Cargando…

Software security : building security in /

This is the Mobipocket version of the print book. "When it comes to software security, the devil is in the details. This book tackles the details." --Bruce Schneier, CTO and founder, Counterpane, and author of Beyond Fear and Secrets and Lies "McGraw's book shows you how to m...

Descripción completa

Detalles Bibliográficos
Clasificación:Libro Electrónico
Autor principal: McGraw, Gary, 1966-
Formato: Electrónico eBook
Idioma:Inglés
Publicado: Upper Saddle River, NJ : Addison-Wesley, ©2006.
Colección:Addison-Wesley software security series.
Temas:
Acceso en línea:Texto completo (Requiere registro previo con correo institucional)

MARC

LEADER 00000cam a2200000Ia 4500
001 OR_ocm69663374
003 OCoLC
005 20231017213018.0
006 m o d
007 cr unu||||||||
008 060531s2006 njua ob 001 0 eng d
010 |a  2005031598 
040 |a OCL  |b eng  |e pn  |c OCL  |d OCLCA  |d VLB  |d CEF  |d OCLCQ  |d MBB  |d TXM  |d OCLCQ  |d OCLCF  |d OCLCQ  |d COO  |d OCLCA  |d TOF  |d WYU  |d AU@  |d VT2  |d RDF  |d OCLCO  |d OCLCQ  |d OCLCO 
019 |a 74459589  |a 748094544  |a 1065043913  |a 1103270988  |a 1129364453  |a 1202545745  |a 1240529839 
020 |z 0321356705 
020 |a 9780321356703 
020 |a 0321356705 
024 1 |a 785342356700 
024 3 |a 9780321356703 
029 1 |a AU@  |b 000051526515 
029 1 |a HEBIS  |b 291439179 
029 1 |a NZ1  |b 13069654 
035 |a (OCoLC)69663374  |z (OCoLC)74459589  |z (OCoLC)748094544  |z (OCoLC)1065043913  |z (OCoLC)1103270988  |z (OCoLC)1129364453  |z (OCoLC)1202545745  |z (OCoLC)1240529839 
050 4 |a QA76.9.A25  |b M4286 2006 
082 0 4 |a 005.8  |2 22 
049 |a UAMI 
100 1 |a McGraw, Gary,  |d 1966- 
245 1 0 |a Software security :  |b building security in /  |c Gary McGraw. 
260 |a Upper Saddle River, NJ :  |b Addison-Wesley,  |c ©2006. 
300 |a 1 online resource (xxxvi, 408 pages) :  |b illustrations. 
336 |a text  |b txt  |2 rdacontent 
337 |a computer  |b c  |2 rdamedia 
338 |a online resource  |b cr  |2 rdacarrier 
490 1 |a Addison-Wesley software security series 
504 |a Includes bibliographical references and index. 
505 0 0 |g 1.  |t Defining a discipline --  |g 2.  |t risk management framework --  |g 3.  |t Introduction to software security touchpoints --  |g 4.  |t Code review with a tool --  |g 5.  |t Architectural risk analysis --  |g 6.  |t Software penetration testing --  |g 7.  |t Risk-based security testing --  |g 8.  |t Abuse cases --  |g 9.  |t Software security meets security operations --  |g 10.  |t enterprise software security program --  |g 11.  |t Knowledge for software security --  |g 12.  |t taxonomy of coding errors --  |g 13.  |t Annotated bibliography and references --  |g App. A.  |t Fortify source code analysis suite tutorial --  |g App. B.  |t ITS4 rules --  |g App. C.  |t exercise in risk analysis : Smurfware. 
520 8 |a This is the Mobipocket version of the print book. "When it comes to software security, the devil is in the details. This book tackles the details." --Bruce Schneier, CTO and founder, Counterpane, and author of Beyond Fear and Secrets and Lies "McGraw's book shows you how to make the 'culture of security' part of your development lifecycle." --Howard A. Schmidt, Former White House Cyber Security Advisor "McGraw is leading the charge in software security. His advice is as straightforward as it is actionable. If your business relies on software (and whose doesn't), buy this book and post it up on the lunchroom wall." --Avi Rubin, Director of the NSF ACCURATE Center; Professor, Johns Hopkins University; and coauthor of Firewalls and Internet Security Beginning where the best-selling book Building Secure Software left off, Software Security teaches you how to put software security into practice.The software security best practices, or touchpoints, described in this book have their basis in good software engineering and involve explicitly pondering security throughout the software development lifecycle. This means knowing and understanding common risks (including implementation bugsand architectural flaws), designing for security, and subjecting all software artifacts to thorough, objective risk analyses and testing. Software Security is about putting the touchpoints to work for you. Because you can apply these touchpoints to the software artifacts you already produce as you develop software, you can adopt this book's methods without radically changing the way you work. Inside you'll find detailed explanations of Risk management frameworks and processes Code review using static analysis tools Architectural risk analysis Penetration testing Security testing Abuse case development In addition to the touchpoints, Software Security covers knowledge management, training and awareness, and enterprise-level software security programs. Now that the world agrees that software security is central to computer security, it is time to put philosophy into practice. Create your own secure development lifecycle by enhancing your existing software development lifecycle with the touchpoints described in this book. Let this expert author show you how to build more secure software by building security in. 
590 |a O'Reilly  |b O'Reilly Online Learning: Academic/Public Library Edition 
650 0 |a Computer security. 
650 2 |a Computer Security 
650 6 |a Sécurité informatique. 
650 7 |a Computer security  |2 fast 
650 7 |a Engineering & Applied Sciences.  |2 hilcc 
650 7 |a Computer Science.  |2 hilcc 
776 0 8 |i Print version:  |z 0321356705  |w (DLC) 2005031598  |w (OCoLC)62281747 
830 0 |a Addison-Wesley software security series. 
856 4 0 |u https://learning.oreilly.com/library/view/~/0321356705/?ar  |z Texto completo (Requiere registro previo con correo institucional) 
994 |a 92  |b IZTAP