Network security evaluation using the NSA IEM

Network Security Evaluation provides a methodology for conducting technical security evaluations of all the critical components of a target network. The book describes how the methodology evolved and how to define the proper scope of an evaluation, including the consideration of legal issues that ma...

Πλήρης περιγραφή

Άλλοι συγγραφείς: Rogers, Russ., Cunningham, Bryan.
Μορφή: Ηλεκτρονική πηγή
Γλώσσα: English
Στοιχεία έκδοσης: Rockland, MA : [Sebastopol, Calif.] : Syngress ; c2005.
Θέματα:
Διαθέσιμο Online: http://www.sciencedirect.com/science/book/9781597490351
Ετικέτες: Προσθήκη ετικέτας
Δεν υπάρχουν, Καταχωρήστε ετικέτα πρώτοι!
LEADER 03224cam a2200325 a 4500
001 1/38032
008 090724s2005 us 001 0 eng
020 |a 9781597490351 
020 |a 1597490350 
035 |l 40661 
040 |a OPELS  |b eng  |c OPELS  |d OPELS  |d OCLCQ  |d GR-PeUP 
245 0 0 |a Network security evaluation using the NSA IEM  |h [electronic resource] /  |c Russ Rogers, technical editor and contributor ; Bryan Cunningham ... [et al.]. 
246 3 |a Network security evaluation using the National Security Agency INFOSEC evaluation methodology 
246 1 8 |a Network security evaluation 
260 |a Rockland, MA :  |b Syngress ;  |a [Sebastopol, Calif.] :  |b Distributed by O'Reilly Media in the United States and Canada,  |c c2005. 
300 |a 1 online resource (xxvi, 437 p.) :  |b ill. 
520 |a Network Security Evaluation provides a methodology for conducting technical security evaluations of all the critical components of a target network. The book describes how the methodology evolved and how to define the proper scope of an evaluation, including the consideration of legal issues that may arise during the evaluation. More detailed information is given in later chapters about the core technical processes that need to occur to ensure a comprehensive understanding of the networks security posture. Ten baseline areas for evaluation are covered in detail. The tools and examples detailed within this book include both Freeware and Commercial tools that provide a detailed analysis of security vulnerabilities on the target network. The book ends with guidance on the creation of customer roadmaps to better security and recommendations on the format and delivery of the final report. * There is no other book currently on the market that covers the National Security Agency's recommended methodology for conducting technical security evaluations * The authors are well known in the industry for their work in developing and deploying network security evaluations using the NSA IEM * The authors also developed the NSA's training class on this methodology. 
505 0 |a Introduction to the IEM; Before You Start Evaluating; Setting Expectations; Scoping the Evaluation; Legal Planning Chapter; The Technical Evaluation Plan (TEP); Starting your On-Site Efforts; Enumeration Activities; Collecting the majority of vulnerabilities; Fine Tuning the Evaluation; On-Site Closing Meeting; Evaluation Analysis; Creating Measurements and Trending Results; Trending Metrics Chapter; Final Reporting Chapter; IEM Summary; Appendix A: Table of example tools for each of the 10 baseline activities; Appendix B: Sample TEP layout. 
500 |a "Security Horizon." 
500 |a Includes index. 
650 4 |a Computer networks  |x Security measures  |x Evaluation. 
650 4 |a Computer security  |x Evaluation. 
650 4 |a Information resources management  |x Evaluation. 
655 4 |a Electronic books. 
700 1 |a Rogers, Russ. 
700 1 |a Cunningham, Bryan. 
852 |a INST  |b UNIPILB  |c EBOOKS  |e 20100625  |p 00b40661  |q 00b40661  |t ONLINE  |y 0 
856 4 0 |3 ScienceDirect  |u http://www.sciencedirect.com/science/book/9781597490351 
856 4 |d /webopac/covers/02/40661_9781597490351.jpg 
856 4 |d /webopac/covers/02/40661_1597490350.jpg