eBook: Fundamentals of Information Security Risk Management Auditing: An introduction for managers and auditors (DRM PDF)
 
電子書格式: DRM PDF
作者: Christopher Wright 
系列: Fundamentals Series
分類: Computing & information technology ,
Computer security  
書城編號: 21930898


售價: $168.00

購買後立即進貨, 約需 1-4 天

 
 
製造商: IT Governance Publishing
出版日期: 2016/04/12
頁數: 161
ISBN: 9781849288163

商品簡介
For any modern business to thrive, it must assess, control and audit the risks it faces in a manner appropriate to its risk appetite. As information-based risks and threats continue to proliferate, it is essential that they are addressed as an integral component of your enterprise's risk management strategy, not in isolation. They must be identified, documented, assessed and managed, and assigned to risk owners so that they can be mitigated and audited.Fundamentals of Information Risk Management Auditingprovides insight and guidance on this practice for those considering a career in information risk management, and an introduction for non-specialists, such as those managing technical specialists.Product overviewFundamentals of Information Risk Management Auditing - An Introduction for Managers and Auditorshas four main parts:What is risk and why is it important?An introduction to general risk management and information risk.Introduction to general IS and management risksAn overview of general information security controls, and controls over the operation and management of information security, plus risks and controls for the confidentiality, integrity and availability of information.Introduction to application controlsAn introduction to application controls, the controls built into systems to ensure that they process data accurately and completely.Life as an information risk management specialist/auditorA guide for those considering, or undergoing, a career in information risk management.Each chapter contains an overview of the risks and controls that you may encounter when performing an audit of information risk, together with suggested mitigation approaches based on those risks and controls.Chapter summaries provide an overview of the salient points for easy reference, and case studies illustrate how those points are relevant to businesses.The book concludes with an examination of the skills and qualifications necessary for an information risk management auditor, an overview of typical job responsibilities, and an examination of the professional and ethical standards that an information risk auditor should adhere to.Topics coveredFundamentals of Information Risk Management Auditingcovers, among other subjects, the three lines of defence; change management; service management; disaster planning; frameworks and approaches, including Agile, COBIT CRAMM, PRINCE2 ITIL and PMBOK; international standards, including ISO 31000, ISO 27001, ISO 22301 and ISO 38500; the UK Government's Cyber Essentials scheme; IT security controls; and application controls.ContentsPart I: What is risk and why is it important?Chapter 1: Risks and controlsChapter 2: Enterprise risk management (ERM) frameworksChapter 3: Risk management assurance and auditChapter 4: Information risks and frameworksPart II: Introduction to general IT and management risksChapter 5: Overview of general IT and management risksChapter 6: Security and data privacyChapter 7: System development and change controlChapter 8: Service management and disaster planningPart III: Introduction to Application controlsChapter 9: Overview of application controls (Integrity)Part IV: Life as an Information Risk Management specialistChapter 10: Planning, running and reviewing information risk management assignmentsChapter 11: Personal development and qualificationsAbout the authorChristopher Wright is a qualified accountant, Certified Information Systems Auditor and Certified ScrumMaster with over 30 years' experience providing financial and IT advisory and risk management services. For 16 years, he worked at KPMG, where he was head of information risk training in the UK and also ran training courses overseas, including in India and throughout mainland Europe. He managed a number of major IS audit and risk assignments, including project risk and business control reviews. He has worked in a wide range of industry sectors including oil and gas, the public sector, aviation, and travel. For the past eight years, he has been an independent consultant specialising in financial, SOX and operational controls for major ERP implementations, mainly at oil and gas/utilities enterprises.He is an international speaker and trainer on Agile audit and governance, and is the author of two other titles, also published by ITGP:Agile Governance and AuditandReviewing IT in Due Diligence.Fundamentals seriesFundamentals of Information Risk Management Auditingis part of theFundamentals Series, co-published by IT Governance Publishing and Information Security Buzz.Buy Fundamentals of Information Risk Management Auditing now.
Fundamentals Series

Fundamentals of Planning and Assessment for Libraries (Paperback)

eBook: Fundamentals of Assurance for Lean Projects (DRM EPUB)

eBook: Fundamentals of Assurance for Lean Projects (DRM PDF)

eBook: Fundamentals of Information Security Risk Management Auditing: An introduction for managers and auditors (DRM EPUB)

eBook: Fundamentals of Information Security Risk Management Auditing: An introduction for managers and auditors (DRM PDF)

eBook: Psychology of Information Security: Resolving conflicts between security compliance and human behaviour (DRM EPUB)

eBook: Psychology of Information Security: Resolving conflicts between security compliance and human behaviour (DRM PDF)

eBook: Two-Factor Authentication (DRM PDF)

eBook: Reviewing IT in Due Diligence: Are you buying an IT asset or liability (DRM PDF)

eBook: Build a Security Culture (DRM PDF)

eBook: Web Application Security is a Stack: How to CYA (Cover Your Apps) Completely (DRM PDF)

Christopher Wright 作者作品表

eBook: Agile Project Management, Assurance and Auditing: A practical guide for auditors, reviewers and project teams (DRM EPUB)

eBook: Agile Project Management, Assurance and Auditing: A practical guide for auditors, reviewers and project teams (DRM PDF)

Of Penguins and Polar Bears (Paperback)

eBook: Como predicar desde el Antiguo Testamento (DRM EPUB)

eBook: Of Penguins and Polar Bears: A History of Cold Water Cruising (DRM EPUB)

eBook: How Cyber Security Can Protect Your Business: A guide for all stakeholders (DRM PDF)

eBook: How Cyber Security Can Protect Your Business: A guide for all stakeholders (DRM EPUB)

eBook: Fundamentals of Assurance for Lean Projects (DRM EPUB)

eBook: Fundamentals of Assurance for Lean Projects (DRM PDF)

eBook: Fundamentals of Information Security Risk Management Auditing: An introduction for managers and auditors (DRM EPUB)

eBook: Fundamentals of Information Security Risk Management Auditing: An introduction for managers and auditors (DRM PDF)

Climate Change, Capitalism, and Corporations (Hardcover)

Climate Change, Capitalism, and Corporations (Paperback)

eBook: Agile Governance and Audit: An overview for auditors and agile teams (DRM PDF)

* 以上資料僅供參考之用, 香港書城並不保證以上資料的準確性及完整性。
* 如送貨地址在香港以外, 當書籍/產品入口時, 顧客須自行繳付入口關稅和其他入口銷售稅項。

 

 

 

  我的賬戶 |  購物車 |  出版社 |  團購優惠
加入供應商 |  廣告刊登 |  公司簡介 |  條款及細則

香港書城 版權所有 私隱政策聲明

顯示模式: 電腦版 (改為: 手機版)