
Information Security
A Strategic Approach
By: Vincent LeVeque
Paperback | 21 March 2006 | Edition Number 1
At a Glance
288 Pages
23.55 x 16.3 x 1.58
Paperback
RRP $207.85
$207.75
or 4 interest-free payments of $51.94 with
orShips in 7 to 10 business days
Industry Reviews
"Useful for information security managers, IT executives, and consultants, the book can also help nontechnical executives who need to protect the value and security of their organization's information." (IEEE Computer Magazine, May 2006)
Preface.
1. Introduction.
Strategy Overview.
Strategy and Information Technology.
Strategy and Information Security.
An Information Security Strategic Planning Methodology.
The Business Environment.
Information Value.
Risk.
The Strategic Planning Process.
The Technology Plan.
The Management Plan.
Theory and Practice.
2. Developing an Information Security Strategy.
Overview.
An Information Security Strategy Development Methodology.
Strategy Prerequisites.
Research Sources.
Preliminary Development.
Formal Project Introduction.
Fact Finding.
General Background Information.
Documentation Review.
Interviews.
Surveys.
Research Sources.
Analysis Methods.
Strengths, Weaknesses, Opportunities, and Threats.
Business Systems Planning.
Life-Cycle Methods.
Critical Success Factors.
Economic Analysis.
Risk Analysis.
Benchmarks and Best Practices.
Compliance Requirements.
Analysis Focus Areas.
Industry Environment.
Organizational Mission and Goals.
Executive Governance.
Management Systems and Controls.
Information Technology Management.
Information Technology Architecture.
Security Management.
Draft Plan Presentation.
Final Plan Presentation.
Options for Plan Development.
A Plan Outline.
Selling the Strategy.
Plan Maintenance.
The Security Assessment and the Security Strategy.
Strategy Implementation:
What is a Tactical Plan?
Converting Strategic goals to Tactical Plans.
Turning Tactical Planning Outcomes into Ongoing Operations.
Key Points.
Plan Outline.
3. The Technology Strategy.
Thinking About Technology.
Planning Technology Implementation.
Technology Forecasting.
Some Basic Advice.
Technology Life-Cycle Models.
Technology Solution Evaluation.
Role of Analysts.
Technology Strategy Components:
The Security Strategy Technical Architecture.
Leveraging Existing Vendors.
Legacy Technology.
The Management Dimension.
Overall Technical Design.
The Logical Technology Architecture.
Specific Technical Components.
Servers.
Network Zones.
External Network Connections.
Desktop Systems.
Applications and DBMS.
Portable Computing Devices.
Telephone Systems.
Control Devices.
Intelligent Peripherals.
Facility Security Systems.
Security Management Systems.
Key Points.
4. The Management Strategy.
Control Systems.
Control Systems and the Information Security Strategy.
Governance.
Ensuring IT Governance.
IT Governance Models.
Current Issues in Governance.
Control Objectives for Information and Related Technology (CobiT).
IT Balanced Scorecard.
Governance in Information Security.
End-User Role.
An IT Management Model for Information Security.
Policies, Procedures, and Standards.
Assigning Information Security Responsibilities.
To Whom Should Information Security Report?
Executive Roles.
Organizational Interfaces.
Information Security Staff Structure.
Staffing and Funding Levels.
Managing Vendors.
Organizational Culture and Legitimacy.
Training and Awareness.
Key Points.
5. Case Studies.
Case Study 1â"Singles Opportunity Services.
Background.
Developing the Strategic Plan.
Information Value Analysis.
Risk Analysis.
Technology Strategy.
Management Strategy.
Implementation.
Case Study 2â"Rancho Nachos Mosquito Abatement District.
Background.
Developing the Strategic Plan.
Information Value Analysis.
Risk Analysis.
Technology Strategy.
Management Strategy.
Implementation.
Key Points.
6. Business and IT Strategy:
Introduction.
Strategy and Systems of Management.
Business Strategy Models.
Boston Consulting Group Business Matrix.
Michael Porterâ"Competitive Advantage.
Business Process Reengineering.
The Strategy of No Strategy.
IT Strategy.
Nolan/Gibson Stages of Growth.
Information Engineering.
Rockartâs Critical Success Factors.
IBM Business System Planning (BSP).
So is IT really âstrategicâ?
IT Strategy and Information Security Strategy.
Key Points.
7. Information Economics.
Concepts of Information Protection.
Information Ownership.
From Ownership to Asset.
Information Economics and Information Security.
Basic Economic Principles.
Why is Information Economics Difficult?
Information Valueâ"Reducing Uncertainty.
Information Valueâ"Improved Business Processes.
Information Security Investment Economics.
The Economic Cost of Security Failures.
Future Directions in Information Economics.
Information Management Accountingâ"Return on Investment.
Economic Models and Management Decision Making.
Information Protection or Information Stewardship?
Key Points.
8. Risk Analysis.
Compliance Versus Risk Approaches.
The âClassicâ Risk Analysis Model.
Newer Risk Models.
Process-Oriented Risk Models.
Tree-Based Risk Models.
Organizational Risk Cultures.
Risk Averse, Risk Neutral, and Risk Taking Organizations.
Strategic Versus Tactical Risk Analysis.
When Compliance-based Models are Appropriate.
Risk Mitigation.
Key Points.
Notes and References.
Index.
ISBN: 9780471736127
ISBN-10: 0471736120
Series: Practitioners
Published: 21st March 2006
Format: Paperback
Language: English
Number of Pages: 288
Audience: Professional and Scholarly
Publisher: Wiley
Country of Publication: US
Edition Number: 1
Dimensions (cm): 23.55 x 16.3 x 1.58
Weight (kg): 0.41
Shipping
| Standard Shipping | Express Shipping | |
|---|---|---|
| Metro postcodes: | $9.99 | $14.95 |
| Regional postcodes: | $9.99 | $14.95 |
| Rural postcodes: | $9.99 | $14.95 |
Orders over $79.00 qualify for free shipping.
How to return your order
At Booktopia, we offer hassle-free returns in accordance with our returns policy. If you wish to return an item, please get in touch with Booktopia Customer Care.
Additional postage charges may be applicable.
Defective items
If there is a problem with any of the items received for your order then the Booktopia Customer Care team is ready to assist you.
For more info please visit our Help Centre.
You Can Find This Book In

The Digital Transformation of Professions
A Roadmap for Remaining Trusted, Relevant, and Future-Ready
Paperback
RRP $110.00
$96.75
OFF

The Digital Transformation of Professions
A Roadmap for Remaining Trusted, Relevant, and Future-Ready
Hardcover
RRP $284.00
$246.75
OFF






















