MANAGEMENT OF INFORMATION SECURITY, Sixth Edition prepares you to become an information security management practitioner able to secure systems and networks in a world where continuously emerging threats, ever-present attacks and the success of criminals illustrate the weaknesses in current information technologies. You'll develop both the information security skills and practical experience that organizations are looking for as they strive to ensure more secure computing environments. The text focuses on key executive and managerial aspects of information security. It also integrates coverage of CISSP and CISM throughout to effectively prepare you for certification. Reflecting the most recent developments in the field, it includes the latest information on NIST, ISO and security governance as well as emerging concerns like Ransomware, Cloud Computing and the Internet of Things.
Unit I: FOUNDATIONS OF INFORMATION SECURITY.
1. Introduction to Management of Information Security.
2. Compliance: Law and Ethics.
Unit II: STRATEGIC INFORMATION SECURITY MANAGEMENT.
3. Governance and Strategic Planning for Security.
4. Information Security Policy.
5. Developing the Security Program.
6. Risk Management: Identifying and Assessing Risk.
7. Risk Management: Controlling Risk.
Unit III: OPERATIONAL INFORMATION SECURITY MANAGEMENT.
8. Security Management Models.
9. Security Management Practices.
10. Planning for Contingencies.
11. Security Maintenance and the Management of Digital Forensics.
12. Protection Mechanisms.
-
Michael E. Whitman
Michael E. Whitman, Ph.D., C.I.S.M., C.I.S.S.P., is the executive director of the Institute for Cybersecurity Workforce Development and a professor of information security at Kennesaw State University. In 2004, 2007, 2012 and 2015, under Dr. Whitman's direction the Center for Information Security Education spearheaded K.S.U.’s successful bid for the prestigious National Center of Academic Excellence recognitions (CAE/IAE and CAE/CDE), awarded jointly by the Department of Homeland Security and the National Security Agency. Dr. Whitman is also the editor-in-chief of the Journal of Cybersecurity Education and Research and Practice and director of the Southeast Collegiate Cyber Defense Competition. Dr. Whitman is an active researcher and author in information security policy, threats, curriculum development and ethical computing. He currently teaches graduate and undergraduate courses in information security. Dr. Whitman has several information security textbooks currently in print, including PRINCIPLES OF INFORMATION SECURITY; PRINCIPLES OF INCIDENT RESPONSE AND DISASTER RECOVERY; MANAGEMENT OF INFORMATION SECURITY; READINGS AND CASES IN THE MANAGEMENT OF INFORMATION SECURITY, VOLUMES I AND II; THE HANDS-ON INFORMATION SECURITY LAB MANUAL; THE GUIDE TO NETWORK SECURITY and THE GUIDE TO FIREWALLS AND NETWORK SECURITY. He has published articles in Information Systems Research, the Communications of the ACM, the Journal of International Business Studies, Information and Management and the Journal of Computer Information Systems. Dr. Whitman is a member of the Information Systems Security Association, ISACA and the Association for Information Systems. Previously, Dr. Whitman served the U.S. Army as an armored cavalry officer with additional duties as the automated data processing system security officer (ADPSSO).
-
Herbert J. Mattord
Herbert Mattord, Ph.D., C.I.S.M., C.I.S.S.P., completed 24 years of IT industry experience as an application developer, database administrator, project manager and information security practitioner before joining the faculty at Kennesaw State University, where he serves as a professor of information security and assurance and cybersecurity. Dr. Mattord currently teaches graduate and undergraduate courses. He is also a senior editor of the Journal of Cybersecurity Education, Research and Practice. He and Dr. Michael Whitman have authored PRINCIPLES OF INFORMATION SECURITY; PRINCIPLES OF INCIDENT RESPONSE AND DISASTER RECOVERY; MANAGEMENT OF INFORMATION SECURITY; READINGS AND CASES IN THE MANAGEMENT OF INFORMATION SECURITY; THE GUIDE TO NETWORK SECURITY and THE HANDS-ON INFORMATION SECURITY LAB MANUAL. Dr. Mattord is an active researcher, author and consultant in information security management and related topics. He has published articles in the Information Resources Management Journal, Journal of Information Security Education, the Journal of Executive Education and the International Journal of Interdisciplinary Telecommunications and Networking. Dr. Mattord is a member of the Information Systems Security Association, ISACA, and the Association for Information Systems. During his career as an IT practitioner, Dr. Mattord was an adjunct professor at Kennesaw State University, Southern Polytechnic State University, Austin Community College and Texas State University: San Marcos. He was formerly the manager of corporate information technology security at Georgia-Pacific Corporation, where he acquired much of the practical knowledge found in this and his other textbooks.
