Request for consultation
Your form is submitting...
Overview
Introduce the latest trends, developments and technology within information security today with Whitman/Mattord's market-leading PRINCIPLES OF INFORMATION SECURITY, 7th Edition. Designed specifically for information systems students, this edition's balanced focus addresses all aspects of information security, beyond simply a technical control perspective. A broad overview of the entire field explores important terms and examines how to manage an effective information security program. A new module details incident response and detection strategies. In addition, relevant updates highlight the latest practices with expanded coverage of security operations, emerging legislative issues, information management toolsets, digital forensics and the most recent policies and guidelines that correspond to federal and international standards. MindTap digital resources offer interactive content to further strength an understanding of information security for successful business decision-makers.
- NEW MODULE ADDRESSES CONTINGENCY PLANNING AND INCIDENT RESPONSE. This completely new module updates the previous edition's coverage with more detail on incident response and incident detection strategies. The module also expands coverage of security operations, event and information management toolsets and seamlessly integrates the subject of digital forensics.
- UPDATED COVERAGE OF RISK MANAGEMENT METHODOLOGIES REFLECTS EMERGING TRENDS AND STANDARDS. This edition addresses the latest developments in International Organization for Standardization (ISO) and The National Institute of Standards and Technology (NIST) risk management approaches. This content keeps your course current with the most recent actions related to federal and international standards, information security policies and guidelines.
- CONCISE, STREAMLINED COVERAGE CLEARLY OUTLINES SECURITY PLANNING. The authors have restructured and updated this edition's presentation of security planning for a clear and more concise treatment.
- UPDATES TO SECURITY IMPLEMENTATION MODELS REFLECT THE LATEST CERTIFICATION AND ACCREDITATION STANDARDS. Revised coverage of security implementation models now includes updates to certification and accreditation of security management programs to meet the latest ISO Standards.
- NEW AND REVISED EXAMPLES DEPICT CURRENT TRENDS, CHANGES AND DEVELOPMENTS IN CYBER SECURITY. Numerous new and updated examples and references keep this edition and your course ahead of emerging trends in information and cyber security.
- FULL-COLOR VISUALS ENGAGE READERS AND FURTHER CLARIFY CONCEPTS. Compelling, colorful graphics throughout this edition keep the reader's attention and enable the authors to more clearly present critical security concepts.
- UPDATES PREVIEW THE LATEST IN TECHNICAL SECURITY CONTROLS. Students examine how today’s control environment continues its migration to an environment with less emphasis on the network perimeter and more reliance on Cloud Computing and the Internet of Things. Content covers SecDevOps as a means to address software assurance concerns.
- THE TEXT PROVIDES SUPPORT FOR MAPPING TO LEADING STANDARDS. You can easily map to both the NIST National Initiative for Cybersecurity Education (NICE) Workforce framework and DHS/NSA National Center of Academic Excellence in Cyber Defense Education designation.
- UPDATES PREVIEW THE LATEST IN TECHNICAL SECURITY CONTROLS. Students examine how today’s control environment continues its migration to an environment with less emphasis on the network perimeter and more reliance on Cloud Computing and the Internet of Things. Content covers SecDevOps as a means to address software assurance concerns.
- THE TEXT PROVIDES SUPPORT FOR MAPPING TO LEADING STANDARDS. You can easily map to both the NIST National Initiative for Cybersecurity Education (NICE) Workforce framework and DHS/NSA National Center of Academic Excellence in Cyber Defense Education designation.
- THIS BOOK ILLUSTRATES HOW INFORMATION SECURITY IS BOTH A MANAGEMENT AND TECHNOLOGY CHALLENGE. Students clearly see how information security in today’s modern organization is a problem for management to solve and not simply a problem that technology alone can answer. Readers examine how security problems have important economic consequences, for which management is held accountable.
- ENGAGING, REVELANT MODULE OPENERS EMPHASIZE THE CRITICAL NATURE OF INFORMATION SECURITY. Each module opens with a short story that follows the same fictional company as it encounters actual real-world issues within modern information security. At the end of that module, discussion questions complete the case study scenario, giving you and your students opportunities to discuss the underlying issues as well as explore ethical decision making in the business context.
- OFFLINE, TECHNICAL DETAILS, and FOR MORE INFORMATION BOXES HIGHLIGHT INTERESTING TOPICS AND CONTEMPORARY TECHNICAL ISSUES. Interspersed throughout the textbook, these captivating features enable your students to delve into key concepts more deeply.
- CHAPTERS END WITH A SUMMARY, REVIEW QUESTIONS AND EXERCISES DESIGNED TO EXTEND STUDENT UNDERSTANDING. These end-of-chapter features enable students to examine the information security arena outside of the classroom. Exercises prompt students to research, analyze, and write to reinforce learning objectives and deepen their understanding of the key issues within this edition.
- BOOK CONSISTENTLY EMPHASIZES REAL-WORLD APPLICATION. Students understand the relevance of what they are learning as this edition is packed with the latest timely, hands-on examples of information security issues, tools, and practices implemented in today's organizations.
- UP-TO-DATE MANAGERIAL CONTENT EQUIPS STUDENTS FOR SUCCESS. This book’s managerial approach offers general, but valuable, information without bogging readers down with extraneous, highly specific details.
2. The Need for Security.
3. Legal, Ethical, and Professional Issues in Information Security.
4. Security Management.
5. Incident Response and Contingency Planning.
6. Risk Management.
7. Security Technology: Firewalls, VPNs, and Wireless.
8. Security Technology: Intrusion Detection and Prevention Systems and Other Security Tools.
9. Cryptography.
10. Implementing Information Security.
11. Security and Personnel.
12. Information Security Maintenance.