The Security Risk Assessment Handbook and over one million other books are available for Amazon Kindle. Learn more

Buy Used
Used - Acceptable See details
$39.92 & this item ships for FREE with Super Saver Shipping. Details

or
Sign in to turn on 1-Click ordering.
 
   
Kindle Edition
 
   
Have one to sell? Sell yours here
The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments
 
 
Start reading The Security Risk Assessment Handbook on your Kindle in under a minute.

Don't have a Kindle? Get your Kindle here, or download a FREE Kindle Reading App.

The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments [Hardcover]

Douglas J. Landoll (Author), Douglas Landoll (Author)
5.0 out of 5 stars  See all reviews (5 customer reviews)


Available from these sellers.


Textbook Student FREE Two-Day Shipping for Students. Learn more

Formats

Amazon Price New from Used from
Kindle Edition $46.99  
Hardcover --  
There is a newer edition of this item:
The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments, Second Edition The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments, Second Edition 4.0 out of 5 stars (1)
$64.92
In Stock.

Book Description

0849329981 978-0849329982 December 12, 2005 1
The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments provides detailed insight into precisely how to conduct an information security risk assessment. Designed for security professionals and their customers who want a more in-depth understanding of the risk assessment process, this volume contains real-world advice that promotes professional development. It also enables security consumers to better negotiate the scope and rigor of a security assessment, effectively interface with a security assessment team, deliver insightful comments on a draft report, and have a greater understanding of final report recommendations.

This book can save time and money by eliminating guesswork as to what assessment steps to perform, and how to perform them. In addition, the book offers charts, checklists, examples, and templates that speed up data gathering, analysis, and document development. By improving the efficiency of the assessment process, security consultants can deliver a higher-quality service with a larger profit margin.

The text allows consumers to intelligently solicit and review proposals, positioning them to request affordable security risk assessments from quality vendors that meet the needs of their organizations.


Product Details

  • Hardcover: 504 pages
  • Publisher: Auerbach Publications; 1 edition (December 12, 2005)
  • Language: English
  • ISBN-10: 0849329981
  • ISBN-13: 978-0849329982
  • Product Dimensions: 9.3 x 6.3 x 1.3 inches
  • Shipping Weight: 1.8 pounds
  • Average Customer Review: 5.0 out of 5 stars  See all reviews (5 customer reviews)
  • Amazon Best Sellers Rank: #880,441 in Books (See Top 100 in Books)

More About the Author

Douglas Landoll has over 20 years of information security experience. He has led security risk assessments establishing security programs within top corporations and government agencies. He is an expert in security risk assessment, security risk management, security criteria/compliance and building corporate security programs.

As a senior analyst at NSA, Mr. Landoll was responsible for evaluating security for NATO, the CIA, DoD, FBI and other government agencies. He co-founded the Arca Common Criteria Testing Laboratory, and co-authored the Systems Security Engineering - Capability Maturity Model (SSE-CMM - ISO 21827), taught at NSA's National Cryptologic School, and ran Exodus Communications' southwest security services division. Landoll has led security risk assessments and established security programs within top corporations and government agencies. He is an expert in security risk assessment, management, criteria, and building corporate security programs.

Mr. Landoll is current the Practice Director for Risk and Compliance Management at Accuvant. Previously he has served as the founder and president of Veridyn Inc. prior to their acquisition by En Pointe Technologies and the founder of Lantego Security. He also holds a CISSP, CISA, a Computer Science degree from James Madison University, and an MBA from the University of Texas, Austin. Mr. Landoll has published dozens of information security articles, speaks regularly at conferences, and serves as an advisor for several high-tech companies.

 

Customer Reviews

5 Reviews
5 star:
 (5)
4 star:    (0)
3 star:    (0)
2 star:    (0)
1 star:    (0)
 
 
 
 
 
Average Customer Review
5.0 out of 5 stars (5 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

7 of 8 people found the following review helpful:
5.0 out of 5 stars Reduce your information risks with this book, August 20, 2008
This review is from: The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments (Hardcover)
I manage information risks for a large organization on a professional basis and this is one of the best books I have read on this important topic. What I found most useful about this book is that it complements rather than competes with formal risk management methods. This book explains techniques and methods that you can use to enhance your existing risk assessment process like data gathering, impact analysis, evaluations and so on. This book should belong on every risk managers bookshelf.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


5 of 6 people found the following review helpful:
5.0 out of 5 stars A Great Way to Learn about Threat Risk Analysis, March 24, 2008
This review is from: The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments (Hardcover)
I am taking a class on Threat Risk Assessment and one of our main references is Douglas Landoll's "The Security Risk Assessment Handbook". The great thing about this book is that it takes what would normally be extremely dry material and makes it interesting. The book has a conversational tone which is easy to read, and yet still manages to be very informative. A great tool for anyone who wants to learn about security assessments.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


5.0 out of 5 stars A must resource in a CISO's library, March 30, 2010
By 
Daniel Nunez (Malverne, New York USA) - See all my reviews
(REAL NAME)   
Amazon Verified Purchase(What's this?)
This review is from: The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments (Hardcover)

Dear Mr. Doug Landoll,

I have to give you Kudo's on your book. I just bought it and its awesome!!!! There is a section that is so well written regarding the reporting structure of security and how successful the program will be based on InfoSec placement and support. I've never seen it written so well before. Your book will be a career long reference. I hope you write more books.

Take care,
Daniel Nunez, CISSP, CISM
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No

Share your thoughts with other customers: Create your own review
 
 
 
Most Recent Customer Reviews



Only search this product's reviews



Inside This Book (learn more)
First Sentence:
Heavy financial losses, breaches of privacy, and even the downfall of corporations have recently been attributed to the inability of corporations to protect themselves from cyber-risks. Read the first page
Key Phrases - Statistically Improbable Phrases (SIPs): (learn more)
means that the healthcare organization, performing security risk assessments, risk assessment team, information security engineers, presenting security risk, security protective force, information security risk assessment, information security regulations, administrative security controls, technical security controls, team perform activities, security assessment team, network mapping tools, existing security controls, identifying critical systems, baseline checklist, nonresidential fires, other security controls, physical security safeguards, penetration testing tools, audit log review, organization being assessed, physical security controls, asset valuation techniques, information security organization
Key Phrases - Capitalized Phrases (CAPs): (learn more)
United States, Geological Survey, Fly-By-Nite Security, Governance Institute, Objective Subtopic Review Tips Gather, Physical Safeguards Inspection Guideline, File Transfer Protocol, Physical Control Safeguard Inspection, Gramm-Leach-Bliley Act, Overcoming Limitations, Risk Management Guide, Steering Committee, Department of Energy, Environmental Risk Management Authority, Federal Trade Commission, Handbook of Information Security Management, National Industrial Security Program Operating Manual, New Zealand, Verify Information Gathered Information, Web Database Application
New!
Books on Related Topics | Concordance | Text Stats
Browse Sample Pages:
Front Cover | Table of Contents | First Pages | Index | Back Cover | Surprise Me!
Search Inside This Book:





Tags Customers Associate with This Product

 (What's this?)
Click on a tag to find related items, discussions, and people.
 
(1)

Your tags: Add your first tag
 

Customer Discussions

This product's forum
Discussion Replies Latest Post
No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
 


Active discussions in related forums
Search Customer Discussions
Search all Amazon discussions
   
Related forums


Listmania!


So You'd Like to...



Look for Similar Items by Category


Look for Similar Items by Subject