International IT Governance : An Executive Guide to ISO 17799/ISO 27001
, by Calder, Alan; Watkins, SteveNote: Supplemental materials are not guaranteed with Rental or Used book purchases.
- ISBN: 9780749447489 | 0749447486
- Cover: Paperback
- Copyright: 8/31/2006
The development of IT Governance, which recognizes the convergence between business and IT management, makes it essential for managers at all levels and in organizations of all sizes to understand how best to deal with information security risks. "International IT Governance" explores new legislation, including the launch of ISO/IEC 27001, which makes a single, global standard of information security best practice available.
How to use this book | xi | ||||
Acknowledgments | xiii | ||||
Introduction | 1 | (144) | |||
|
9 | (14) | |||
|
10 | (1) | |||
|
11 | (3) | |||
|
14 | (1) | |||
|
14 | (2) | |||
|
16 | (1) | |||
|
16 | (4) | |||
|
20 | (1) | |||
|
20 | (3) | |||
|
23 | (8) | |||
|
23 | (3) | |||
|
26 | (1) | |||
|
27 | (2) | |||
|
29 | (2) | |||
|
31 | (14) | |||
|
31 | (1) | |||
|
32 | (1) | |||
|
33 | (1) | |||
|
33 | (2) | |||
|
35 | (1) | |||
|
36 | (2) | |||
|
38 | (1) | |||
|
39 | (4) | |||
|
43 | (2) | |||
|
45 | (18) | |||
|
46 | (1) | |||
|
47 | (1) | |||
|
48 | (1) | |||
|
49 | (2) | |||
|
51 | (5) | |||
|
56 | (1) | |||
|
57 | (1) | |||
|
58 | (3) | |||
|
61 | (1) | |||
|
62 | (1) | |||
|
62 | (1) | |||
|
63 | (10) | |||
|
63 | (7) | |||
|
70 | (1) | |||
|
71 | (2) | |||
|
73 | (22) | |||
|
73 | (1) | |||
|
74 | (13) | |||
|
87 | (4) | |||
|
91 | (1) | |||
|
91 | (1) | |||
|
92 | (3) | |||
|
95 | (14) | |||
|
95 | (2) | |||
|
97 | (1) | |||
|
98 | (2) | |||
|
100 | (1) | |||
|
101 | (2) | |||
|
103 | (1) | |||
|
104 | (5) | |||
|
109 | (18) | |||
|
109 | (1) | |||
|
110 | (3) | |||
|
113 | (1) | |||
|
113 | (3) | |||
|
116 | (1) | |||
|
117 | (2) | |||
|
119 | (5) | |||
|
124 | (3) | |||
|
127 | (18) | |||
|
128 | (1) | |||
|
129 | (3) | |||
|
132 | (2) | |||
|
134 | (6) | |||
|
140 | (1) | |||
|
141 | (4) | |||
10. Physical and environmental security | 145 | (12) | |||
|
145 | (9) | |||
|
154 | (3) | |||
11. Equipment security | 157 | (10) | |||
|
157 | (3) | |||
|
160 | (2) | |||
|
162 | (1) | |||
|
163 | (1) | |||
|
164 | (1) | |||
|
165 | (1) | |||
|
165 | (2) | |||
12. Communications and operations management | 167 | (14) | |||
|
167 | (2) | |||
|
169 | (1) | |||
|
170 | (1) | |||
|
171 | (1) | |||
|
172 | (2) | |||
|
174 | (1) | |||
|
175 | (1) | |||
|
176 | (5) | |||
13. Controls against malicious software (malware) and back-ups | 181 | (14) | |||
|
182 | (1) | |||
|
183 | (1) | |||
|
184 | (1) | |||
|
185 | (3) | |||
|
188 | (1) | |||
|
189 | (1) | |||
|
190 | (5) | |||
14. Network security management and media handling | 195 | (8) | |||
|
195 | (3) | |||
|
198 | (5) | |||
15. Exchanges of information | 203 | (8) | |||
|
203 | (3) | |||
|
206 | (1) | |||
|
207 | (1) | |||
|
208 | (3) | |||
16. Electronic commerce services | 211 | (12) | |||
|
211 | (3) | |||
|
214 | (3) | |||
|
217 | (1) | |||
|
218 | (1) | |||
|
219 | (4) | |||
17. E-mail and internet use | 223 | (8) | |||
|
224 | (2) | |||
|
226 | (2) | |||
|
228 | (3) | |||
18. Access control | 231 | (18) | |||
|
232 | (1) | |||
|
232 | (3) | |||
|
235 | (1) | |||
|
236 | (2) | |||
|
238 | (9) | |||
|
247 | (2) | |||
19. Network access control | 249 | (12) | |||
|
249 | (4) | |||
|
253 | (8) | |||
20. Operating system access control | 261 | (6) | |||
|
261 | (2) | |||
|
263 | (1) | |||
|
263 | (1) | |||
|
264 | (1) | |||
|
265 | (1) | |||
|
265 | (2) | |||
21. Application access control and teleworking | 267 | (8) | |||
|
267 | (2) | |||
|
269 | (6) | |||
22. Systems acquisition, development and maintenance | 275 | (6) | |||
|
276 | (1) | |||
|
276 | (5) | |||
23. Cryptographic controls | 281 | (8) | |||
|
282 | (1) | |||
|
283 | (1) | |||
|
284 | (1) | |||
|
285 | (1) | |||
|
286 | (3) | |||
24. Security in development and support processes | 289 | (10) | |||
|
289 | (2) | |||
|
291 | (1) | |||
|
291 | (4) | |||
|
295 | (4) | |||
25. Monitoring and information security incident management | 299 | (16) | |||
|
299 | (5) | |||
|
304 | (5) | |||
|
309 | (6) | |||
26. Business continuity management | 315 | (12) | |||
|
316 | (1) | |||
|
317 | (1) | |||
|
318 | (2) | |||
|
320 | (3) | |||
|
323 | (4) | |||
27 Compliance | 327 | (18) | |||
|
328 | (7) | |||
|
335 | (2) | |||
|
337 | (2) | |||
|
339 | (1) | |||
|
339 | (1) | |||
|
340 | (1) | |||
|
341 | (2) | |||
|
343 | (2) | |||
28. The ISO/IEC 27001 audit | 345 | (6) | |||
|
346 | (1) | |||
|
347 | (1) | |||
|
348 | (3) | |||
Useful websites | 351 | (4) | |||
Further reading | 355 | (2) | |||
Index | 357 |
What is included with this book?
The New copy of this book will include any supplemental materials advertised. Please check the title of the book to determine if it should include any access cards, study guides, lab manuals, CDs, etc.
The Used, Rental and eBook copies of this book are not guaranteed to include any supplemental materials. Typically, only the book itself is included. This is true even if the title states it includes any access cards, study guides, lab manuals, CDs, etc.