Personnaliser

OK

Appareils photo, caméras, drones et bien d'autres ! 30€ et 100€ offerts* dès 299€ et 999€ d'achat sur l'univers Photo et caméras avec les codes : PHOTO30 et PHOTO100

En profiter

Open-Source Security Operations Center (Soc) - Alfred Basta

Note : 0

0 avis
  • Soyez le premier à donner un avis

Vous en avez un à vendre ?

Vendez-le-vôtre
Filtrer par :

131,13 €

Produit Neuf

  • Ou 32,78 € /mois

    • Livraison : 5,00 €
    • Livré entre le 28 juillet et le 3 août
    Voir les modes de livraison

    LIBRINTER

    PRO Vendeur favori

    4,9/5 sur + de 1 000 ventes

    Exp¿di¿ en 8 jours ouvr¿s

    Nos autres offres

    • 165,18 €

      Produit Neuf

      Ou 41,30 € /mois

      • Livraison : 25,00 €
      • Livré entre le 11 et le 17 août
      Voir les modes de livraison
      4,8/5 sur + de 1 000 ventes

      Apres acceptation de la commande, le delai moyen d'expedition depuis le Japon est de 48 heures. Le delai moyen de livraison est de 3 a 4 semaines. En cas de circonstances exceptionnelles, les delais peuvent s'etendre jusqu'à 2 mois.

      Voir le détail de l'annonce 
    Publicité
     
    Vous avez choisi le retrait chez le vendeur à
    • Payez directement sur Rakuten (CB, PayPal, 4xCB...)
    • Récupérez le produit directement chez le vendeur
    • Rakuten vous rembourse en cas de problème

    Gratuit et sans engagement

    Félicitations !

    Nous sommes heureux de vous compter parmi nos membres du Club Rakuten !

    En savoir plus

    Retour

    Horaires

        Note :


        Avis sur Open - Source Security Operations Center (Soc) de Alfred Basta Format Relié  - Livre Encyclopédies, Dictionnaires

        Note : 0 0 avis sur Open - Source Security Operations Center (Soc) de Alfred Basta Format Relié  - Livre Encyclopédies, Dictionnaires

        Les avis publiés font l'objet d'un contrôle automatisé de Rakuten.


        Présentation Open - Source Security Operations Center (Soc) de Alfred Basta Format Relié

         - Livre Encyclopédies, Dictionnaires

        Livre Encyclopédies, Dictionnaires - Alfred Basta - 01/10/2024 - Relié - Langue : Anglais

        . .

      • Auteur(s) : Alfred Basta - Mohammad Ilyas Essar - Nadine Basta - Waqar Anwar
      • Editeur : Wiley
      • Langue : Anglais
      • Parution : 01/10/2024
      • Format : Moyen, de 350g à 1kg
      • Nombre de pages : 480
      • Dimensions : 25.4 x 17.8 x 3.2
      • ISBN : 9781394201600



      • Résumé :

        Preface xiii

        1 Introduction to SOC Analysis 1

        Overview of Security Operations Centers (SOCs) 1

        Importance of SOC Analysis 1

        Objectives and Scope of the Book 2

        Structure of the Book 3

        Challenges in SOC 4

        SOC Roles and Responsibilities 6

        SOC Team Structure and Roles 7

        SOC Models and How to Choose 8

        Choosing the Right SOC Model 10

        Evaluate Where You Are 11

        Define the Business Objectives 12

        Designing an SOC 13

        Future Trends and Developments in SOCs 15

        SOC Challenges and Best Practices 16

        Best Practices for SOC Management 17

        Case Studies and Examples of Successful SOCs 18

        References 19

        2 SOC Pillars 21

        Introduction 21

        Definition of SOC Pillars 21

        People 22

        Process 23

        Technology 25

        Data 26

        Importance of SOC Pillars in Cybersecurity 28

        Levels of SOC Analysts 28

        Processes 31

        Event Triage and Categorization/The Cyber Kill Chain in Practice 31

        Prioritization and Analysis/Know Your Network and All Its Assets 33

        Remediation and Recovery 34

        Assessment and Audit 34

        Threat Intelligence 34

        Threat Intelligence Types 35

        Threat Intelligence Approaches 36

        Threat Intelligence Advantages 36

        References 36

        3 Security Incident Response 39

        The Incident Response Lifecycle 39

        Incident Handling and Investigation Techniques 40

        Post-incident Analysis: Learning from Experience to Strengthen Defenses 42

        The Importance of Information Sharing for Effective Incident Response 44

        Handling Advanced Persistent Threats and Complex Incidents 47

        Communication Strategies During and After Incidents 49

        Cross-functional Coordination in Incident Response 51

        Leveraging Technical Key Performance Indicators 53

        Navigating Incident Impacts Through Decisive Prioritization 55

        Adaptive Access Governance 56

        Maintaining Response Communications and Integrations 57

        Incident Response in Diverse IT Environments 58

        Addressing International and Jurisdictional Challenges in Incident Response 60

        Mental Health and Stress Management for SOC Analysts and Incident Responders 62

        Case Studies and Real-World Incident Analysis: A Crucial Practice for Enhancing Incident Response 63

