New User!
Network Security Evaluation Using the NSA IEM
By: Russ Rogers , Ed FullerImprint: Syngress
Format: Adobe Encrypted (DRM)
Earn $0.50 - Write a Review »
Network Security Evaluation provides a methodology for conducting technical security evaluations of all the critical components of a target network. The book describes how the methodology evolved and how to define the proper scope of an evaluation, including the consideration of legal issues that may arise during the evaluation. More detailed information is given in later chapters about the core technical processes that need to occur to ensure a comprehensive understanding of the network's security posture.
Ten baseline areas for evaluation are covered in detail. The tools and examples detailed within this book include both Freeware and Commercial tools that provide a detailed analysis of security vulnerabilities on the target network. The book ends with guidance on the creation of customer roadmaps to better security and recommendations on the format and delivery of the final report.
* There is no other book currently on the market that covers the National Security Agency's recommended methodology for conducting technical security evaluations
* The authors are well known in the industry for their work in developing and deploying network security evaluations using the NSA IEM
* The authors also developed the NSA's training class on this methodology
See more like this in our Computers eBooks section
Share your thoughts on the Network Security Evaluation Using the NSA IEM Computers eBook with others!
| Title of Computers eBook: Network Security Evaluation Using the NSA IEM | |
| Release Date: 07-30-2005 | |
| Publisher: Syngress |
This eBook download is available in the following formats:
| Parent title | Network Security Evaluation Using... |
|---|---|
| Encrypted (DRM) | Yes |
| SKU | 9780080489438 |
| File size | 7351 |
| Security | n/a |
| Printing | Not allowed |
| Copying | Not allowed |
| Read aloud | No Sys requirements Download reader |
| Devices | Samsung Tablet, Apple Ipad & Iphone, Barnes & Noble Nook, Kobo eReader, Aluratek Libre, Iliad, Nokia, Blackberry, Hanlin |
| Note | Excellent navigation features are available via Adobe such as bookmarks and a quick access table of contents. Text search is easily accessible. An Adobe DRM-protected file is different than a pdf file in that it uses Adobe DRM (Digital Rights Management) technology, which authors and publishers use to protect their content from illegal online distribution and to set certain privileges such as restrictions on copying and printing. |
Network Security Evaluation Using the NSA IEM
Chapter One
Introducing the INFOSEC Evaluation Methodology
Solutions in this chapter:
* What Is the IEM? * What the IEM Is Not * Standards and Regulations [ ] Summary [ ] Solutions Fast Track [ ] Frequently Asked Questions
Introduction
Security providers around the world have been trying for years to engineer an effective means for conducting technical evaluations that is meaningful to the customer. For too long, we've seen fly-by-night consulting companies walk into a customer organization, run a security vulnerability scanner, print out the default application report (after replacing the logo), and present that to the customer as the final deliverable. Although the initial paper factor of this type of work might be impressive to the uneducated customer, once they start digging into the actual contents of the report and trying to understand how it applies to their organization, they normally discover that this level of service is lacking.
Until recently, the use of a repeatable, structured, and flexible methodology to provide these services was on a per-company basis. Customers could never really be sure what to expect when they asked for a security evaluation. Would it be a penetration test? A full Red Team? Would it even be comprehensive, or did the consultants see the work as a game? It all really came down to who was doing the work. The majority of final reports the customer dealt with lacked even enough basic similarity to allow the customer to compare results from year to year.
The INFOSEC Evaluation Methodology (IEM) prese
...Read full excerpt from Network Security Evaluation Using the NSA IEM ebook