-
MINDTAP EMPOWERS STUDENTS WITH A PERSONALIZED LEARNING EXPERIENCE. Equipping students with the skills they need to succeed in today's workforce, MindTap guides learners in analyzing, applying and improving thinking -- while allowing instructors to measure skills and outcomes with ease. Through hands-on activities, real-life relevance and mastery of difficult concepts, MindTap helps students become the critical thinkers, troubleshooters and creative problem-solvers that employers want.
-
CURRICULUM MAPS TO NATIONAL INITIATIVE FOR CYBERSECURITY EDUCATION STANDARDS. For interested institutions, curriculum mapping to the newly released National Initiative for Cybersecurity Education (NICE) standards is available with this edition.
-
UP-TO-THE-MINUTE COVERAGE. Reflecting the latest advancements in the field, the Sixth Edition presents the most current information on NIST, ISO, security governance and other relevant changes related to today's information security.
-
ENHANCED COVERAGE. Chapter 1: "Introduction to Management of Information Security" includes expanded discussions and increased coverage of the latest threats and trends.
-
UPDATED. Chapter 2: "Compliance: Law and Ethics" includes coverage of new and key laws, including breach laws.
-
MORE INFORMATION. Chapter 4: "Information Security Policy" has been enhanced and expanded.
-
REVISED AND RESTRUCTURED. Chapter 8 now emphasizes Security Management Models.
-
EXPANDED COVERAGE. Chapter 9: "Security Management Practices" now includes coverage of Personnel Security issues.
-
ALL-NEW CHAPTER. Chapter 11: "Security Maintenance and the Management of Digital Forensics" is dedicated to this growing field.
-
NEW TOPICS. Chapter 12: "Protection Mechanisms" now includes expanded coverage of managing technology.
-
CERTIFIED INFORMATION SYSTEMS SECURITY PROFESSIONALS (CISSP) AND CERTIFIED INFORMATION SECURITY MANAGERS (CISM) INFORMATION INTEGRATED THROUGHOUT. The authors have carefully incorporated both CISSP and CISM bodies of knowledge throughout the text to prepare your students for certification. Chapter scenarios follow a fictional company as it encounters various information security issues. Meaningful group discussion questions follow each scenario to prompt lively classroom dialogue and debate.
-
WRITTEN BY SECURITY PROFESSIONALS. This text and its ancillary features were meticulously designed by security professionals who are also teaching faculty members. Their experiences and expertise -- from classroom and industry -- are woven throughout chapter content to provide instructors with a well-designed, comprehensive security management instructional tool, complete with modern virtual ancillaries and teaching support aids. The text reflects key industry trends and issues, while facilitating the organization, delivery and assessment of student knowledge.
-
"VIEWPOINT" ESSAYS ILLUSTRATE INTRIGUING TOPICS. Written by security practitioners and academics, Viewpoint essays in each chapter use real-world examples to illustrate chapter concepts at work in today's business environments.
-
ACTIVITIES, QUESTIONS AND PROJECTS REINFORCE SKILLS. Your students have numerous opportunities to apply what they are learning with in-depth review questions, hands-on activities and case projects in every chapter.
-
EMPHASIS ON KEY EXECUTIVE AND MANAGERIAL ASPECTS OF INFORMATION SECURITY. As they progress through the text, students build on their strong foundation of key concepts and become proficient in the most important areas of information security and management.
Cengage Testing, powered by Cognero® for Whitman/Mattord's Management of Information Security
9781337405850
Cengage Testing, powered by Cognero® for Whitman/Mattord's Management of Information Security, Instant Access
9781337405867
Instructor's Website for Whitman/Mattord's Management of Information Security, 6th
9781337405720
MindTap: Management of Information Security 12 Months
9781337675680
Cengage eBook: Management of Information Security 12 Months
9788000014173