Buy Books Online

The mega online bookstore

Welcome Guest
| Login
| Home | Contact Us | Shopping Cart
Managing the Human Factor in Information Security How to win over staff and influence business managers,0470721995,9780470721995

Managing the Human Factor in Information Security How to win over staff and influence business managers

Author : David Lacey
 
List Price$ 50.00 27%
off
Our Price$ 36.61 why is our price higer than the list price
Your Savings$ 13.39
ISBN

0470721995

ISBN13

9780470721995

PublisherJohn Wiley & Sons
Published In2009
BindingPaperback
Weight1.82 lbs
Biblio384 Pages
Enquire about this book
Available

Usually Ships in 2 Days.

US Shipping (Ships from NY)
Standard Media Mail$3.99 per book
  
Shipping Rates | Shipping Information

Related Books
Staffing Problem Solver: For Human Resource Professionals and Managers,0471006300,9780471006305 4%

Staffing Problem Solver: For Human ...

Marc Dorio

$ 250.00

$ 239.99

Engineering Physiology Bases of Human Factors/Ergonomics,0471287989,9780471287988 28%

Engineering Physiology Bases of Hum ...

H.J. Kroemer, K ...

$ 145.00

$ 104.99

Overdrive: Managing in Crisis-Filled Times (New Directions in Business Series),0471515493,9780471515494 21%

Overdrive: Managing in Crisis-Fille ...

Michael Silva , ...

$ 29.95

$ 23.55

How to Start and Run a Successful Consulting Business,047112544X,9780471125440 4%

How to Start and Run a Successful C ...

Gregory F. Kish ...

$ 190.00

$ 182.73

Exploding the Computer Myth: Discovering the 13 Realities of High Performing Business Systems,0471132918,9780471132912 28%

Exploding the Computer Myth: Discov ...

Glenn E. Weadoc ...

$ 45.00

$ 32.35

Forbes Greatest Business Stories of All Time,0471143146,9780471143147 28%

Forbes Greatest Business Stories of ...

Daniel Gross , ...

$ 41.95

$ 30.24

 
Arsenic in the Environment, Part 2 Human Health and Ecosystem Effects,0471304360,9780471304364 28%

Arsenic in the Environment, Part 2 ...

Jerome O. Nriag ...

$ 249.00

$ 180.39

Doing Business in the US Legal Opportunities and Pitfalls,0471961604,9780471961604 27%

Doing Business in the US Legal Oppo ...

Lawrence B. Lan ...

$ 65.00

$ 47.22

Learning as a Way of Being: Strategies for Survival in a World of Permanent White Water (Jossey Bass Business and Management Series),0787902462,9780787902469 28%

Learning as a Way of Being: Strateg ...

Peter B. Vaill

$ 32.95

$ 23.81

Reengineering Human Resources,0471015350,9780471015352 4%

Reengineering Human Resources

Lyle M. Spencer

$ 195.00

$ 187.51

You Paid How Much For That How to Win at Money Without Losing at Love,0787958883,9780787958886 34%

You Paid How Much For That How to W ...

Natalie H. Jenk ...

$ 26.95

$ 17.87

Strategic Renaissance and Business Transformation,0471957518,9780471957515 4%

Strategic Renaissance and Business ...

Howard Thomas

$ 175.00

$ 168.83


Related Searches
John Wiley & Sons

About The Book

With the growth in social networking and the potential for larger and larger breaches of sensitive data,it is vital for all enterprises to ensure that Computer users adhere to Corporate Policy and project staff design secure systems. Written by a security expert with more than 25 years' experience, this book examines how fundamental staff awareness is to establishing security and addresses such challenges as containing threats, managing politics, developing programs, and getting a Business to buy into a security plan. Illustrated with real-world examples throughout, this is a must-have guide for security and IT professionals.


