Implement information security effectively as per your organization’s needs.
Key Features
- Learn to build your own information security framework, the best fit for your organization
- Build on the concepts of threat modeling, incidence response, and security analysis
- Practical use cases and best practices for information security
Book Description
Having an information security mechanism is one of the most crucial factors for any organization. Important assets of organization demand a proper risk management and threat model for security, and so information security concepts are gaining a lot of traction. This book starts with the concept of information security and shows you why it’s important.
It then moves on to modules such as threat modeling, risk management, and mitigation. It also covers the concepts of incident response systems, information rights management, and more. Moving on, it guides you to build your own information security framework as the best fit for your organization. Toward the end, you’ll discover some best practices that can be implemented to make your security framework strong.
By the end of this book, you will be well-versed with all the factors involved in information security, which will help you build a security framework that is a perfect fit your organization’s requirements.
What you will learn
- Develop your own information security framework
- Build your incident response mechanism
- Discover cloud security considerations
- Get to know the system development life cycle
- Get your security operation center up and running
- Know the various security testing types
- Balance security as per your business needs
- Implement information security best practices
Who This Book Is For
This book is for security analysts and professionals who deal with security mechanisms in an organization. If you are looking for an end to end guide on information security and risk analysis with no prior knowledge of this domain, then this book is for you.
Table of Contents
- Information and Data Security Fundamentals
- Threat Modeling
- Preparing for Information Security
- Information Security Risk Management
- Developing your Information and Data Security Plan
- Continuous Security Testing and Monitoring
- Business Continuity / Disaster Recovery Planning
- Incident Response Planning
- Developing a Security Operations Center
- Developing a Security Architecture Program
- Cloud Security Considerations
- Information Security Best Practices