Assessing and Managing Security Risk in IT Systems: A Structured Methodology

This book begins with an overview of information systems security, offering the basic underpinnings of information security and concluding with an analysis of risk management. Part II describes the McCumber Cube, providing the original paper from 1991 and detailing ways to accurately map information flow in computer and telecom systems. It also explains how to apply the methodology to individual system components and subsystems. Part III serves as a resource for analysts and security practitioners who want access to more detailed information on technical vulnerabilities and risk assessment analytics. McCumber details how information extracted from this resource can be applied to his assessment processes.

"1139557932"
Assessing and Managing Security Risk in IT Systems: A Structured Methodology

This book begins with an overview of information systems security, offering the basic underpinnings of information security and concluding with an analysis of risk management. Part II describes the McCumber Cube, providing the original paper from 1991 and detailing ways to accurately map information flow in computer and telecom systems. It also explains how to apply the methodology to individual system components and subsystems. Part III serves as a resource for analysts and security practitioners who want access to more detailed information on technical vulnerabilities and risk assessment analytics. McCumber details how information extracted from this resource can be applied to his assessment processes.

71.49 In Stock
Assessing and Managing Security Risk in IT Systems: A Structured Methodology

Assessing and Managing Security Risk in IT Systems: A Structured Methodology

by John McCumber
Assessing and Managing Security Risk in IT Systems: A Structured Methodology

Assessing and Managing Security Risk in IT Systems: A Structured Methodology

by John McCumber

eBook

$71.49  $94.95 Save 25% Current price is $71.49, Original price is $94.95. You Save 25%.

Available on Compatible NOOK devices, the free NOOK App and in My Digital Library.
WANT A NOOK?  Explore Now

Related collections and offers


Overview

This book begins with an overview of information systems security, offering the basic underpinnings of information security and concluding with an analysis of risk management. Part II describes the McCumber Cube, providing the original paper from 1991 and detailing ways to accurately map information flow in computer and telecom systems. It also explains how to apply the methodology to individual system components and subsystems. Part III serves as a resource for analysts and security practitioners who want access to more detailed information on technical vulnerabilities and risk assessment analytics. McCumber details how information extracted from this resource can be applied to his assessment processes.


Product Details

ISBN-13: 9781135488963
Publisher: CRC Press
Publication date: 08/12/2004
Sold by: Barnes & Noble
Format: eBook
Pages: 288
File size: 5 MB

About the Author

John McCumber

Table of Contents

SECTION I SECURITY CONCEPTS 1 Using Models 2 Defining Information Security 3 Information as an Asset 4 Understanding Threat and Its Relation to Vulnerabilities, 5 Assessing Risk Variables: The Risk Assessment Process, SECTION II THE McCUMBER CUBE METHODOLOGY 6 The McCumber Cube 7 Determining Information States and Mapping Information Flow, 8 Decomposing the Cube for Security Enforcement, 9 Information State Analysis for Components and Subsystems, 10 Managing the Security Life Cycle, 11 Safeguard Analysis, 12 Practical Applications of McCumber Cube Analysis, SECTION III APPENDICES

From the B&N Reads Blog

Customer Reviews