Contents

Acknowledgements. Foreword. Introduction. Chapter 1: Power to the people. The power is out there - somewhere. An information rich world. When in doubt, phone a friend. Engage with the public. The power of the blogosphere. The future of news. Leveraging new ideas. Changing the way we live. Transforming the Political landscape. Network effects in business. Being there. Value in the digital age. Hidden value in networks. Network innovations create security challenges. Youa??ve been de-perimeterized! The collapse of information management. The shifting focus of information security. The External perspective. A new world of openness. A new age of collaborative working. Collaboration oriented architecture. Business in virtual worlds. Democracy-but not as we know it. Dona??t lock down that network. The future of network security. Can we trust the data? The Art of disinformation. The future of knowledge. The next big security concern. Learning from networks. Chapter 2: Everyone makes a difference. Where to focus your efforts. The view from the bridge. The role of the executive board. The new threat of data leakage. The perspective of business management. The role of the business manager. Engaging with business managers. The role of the IT function. Minding your partners. Computer users. Customers and citizens. Learning from stakeholders. Chapter 3: Therea??s no such thing as an isolated incident. What lies beneath? Accidents waiting to happen. No system is foolproof. Visibility is the key. A Lesson from the safety field. Everyone makes mistakes. The Science of error prevention. Swiss Cheese and security. How significant was that event? Events are for the record. When an event becomes an incident. The immediacy of emergencies. When disaster strikes. When events spiral out of control. How the response process changes. No two crises are the same. One size doesna??t fit all. The Limits of planning. Some Assets are irreplaceable. Ita??s the process, not the plan. Why crisis management is hard. Skills to manage a crisis. Dangerous detail. The missing piece of the jigsaw. Establish the real cause. Are you incubating a crisis? When crisis management becomes the problem. Developing crisis strategy. Turning threats into opportunities. Boosting market capitalization. Anticipating events. Anticipating opportunities. Designing crisis Team structures. How many teams? Who takes the lead? Ideal team dynamics. Multi-agency teams. The perfect environment. The challenge of the virtual environment. Protocols for virtual team working. Exercising the crisis team. Learning from incidents. Chapter 4: Zen and the art of risk management. East meets West. The Nature of risks. Who invented risk management? We could be so lucky. Components of risk. Gross or net risk? Dona??t lose sight of business. How big is your appetite? Ita??s an emotional thing. In the Eye of the beholder. What risk was that? Living in the past. Who created that risk? Ita??s not my problem. Size matters. Getting your sums right. Some facts are counter-intuitive. The loaded dice. The answer is 42. Ita??s just an illusion. Context is king. Perception and reality. Ita??s a relative thing. Risk, what risk? Something wicked this way comes. The black swan. Double jeopardy. What type of risk? Lessons from the process industries. Lessons from Cost engineering. Lessons from the Financial sector. Lessons from the Insurance field. The limits of percentage play. Operational risk. Joining up risk management. General or specific? Identifying and ranking risks. Using checklists. Categories of risks. Ita??s a moving target. Comparing and ranking risks. Risk management strategies. Communicating risk appetite. Risk management maturity. Therea??s more to security than risk. Ita??s a decision support tool. The perils of risk assessment. Learning from risk management. Chapter 5: Who can you trust? An asset or a liability? People are different. The rule of four. The need to conform. Understand your enemies. The Face of the enemy. Run silent, run deep. Dreamers and charmers. The unfashionable hacker. The Psychology of scams. Visitors are welcome. Where loyalties lie. Signs of disloyalty. The whistleblower. Stemming the leaks. Stamping out corruption. Know your staff. We know what you did. Reading between the lines. Liberty or death. Personality types. Personalities and crime. The dark triad. Cyberspace is less risky. Set a thief. Ita??s a glamor profession. There are easier ways. I just dona??t believe it. Dona??t lose that evidence. They had it coming. The science of investigation. The art of interrogation. Secure by design. Science and Snake oil. The art of hypnosis. The power of suggestion. Ita??s just an illusion. It pays to cooperate. Artificial trust. Who are you? How many identities? Laws of identity. Learnin


Excerpts from Inner Flap (Front)

Computers do not commit crimes. People do. The biggest threat to information security is the human factor , the influence of people. Even the best people will make mistakes, cause breaches and create security weaknesses that enable criminals to steal, corrupt or manipulate systems and data. The explosion in social networking and mobile computing is intensifying this problem. For the first time, this book brings together theories and methods which will help you to change and harness people s security behaviour. It will help you to: *Understand and manage major crises and risk *Appreciate the nature of the insider threat *Navigate organisation culture and politics *Build better awareness programmes *Transform user attitudes and behaviour *Gain Executive Board buy-in *Design management systems that really work *Harness the power of your organisation Based on the author s own personal experience of working with large, complex organisations, such as Shell and Royal Mail, this book is written by an information security insider and makes essential reading for all information security professionals. We live in am age where social networks, collaborative working and community development are global and commonplace, redefining the role of information security. David takes a dry-as-dust elephant of a subject and expertly serves it up in edible, even tasty, morsels. JP Rangaswami, Managing Director of BT Design. A highly entertaining read that will undoubtedly become essential reading for all security professionals. Professor Fred Piper I m really interested in reading this book and, frankly, once it s published, I ll be one of the first to buy it. Dr. Eugene Schultz, High Tower Software


Extracts

"...an engaging read." (Information Age, May 2009) "I found the book enjoyable and easy to read. It is very informative, and gives good references" (Infosecurity, June 2009)