Personnaliser

OK

Appareils photo, caméras, drones et bien d'autres ! 30€ et 100€ offerts* dès 299€ et 999€ d'achat sur l'univers Photo et caméras avec les codes : PHOTO30 et PHOTO100

En profiter

Cybersecurity and Third-Party Risk - Gregory C Rasner

Note : 0

0 avis
  • Soyez le premier à donner un avis

Vous en avez un à vendre ?

Vendez-le-vôtre
Filtrer par :

36,07 €

Produit Neuf

  • Ou 9,02 € /mois

    • Livraison : 3,99 €
    • Livré entre le 31 juillet et le 6 août
    Voir les modes de livraison

    M_plus_L

    PRO Vendeur favori

    4,8/5 sur + de 1 000 ventes

    Nos autres offres

    • 54,39 €

      Produit Neuf

      Ou 13,60 € /mois

      • Livraison à 0,01 €
      Voir les modes de livraison
      4,7/5 sur + de 1 000 ventes

      Nouvel article expédié dans le 24H à partir des Etats Unis Livraison au bout de 20 à 30 jours ouvrables.

      Voir le détail de l'annonce 
    Publicité
     
    Vous avez choisi le retrait chez le vendeur à
    • Payez directement sur Rakuten (CB, PayPal, 4xCB...)
    • Récupérez le produit directement chez le vendeur
    • Rakuten vous rembourse en cas de problème

    Gratuit et sans engagement

    Félicitations !

    Nous sommes heureux de vous compter parmi nos membres du Club Rakuten !

    En savoir plus

    Retour

    Horaires

        Note :


        Avis sur Cybersecurity And Third - Party Risk de Gregory C Rasner Format Broché  - Livre Informatique

        Note : 0 0 avis sur Cybersecurity And Third - Party Risk de Gregory C Rasner Format Broché  - Livre Informatique

        Les avis publiés font l'objet d'un contrôle automatisé de Rakuten.


        Présentation Cybersecurity And Third - Party Risk de Gregory C Rasner Format Broché

         - Livre Informatique

        Livre Informatique - Gregory C Rasner - 01/07/2021 - Broché - Langue : Anglais

        . .

      • Auteur(s) : Gregory C Rasner
      • Editeur : Wiley
      • Langue : Anglais
      • Parution : 01/07/2021
      • Format : Moyen, de 350g à 1kg
      • Nombre de pages : 480
      • Expédition : 634
      • Dimensions : 22.5 x 15.2 x 2.6
      • ISBN : 111980955X



      • Résumé :

        STRENGTHEN THE WEAKEST LINKS IN YOUR CYBERSECURITY CHAIN

        Across the world, the networks of hundreds of different world-class organizations have been breached in a seemingly never-ending stream of attacks that targeted the trusted vendors of major brands. From Target to Equifax, Home Depot, and GM, it seems as if no company is safe from a third-party incident or breach, regardless of size. And the advanced threats are now exploiting the intersection of weaknesses in cybersecurity and third-party risk management.

        In Cybersecurity and Third-Party Risk, veteran cybersecurity specialist Gregory Rasner walks readers through how to lock down the vulnerabilities posed to an organization's network by third parties. You'll discover how to move beyond a simple checklist and create an active, effective, and continuous system of third-party cybersecurity risk mitigation.

        The author discusses how to conduct due diligence on the third parties connected to your company's networks and how to keep your information about them current and reliable. You'll learn about the language you need to look for in a third-party data contract whether you're offshoring or outsourcing data security arrangements.

        Perfect for professionals and executives responsible for securing their organizations' systems against external threats, Cybersecurity and Third-Party Risk is an indispensable resource for all business leaders who seek to:

        • Understand the fundamentals of third-party risk management
        • Conduct robust intake and ongoing due diligence
        • Perform on-site due diligence and close vendor risks
        • Secure your software supply chain
        • Utilize cloud and on-premises software securely
        • Continuously monitor your third-party vendors and prevent breaches
        ...

