Enterprise Software Security: A Confluence of DisciplinesКНИГИ » ПРОГРАММИНГ
Название: Enterprise Software Security: A Confluence of Disciplines (Addison-Wesley Software Security Series) Автор: Kenneth R. van Wyk, Mark G. Graff, Dan S. Peters Издательство: Addison-Wesley Professional Год: 2015 Формат: true pdf/epub Страниц: 320 Размер: 10 Mb Язык: English
Traditional approaches to securing software are inadequate. The solution: Bring software engineering and network security teams together in a new, holistic approach to protecting the entire enterprise. Now, four highly respected security experts explain why this “confluence” is so crucial, and show how to implement it in your organization. Writing for all software and security practitioners and leaders, they show how software can play a vital, active role in protecting your organization. You’ll learn how to construct software that actively safeguards sensitive data and business processes and contributes to intrusion detection/response in sophisticated new ways. The authors cover the entire development lifecycle, including project inception, design, implementation, testing, deployment, operation, and maintenance. They also provide a full chapter of advice specifically for Chief Information Security Officers and other enterprise security executives. Whatever your software security responsibilities, Enterprise Software Security delivers indispensable big-picture guidance–and specific, high-value recommendations you can apply right now. COVERAGE INCLUDES: • Overcoming common obstacles to collaboration between developers and IT security professionals • Helping programmers design, write, deploy, and operate more secure software • Helping network security engineers use application output more effectively • Organizing a software security team before you’ve even created requirements • Avoiding the unmanageable complexity and inherent flaws of layered security • Implementing positive software design practices and identifying security defects in existing designs • Teaming to improve code reviews, clarify attack scenarios associated with vulnerable code, and validate positive compliance • Moving beyond pentesting toward more comprehensive security testing • Integrating your new application with your existing security infrastructure • “Ruggedizing” DevOps by adding infosec to the relationship between development and operations • Protecting application security during maintenance
Уважаемый посетитель, Вы зашли на сайт как незарегистрированный пользователь.
С этой публикацией часто скачивают:
Dependable software systems engineering Название: Dependable software systems engineering Автор: A. Pretschner, D. Peled Издательство: IOS Press Серия: NATO Science for Peace and...
Security for Software Engineers Название: Security for Software Engineers Автор: James N. Helfrich Издательство: Chapman and Hall/CRC Год: 2019 Страниц: 350 Формат: PDF Размер: 48...
Information Security Management Systems Название: Information Security Management Systems: A Novel Framework and Software as a Tool for Compliance with Information Security Standard Автор:...
Core Software Security: Security at the Source Название: Core Software Security: Security at the Source Автор: James Ransome and Anmol Misra Издательство: CRC Press Год: 2013 Формат: PDF Размер:...
Software Architecture for Big Data and the Cloud Название: Software Architecture for Big Data and the Cloud Автор: Ivan Mistrik Издательство: Morgan Kaufmann Год: 2017 Страниц: 470 Формат: PDF,...
The Practice of Network Security Monitoring Название: The Practice of Network Security Monitoring Автор: Richard Bejtlich Издательство: No Starch Press Год: 2013 Страниц: 376 Формат: PDF, EPUB...