Cargando…

The CERT guide to insider threats : how to prevent, detect, and respond to information technology crimes (theft, sabotage, fraud) /

Since 2001, the CERT® Insider Threat Center at Carnegie Mellon University's Software Engineering Institute (SEI) has collected and analyzed information about more than seven hundred insider cyber crimes, ranging from national security espionage to theft of trade secrets. The CERT® Guide to Insi...

Descripción completa

Detalles Bibliográficos
Clasificación:Libro Electrónico
Autor principal: Cappelli, Dawn
Otros Autores: Moore, Andrew, Trzeciak, Randall
Formato: Electrónico eBook
Idioma:Inglés
Publicado: Upper Saddle River, NJ : Addison-Wesley, ©2012.
Colección:SEI series in software engineering.
Temas:
Acceso en línea:Texto completo (Requiere registro previo con correo institucional)

MARC

LEADER 00000cam a2200000Ia 4500
001 OR_ocn785648259
003 OCoLC
005 20231017213018.0
006 m o d
007 cr unu||||||||
008 120412s2012 njua ob 001 0 eng d
010 |z  2011047338 
040 |a UMI  |b eng  |e pn  |c UMI  |d COO  |d DEBSZ  |d OCLCQ  |d OCLCO  |d VT2  |d UUO  |d OCLCF  |d OCLCO  |d OCLCQ  |d OCLCO  |d OCL  |d OCLCO  |d OCLCQ  |d OCLCO  |d YDX  |d OCLCA  |d OCLCQ  |d CEF  |d WYU  |d AU@  |d CNCEN  |d OCLCQ  |d RDF  |d OCLCO  |d OCLCQ  |d INARC 
016 7 |a 015946764  |2 Uk 
019 |a 803518264  |a 1391291263 
020 |a 9780132906050 
020 |a 0132906058 
020 |z 9780321812575  |q (hbk.) 
020 |z 0321812573  |q (hbk.) 
029 1 |a DEBSZ  |b 370595564 
029 1 |a GBVCP  |b 785437622 
029 1 |a AU@  |b 000067098292 
035 |a (OCoLC)785648259  |z (OCoLC)803518264  |z (OCoLC)1391291263 
037 |a CL0500000132  |b Safari Books Online 
050 4 |a HV6773  |b .C33 2012 
082 0 4 |a 658.4/78  |2 23 
049 |a UAMI 
100 1 |a Cappelli, Dawn. 
245 1 4 |a The CERT guide to insider threats :  |b how to prevent, detect, and respond to information technology crimes (theft, sabotage, fraud) /  |c Dawn Cappelli, Andrew Moore, Randall Trzeciak. 
246 3 0 |a How to prevent, detect, and respond to information technology crimes (theft, sabotage, fraud) 
260 |a Upper Saddle River, NJ :  |b Addison-Wesley,  |c ©2012. 
300 |a 1 online resource (xxxv, 389 pages) :  |b illustrations 
336 |a text  |b txt  |2 rdacontent 
337 |a computer  |b c  |2 rdamedia 
338 |a online resource  |b cr  |2 rdacarrier 
490 1 |a The SEI series in software engineering 
588 0 |a Print version record. 
504 |a Includes bibliographical references and index. 
520 |a Since 2001, the CERT® Insider Threat Center at Carnegie Mellon University's Software Engineering Institute (SEI) has collected and analyzed information about more than seven hundred insider cyber crimes, ranging from national security espionage to theft of trade secrets. The CERT® Guide to Insider Threats describes CERT's findings in practical terms, offering specific guidance and countermeasures that can be immediately applied by executives, managers, security officers, and operational staff within any private, government, or military organization. The authors systematically address attacks by all types of malicious insiders, including current and former employees, contractors, business partners, outsourcers, and even cloud-computing vendors. They cover all major types of insider cyber crime: IT sabotage, intellectual property theft, and fraud. For each, they present a crime profile describing how the crime tends to evolve over time, as well as motivations, attack methods, organizational issues, and precursor warnings that could have helped the organization prevent the incident or detect it earlier. Beyond identifying crucial patterns of suspicious behavior, the authors present concrete defensive measures for protecting both systems and data. This book also conveys the big picture of the insider threat problem over time: the complex interactions and unintended consequences of existing policies, practices, technology, insider mindsets, and organizational culture. Most important, it offers actionable recommendations for the entire organization, from executive management and board members to IT, data owners, HR, and legal departments. With this book, you will find out how to Identify hidden signs of insider IT sabotage, theft of sensitive information, and fraud Recognize insider threats throughout the software development life cycle Use advanced threat controls to resist attacks by both technical and nontechnical insiders Increase the effectiveness of existing technical security tools by enhancing rules, configurations, and associated business processes Prepare for unusual insider attacks, including attacks linked to organized crime or the Internet underground By implementing this book's security practices, you will be incorporating protection mechanisms designed to resist the vast majority of malicious insider attacks. 
590 |a O'Reilly  |b O'Reilly Online Learning: Academic/Public Library Edition 
650 0 |a Computer crimes  |x Prevention. 
650 0 |a Computer security. 
650 0 |a Employee crimes  |x Prevention. 
650 0 |a Information technology  |x Security measures. 
650 0 |a Computer networks  |x Security measures. 
650 0 |a Data protection. 
650 6 |a Sécurité informatique. 
650 6 |a Technologie de l'information  |x Sécurité  |x Mesures. 
650 6 |a Réseaux d'ordinateurs  |x Sécurité  |x Mesures. 
650 6 |a Protection de l'information (Informatique) 
650 7 |a Computer security  |2 fast  |0 (OCoLC)fst00872484 
650 7 |a Computer crimes  |x Prevention.  |2 fast  |0 (OCoLC)fst00872068 
650 7 |a Computer networks  |x Security measures.  |2 fast  |0 (OCoLC)fst00872341 
650 7 |a Data protection.  |2 fast  |0 (OCoLC)fst00887958 
650 7 |a Employee crimes  |x Prevention.  |2 fast  |0 (OCoLC)fst00908967 
650 7 |a Information technology  |x Security measures.  |2 fast  |0 (OCoLC)fst00973129 
650 7 |a Social Welfare & Social Work.  |2 hilcc 
650 7 |a Social Sciences.  |2 hilcc 
650 7 |a Criminology, Penology & Juvenile Delinquency.  |2 hilcc 
700 1 |a Moore, Andrew. 
700 1 |a Trzeciak, Randall. 
776 0 8 |i Print version:  |a Cappelli, Dawn.  |t CERT guide to insider threats.  |d Upper Saddle River, NJ : Addison-Wesley, ©2012  |z 9780321812575  |w (DLC) 2011047338  |w (OCoLC)752067994 
830 0 |a SEI series in software engineering. 
856 4 0 |u https://learning.oreilly.com/library/view/~/9780132906050/?ar  |z Texto completo (Requiere registro previo con correo institucional) 
938 |a YBP Library Services  |b YANK  |n 14854794 
938 |a Askews and Holts Library Services  |b ASKH  |n AH41026690 
938 |a Internet Archive  |b INAR  |n certguidetoinsid0000capp 
994 |a 92  |b IZTAP