board members, compliance officers, graduate students in cybersecurity
商品描述(中文翻譯)
網路安全不再僅僅是IT問題;它是一項對業務至關重要的功能,需要高層的監督和戰略實施。本書提供了一種實用的網路安全領導、風險管理及框架(如NIST、MITRE ATT&CK和Zero Trust)的方法。
本書將高層策略與實務的網路安全方法論相結合,為CXO、CISO和IT安全專業人員提供全面的理解。
通過探索現實世界的案例研究和安全漏洞,例如SolarWinds和Colonial Pipeline,本書使您具備主動防禦策略、治理見解以及有效保護企業基礎設施所需的技術知識。
您將學到的內容:
- 將網路安全與業務策略和高層決策對齊
- 涵蓋NIST CSF、ISO 27001和Zero Trust等框架的實際實施
- 回應網路事件並建立韌性的安全文化
- 理解關鍵的網路安全原則,包括威脅情報和風險管理
- 研究進階的網路安全主題,包括AI驅動的威脅、勒索病毒和雲安全
本書適合的讀者:
網路安全專業人員、CISO、CIO、IT安全架構師和風險管理人員;以及商業高管、首席體驗官(CXO)、董事會成員、合規官和網路安全研究生。
作者簡介
GS Jha is a seasoned IT and cybersecurity leader with ore than 25 years of experience driving transformational initiatives across global organizations. He has held CIO and CISO roles at CareDx, Accuray, Bio-Techne, and ThermoFisher Scientific, leading cybersecurity transformations, regulatory compliance (SOX, HIPAA, GDPR), and cost-saving IT initiatives exceeding $50M.
He holds a BS in Computer Engineering, an MS in Computer Science, and an MBA from Northwestern University (Kellogg), and is currently pursuing an MS in Cybersecurity from Georgia Institute of Technology.
A finalist for the 2024 Bay Area CIO ORBIE Award and recognized among the Top 10 Indian CIOs of the Year, Jha is known for his leadership in IT security, risk management, and digital transformation.
作者簡介(中文翻譯)
GS Jha 是一位資深的資訊科技及網路安全領導者,擁有超過 25 年的經驗,推動全球組織的轉型計畫。他曾在 CareDx、Accuray、Bio-Techne 和 ThermoFisher Scientific 擔任 CIO 和 CISO,領導網路安全轉型、法規遵循(SOX、HIPAA、GDPR)以及超過 5000 萬美元的成本節省 IT 計畫。
他擁有西北大學(Kellogg)的計算機工程學士學位、計算機科學碩士學位,以及工商管理碩士學位,目前正在喬治亞理工學院攻讀網路安全碩士學位。
作為 2024 年灣區 CIO ORBIE 獎的決賽入圍者,並被評選為年度十大印度 CIO 之一,Jha 以其在 IT 安全、風險管理和數位轉型方面的領導能力而聞名。