Adaptive Security Management Architecture

Adaptive Security Management Architecture

Published:
Author(s):
Free Standard Shipping

Purchasing Options

Hardback
$83.95
Add to cart
ISBN 9780849370526
Cat# AU7052
eBook
ISBN 9781420013375
Cat# AUE7052
 

Features

  • Emphasizes security solutions that promote business objectives
  • Presents a platform that creates an environment of checks and balances against ineffective practices
  • Directly links processes and standards with an organization’s end product
  • Highlights the importance of security programs working cooperatively within the dynamic business environment

Summary

For an organization to function effectively, its security controls must not be so restrictive that the business is denied the ability to be innovative and flexible. But increasingly pervasive threats mandate vigilance in unlikely areas. Adaptive Security Management Architecture enables security professionals to structure the best program designed to meet the complex needs of an entire organization, taking into account the organization’s business goals as well as the surrounding controls, processes, and units already in existence.

Security aligned with business needs

Introducing the concept of Adaptive Security Management Architecture (ASMA), the book explains how an organization can develop an adaptive security program closely aligned to business needs, making it an enabling force that helps the organization achieve its goals and objectives. Describing how to achieve this adaptability, the book cites several examples and concepts to demonstrate aspects of managing change. It presents the end product of a successful security management system and examines the finer points of how it can be accomplished.

Risk management and governance

The book explores the security and business attributes that must be considered in the development of services and discusses the importance of consistency of management of services. In a section on risk management, the author explains how this important component is directly integrated with the ASMA model. He also discusses the critical element of governance and its importance to demonstrating value and ensuring effective adaptation. Lastly, the book examines how proper organizational management can give the executive and leadership team the necessary oversight to ensure the entire security program meets stated expectations. It also describes the capability maturity model, which ensures that all the co-dependent features of the program are managed with a common approach, thus ensuring that the organization and its security program function as a unified, cohesive system.

Table of Contents

Introduction
Security and Business
Why a New Architecture?
The Conflict of Change
The Four Influencers
Now Is the Time
Adaptive Security Management Architecture Overview
The Interconnects
About the Book
Achieving Adaptability
Security Adaptation
Compensating Controls Theory
The Depth and Granularity of Security
The Commonality of Security
Adaptability and Services
Exploiting Adaptability
Defining Security Services
Service Characteristics
Services Management
Management Structure
Service Coordination
Service Planning
Delivery Management
Closeout
Measurements
Risk Management
Risk Management as a Feature
Risk as Communications
Role of Risk Management
Rapid Risk Assessment
Compliance Management
Adaptive Architecture Compliance
Corporate Compliance
Governance
Governance Observation and Communications
Governance Influence
Operational Characteristics of Governance
Organizational Management
Organizational Structure
Defining the Customer
Service Catalog and Life Cycle Management
Security Functions
Security Personnel Training
Capability Maturity Management
Expectations and Results
Assessing Capability Maturity
Management
Adaptive Architecture Capability Maturity Model
Conclusion
Index


Author Bio(s)

  • Presents IT security status using managerial measures of performance such as balanced scorecards
  • Shows how the security of IT relates to risk business analysis
  • Demonstrates how to align the practices of each facet of business so they work together using the same strategies
  • Describes how the facets of a secure IT system are related to the security of suppliers and customers
  • Editorial Reviews

    … readers of the book, have a great chance to learn professional structures and program designs … . This book can be recommended for researchers and university students in information security systems. Also, engineers, security system designers, and developers will find in it interesting and useful ... .
    —Nicholas Sklavos, in Greece IEEE, April 2011, Vol. 2, No. 2

    Textbooks
    Other CRC Press Sites
    Featured Authors
    STAY CONNECTED
    Facebook Page for CRC Press Twitter Page for CRC Press You Tube Channel for CRC Press LinkedIn Page for CRC Press Google Plus Page for CRC Press
    Sign Up for Email Alerts
    © 2013 Taylor & Francis Group, LLC. All Rights Reserved. Privacy Policy | Cookie Use | Shipping Policy | Contact Us