        Biographie:

        Foreword xvi

        Introduction xviii

        Section 1 Cybersecurity Third-Party Risk

        Chapter 1 What is the Risk? 1

        The SolarWinds Supply-Chain Attack 4

        The VGCA Supply-Chain Attack 6

        The Zyxel Backdoor Attack 9

        Other Supply-Chain Attacks 10

        Problem Scope 12

        Compliance Does Not Equal Security 15

        Third-Party Breach Examples 17

        Third-Party Risk Management 24

        Cybersecurity and Third-Party Risk 27

        Cybersecurity Third-Party Risk as a Force Multiplier 32

        Conclusion 33

        Chapter 2 Cybersecurity Basics 35

        Cybersecurity Basics for Third-Party Risk 38

        Cybersecurity Frameworks 46

        Due Care and Due Diligence 53

        Cybercrime and Cybersecurity 56

        Types of Cyberattacks 59

        Analysis of a Breach 63

        The Third-Party Breach Timeline: Target 66

        Inside Look: Home Depot Breach 68

        Conclusion 72

        Chapter 3 What the COVID-19 Pandemic Did to Cybersecurity and Third-Party Risk 75

        The Pandemic Shutdown 77

        Timeline of the Pandemic Impact on Cybersecurity 80

        Post-Pandemic Changes and Trends 84

        Regulated Industries 98

        An Inside Look: P&N Bank 100

        SolarWinds Attack Update 102

        Conclusion 104

        Chapter 4 Third-Party Risk Management 107

        Third-Party Risk Management Frameworks 113

        ISO 27036:2013+ 114

        NIST 800-SP 116

        NIST 800-161 Revision 1: Upcoming Revision 125

        NISTIR 8272 Impact Analysis Tool for Interdependent Cyber Supply-Chain Risks 125

        The Cybersecurity and Third-Party Risk Program Management 127

        Kristina Conglomerate (KC) Enterprises 128

        KC Enterprises' Cyber Third-Party Risk Program 131

        Inside Look: Marriott 140

        Conclusion 141

        Chapter 5 Onboarding Due Diligence 143

        Intake 145

        Data Privacy 146

        Cybersecurity 147

        Amount of Data 149

        Country Risk and Locations 149

        Connectivity 150

        Data Transfer 150

        Data Location 151

        Service-Level Agreement or Recovery Time Objective 151

        Fourth Parties 152

        Software Security 152

        KC Enterprises Intake/Inherent Risk Cybersecurity Questionnaire 153

        Cybersecurity in Request for Proposals 154

        Data Location 155

        Development 155

        Identity and Access Management 156

        Encryption 156

        Intrusion Detection/Prevention System 157

        Antivirus and Malware 157

        Data Segregation 158

        Data Loss Prevention 158

        Notification 158

        Security Audits 159

        Cybersecurity Third-Party Intake 160

        Data Security Intake Due Diligence 161

        Next Steps 167

        Ways to Become More Efficient 173

        Systems and Organization Controls Reports 174

        Chargebacks 177

        Go-Live Production Reviews 179

        Connectivity Cyber Reviews 179

        Inside Look: Ticketmaster and Fourth Parties 182

        Conclusion 183

        Chapter 6 Ongoing Due Diligence 185

        Low-Risk Vendor Ongoing Due Diligence 189

        Moderate-Risk Vendor Ongoing Due Diligence 193

        High-Risk Vendor Ongoing Due Diligence 196

        Too Big to Care 197

        A Note on Phishing 200

        Intake and Ongoing Cybersecurity Personnel 203

        Ransomware: A History and Future 203

        Asset Management 205

        Vulnerability and Patch Management 206

        802.1x or Network Access Control (NAC) 206

        Inside Look: GE Breach 207

        Conclusion 208

        Chapter 7 On-site Due Diligence 211

        On-site Security Assessment 213

        Scheduling Phase 214

        Investigation Phase 215

        Assessment Phase 217

        On-site Questionnaire 221

        Reporting Phase 22...

        Sommaire:

        GREGORY C. RASNER is the lead of Cyber Third-Party Risk at Truist Financial Corporation. He has extensive experience in cybersecurity and technology leadership in banking, biotech, software, telecom, and manufacturing. He is the author of several published articles on Third Party Risk and is a sought-after keynote speaker in this area.

        ...

        Détails de conformité du produit

        Consulter les détails de conformité de ce produit (

        Personne responsable dans l'UE

        )
        Le choixNeuf et occasion
        Minimum5% remboursés
        Le service clientsÀ votre écoute
        LinkedinFacebookTwitterInstagramYoutubePinterestTiktok
        visavisa
        mastercardmastercard
        klarnaklarna
        paypalpaypal
        floafloa
        americanexpressamericanexpress
        Rakuten Logo
        • Rakuten Kobo
        • Rakuten TV
        • Rakuten Viber
        • Rakuten Viki
        • Plus de services
        • À propos de Rakuten
        Rakuten.com