        Analyzing the 2021 Microsoft Exchange Server Vulnerabilities 64

        References 64

        4 Log and Event Analysis 67

        The Role of Log and Event Analysis in SOCs 67

        Advanced Log Analysis Techniques 70

        Detecting Anomalies and Patterns in Event Data 71

        Integrating Log Analysis with Other SOC Activities 72

        Enhancing Log Data Security and Integrity 80

        Reconstructing the Attack Chain 81

        Leveraging APIs for Advanced Threat Detection 83

        Cross-platform Log Analysis Challenges and Solutions 88

        Developing Skills in Log Analysis for SOC Analysts 90

        Spotting Cloud Cryptojacking 91

        Integration of Log Analysis with Threat Intelligence Platforms 93

        Evaluating Log Analysis Tools and Solutions 94

        Addressing the Volume, Velocity, and Variety of Log Data 95

        Building a Collaborative Environment for Log Analysis 96

        Democratized Threat Intelligence 97

        References 97

        5 Network Traffic Analysis 99

        Traffic Segmentation and Normalization 99

        Threat Intelligence Integration 100

        Contextual Protocol Analysis 103

        Security Regression Testing 107

        Network-based Intrusion Detection and Prevention Systems (NIDS/NIPS) 109

        Vulnerability Validation 113

        Impact Examination 114

        Inspecting...

        Biographie:

        Alfred Basta, PhD, CCP (CMMC), CISM, CPENT, LPT, OSCP, PMP, CRTO, CHPSE, CRISC, CISA, CGEIT, CASP+, CYSA+, is a professor of mathematics, cryptography, and information security as well as a professional speaker on internet security, networking, and cryptography. He is a member of many associations, including ISACA, ECE, and the Mathematical Association of America. Dr. Basta's other publications include Pen Testing from Contract to Report, Computer Security and Penetration Testing, Mathematics for Information Technology, Linux Operations and Administration, and Database Security. In addition, Dr. Basta is the chair of EC-Council's CPENT Scheme Committee. He has worked as a faculty member and curriculum advisor for programming and cyber security programs at numerous colleges and universities.

        Nadine Basta, MSc., CEH, is a professor of computer science, cybersecurity, mathematics, and information technology. Her numerous certifications include CEH, MCSE, MSDBA, CCDP, NCSE, NCTE, and CCA. A security consultant and auditor, she combines strong in the field experience with her academic background. She is also the author of Computer Security and Penetration Testing, Mathematics for Information Technology, and Linux Operations and Administration. Nadine has extensive teaching and research experience in computer science and cybersecurity.

        Waqar Anwar is a Cybersecurity Curriculum Specialist with over 10 years of experience in the field. He also develops and delivers training to faculty and staff on cybersecurity topics and conducts research on cybersecurity topics. Mr. Anwar is a frequent speaker at industry conferences. He is also a member of several cybersecurity organizations including SysAdmin, Audit, Network and Security SANS, CYBRARY, and Information Systems Security Association International ISSA.

        Mohammad Ilyas Essar is a Certified OSCP, CRTO, HTB CPTS, CASP+, PENTEST+, and CEH Master. He is currently employed as a Senior Cybersecurity Analyst in Canada. He is highly passionate and dedicated to the field of cybersecurity. With a solid career background in this domain, he brings five years of progressive experience spanning various domains. Ilyas specializes in Red Teaming, offensive security, and penetration testing, consistently achieving exceptional results. Ilyas is constantly driven to excel in his field, actively participating in Capture The Flag (CTF) competitions, where he dedicates a significant portion of his time to honing his skills as a Pentester and Red Teamer. He is also part of Synack Red Team, where he performs bug bounty hunting....

        Sommaire:

        A comprehensive and up-to-date exploration of implementing and managing a security operations center in an open-source environment

        In Open-Source Security Operations Center (SOC): A Complete Guide to Establishing, Managing, and Maintaining a Modern SOC, a team of veteran cybersecurity practitioners delivers a practical and hands-on discussion of how to set up and operate a security operations center (SOC) in a way that integrates and optimizes existing security procedures. You'll explore how to implement and manage every relevant aspect of cybersecurity, from foundational infrastructure to consumer access points.

        In the book, the authors explain why industry standards have become necessary and how they have evolved - and will evolve - to support the growing cybersecurity demands in this space. Readers will also find:

        • A modular design that facilitates use in a variety of classrooms and instructional settings
        • Detailed discussions of SOC tools used for threat prevention and detection, including vulnerability assessment, behavioral monitoring, and asset discovery
        • Hands-on exercises, case studies, and end-of-chapter questions to enable learning and retention

        Perfect for cybersecurity practitioners and software engineers working in the industry, Open-Source Security Operations Center (SOC) will also prove invaluable to managers, executives, and directors who seek a better technical understanding of how to secure their networks and products....

        Détails de conformité du produit

        Consulter les détails de conformité de ce produit (

        Personne responsable dans l'UE

        )
        Le choixNeuf et occasion
        Minimum5% remboursés
        Le service clientsÀ votre écoute
        LinkedinFacebookTwitterInstagramYoutubePinterestTiktok
        visavisa
        mastercardmastercard
        klarnaklarna
        paypalpaypal
        floafloa
        americanexpressamericanexpress
        Rakuten Logo
        • Rakuten Kobo
        • Rakuten TV
        • Rakuten Viber
        • Rakuten Viki
        • Plus de services
        • À propos de Rakuten
        Rakuten.com