2012 Puddly Awards
 
 
Follow us on TwitterFollow us on FacebookFollow us on TumblrSubscribe to RSS


Recently Viewed clear list


Interviews | January 24, 2012

Jill Owens: IMG Ben Marcus: The Powells.com Interview



Ben MarcusBen Marcus's books The Age of Wire and String and Notable American Women were considered "experimental" fiction because of his unconventional use of... Continue »
  1. $18.17 Sale Hardcover add to wish list

    The Flame Alphabet

    Ben Marcus 9780307379375

spacer
Free Shipping!

On Order

$29.99
New Hardcover
Currently out of stock.
Add to Wishlist
Qty Store Section
- Local Warehouse Internet- General

This title in other editions

The New School of Information Security

by Adam Shostack

The New School of Information Security Cover

 

Synopses & Reviews

Publisher Comments:

<>“It is about time that a book like The New School came along. The age of security as pure technology is long past, and modern practitioners need to understand the social and cognitive aspects of security if they are to be successful. Shostack and Stewart teach readers exactly what they need to know--I just wish I could have had it when I first started out.”

--David Mortman, CSO-in-Residence Echelon One, former CSO Siebel Systems

 

Why is information security so dysfunctional? Are you wasting the money you spend on security? This book shows how to spend it more effectively. How can you make more effective security decisions? This book explains why professionals have taken to studying economics, not cryptography--and why you should, too. And why security breach notices are the best thing to ever happen to information security. It’s about time someone asked the biggest, toughest questions about information security. Security experts Adam Shostack and Andrew Stewart don’t just answer those questions--they offer honest, deeply troubling answers. They explain why these critical problems exist and how to solve them. Drawing on powerful lessons from economics and other disciplines, Shostack and Stewart offer a new way forward. In clear and engaging prose, they shed new light on the critical challenges that are faced by the security field. Whether you’re a CIO, IT manager, or security specialist, this book will open your eyes to new ways of thinking about--and overcoming--your most pressing security challenges. The New School enables you to take control, while others struggle with non-stop crises.

  • Better evidence for better decision-making

    Why the security data you have doesn’t support effective decision-making--and what to do about it

  • Beyond security “silos”: getting the job done together

    Why it’s so hard to improve security in isolation--and how the entire industry can make it happen and evolve

  • Amateurs study cryptography; professionals study economics

    What IT security leaders can and must learn from other scientific fields

  • A bigger bang for every buck

    How to re-allocate your scarce resources where they’ll do the most good

About the Author

Adam Shostack is part of Microsoft’s Security Development Lifecycle strategy team, where he is responsible for security design analysis techniques. Before Microsoft, Adam was involved in a number of successful start-ups focused on vulnerability scanning, privacy, and program analysis. He helped found the CVE, International Financial Cryptography association, and the Privacy Enhancing Technologies workshop. He has been a technical advisor to companies including Counterpane Internet Security and Debix.

 

Andrew Stewart is a Vice President at a US-based investment bank. His work on information security topics has been published in journals such as Computers & Security and Information Security Bulletin. His homepage is homepage.mac.com/andrew_j_stewart

Table of Contents

1. OBSERVING THE WORLD AND ASKING WHY Spam, and Other Problems with Email 4

Hostile Code 7

Security Breaches 9

Identity and the Theft of Identity 11

Should We Just Start Over? 14

The Need for a New School 15

2. THE SECURITY INDUSTRY Where the Security Industry Comes From 19

Orientations and Framing 25

What Does the Security Industry Sell? 27

How Security Is Sold 33

3. ON EVIDENCE The Trouble with Surveys 46

The Trade Press 50

Vulnerabilities 52

Instrumentation on the Internet 54

Organizations and Companies with Data 55

4. THE RISE OF THE SECURITY BREACH How Do Companies Lose Data? 64

Disclose Breaches 68

Possible Criticisms of Breach Data 70

Moving from Art to Science 74

Get Involved 76

5. AMATEURS STUDY CRYPTOGRAPHY; The Economics of Information Security 82

PROFESSIONALS STUDY ECONOMICS Psychology 95

Sociology 99

6. SPENDING Reasons to Spend on Security Today 106

Non-Reasons to Spend on Security 110

Emerging Reasons to Spend 112

How Much Should a Business

Spend on Security? 116

The Psychology of Spending 122

On What to Spend 126

7. LIFE IN THE NEW SCHOOL People Are People 132

Breach Data Is Not Actuarial Data 136

Powerful Externalities 137

The Human Computer Interface and

Risk Compensation 139

The Use and Abuse of Language 142

Skills Shortages, Organizational

Structure, and Collaboration 144

8. A CALL TO ACTION Join the New School 149

Embrace the New School 153

Make Money from the New School 157

Final Words 159

ENDNOTES 161

BIBLIOGRAPHY 213

INDEX 229

Product Details

ISBN:
9780321502780
Author:
Shostack, Adam
Publisher:
Addison-Wesley Professional
Author:
Stewart, Andrew
Subject:
Internet - Security
Subject:
Computer security
Subject:
Business
Subject:
Leadership
Subject:
Information technology - Security measures
Subject:
Internet - General
Copyright:
Publication Date:
April 2008
Binding:
HARDCOVER
Grade Level:
Professional and scholarly
Language:
English
Pages:
288
Dimensions:
8.96x6.32x.99 in. 1.28 lbs.

Other books you might like

  1. $6.95 Used Trade Paper add to wish list
  2. $12.99 Google eBooks add to wish list
  3. $25.75 New Hardcover add to wish list
  4. $15.93 Google eBooks add to wish list
  5. $19.99 New Trade Paper add to wish list
  6. $11.99 Google eBooks add to wish list

Related Aisles

The New School of Information Security New Hardcover
0 stars - 0 reviews
$29.99 Backorder
Product details 288 pages Addison-Wesley Professional - English 9780321502780 Reviews:
spacer
spacer
  • back to top
Follow us on...


Powell's City of Books is an independent bookstore in Portland, Oregon, that fills a whole city block with more than a million new, used, and out of print books. Shop those shelves — plus literally millions more books, DVDs, and eBooks — here at Powells.com.