Information Assurance: Managing Organizational IT Security Risks
Joseph George Boyce, Dan Wesley Jennings · Medical Entomology and Zoology · 2002
Section I - The Organizational IA Program: The Practical and Conceptual Foundation Ch. 1 IA and the Organization: The Challenges Ch. 2 Basic Security Concepts, Principles, and Strategy Section II - Defining the Organization's Current IA Posture Ch. 3 Determining the Organization's IA Baseline Ch. 4 Determining IT Security Priorities Ch. 5 The Organization's IA Posture III - Establishing and Managing an IA Defense In Depth Strategy within an Organization Ch. 6 Layer 1: IA Policies Ch. 7 Layer 2: IA Management Ch. 8 Layer 3: IA Architecture Ch. 9 Layer 4: Operational Security Administration Ch. 10 Layer 5: Configuration Management Ch. 11 Layer 6: Life-Cycle Security Ch. 12 Layer 7: Contingency Planning Ch. 13 Layer 8: IA Education, Training, and Awareness Ch. 14 Layer 9: IA Policy Compliance Oversight Ch. 15 Layer 10: IA Incident Response Ch. 16 Layer 11: IA Reporting Appendix