Join Amazon Prime and ship Two-Day for free and Overnight for $3.99. Already a member? Sign in.
Mission-Critical Security Planner and over 300,000 other books are available for Amazon Kindle – Amazon’s new wireless reading device. Learn more

 

or
Sign in to turn on 1-Click ordering.
 
 
More Buying Choices
50 used & new from $1.96

Have one to sell? Sell yours here
 
   
Mission-Critical Security Planner: When Hackers Won't Take No for an Answer
 
 
Start reading Mission-Critical Security Planner on your Kindle in under a minute.

Don’t have a Kindle? Get yours here.
 
  

Mission-Critical Security Planner: When Hackers Won't Take No for an Answer (Paperback)

by Eric Greenberg (Author) "Security isn't a product, a feature, or anything that we can simply acquire and then implement, confident that it will work now and forever after..." (more)
Key Phrases: quality management worksheet, security worksheet, executable management, Business Use Worksheet, Security Stack Use Worksheet, Selling Security Use Worksheet (more...)
4.9 out of 5 stars See all reviews (9 customer reviews)

List Price: $55.00
Price: $55.00 & this item ships for FREE with Super Saver Shipping. Details
o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o
Upgrade this book for $8.00 more, and you can read, search, and annotate every page online. See details
In Stock.
Ships from and sold by Amazon.com. Gift-wrap available.

Want it delivered Tuesday, July 21? Choose One-Day Shipping at checkout. Details
25 new from $2.95 25 used from $1.96
Also Available in: List Price: Our Price: Other Offers:
Kindle Edition (Kindle Book) $32.00
Unbound (Import) Order it used!

Frequently Bought Together

Customers buy this book with Computer Forensics JumpStart (Jumpstart (Sybex)) by Michael Solomon

Mission-Critical Security Planner: When Hackers Won't Take No for an Answer + Computer Forensics JumpStart (Jumpstart (Sybex))
  • This item: Mission-Critical Security Planner: When Hackers Won't Take No for an Answer by Eric Greenberg

    In Stock.
    Ships from and sold by Amazon.com.
    This item ships for FREE with Super Saver Shipping. Details

  • Computer Forensics JumpStart (Jumpstart (Sybex)) by Michael Solomon

    In Stock.
    Ships from and sold by Amazon.com.
    Eligible for FREE Super Saver Shipping on orders over $25. Details


Customers Who Bought This Item Also Bought

The New School of Information Security

The New School of Information Security

by Adam Shostack
4.4 out of 5 stars (15)  $19.79
Network Security Assessment: Know Your Network

Network Security Assessment: Know Your Network

by Chris McNab
4.3 out of 5 stars (21)  $26.64
Secrets and Lies: Digital Security in a Networked World

Secrets and Lies: Digital Security in a Networked World

by Bruce Schneier
4.4 out of 5 stars (127)  $12.21
Build Your Own Security Lab: A Field Guide for Network Testing

Build Your Own Security Lab: A Field Guide for Network Testing

by Michael Gregg
4.3 out of 5 stars (3)  $44.09
Network Application Frameworks: Design & Architecture

Network Application Frameworks: Design & Architecture

by Eric Greenberg
Explore similar items

Editorial Reviews

Review
“…This book is unique in its approach…and in conveying the overall strategy to the reader…” (Managing Risk, Summer 2003)

Product Description
* Shows step-by-step how to complete a customized security improvement plan, including analyzing needs, justifying budgets, and selecting technology, while dramatically reducing time and cost
* Includes worksheets at every stage for creating a comprehensive security plan meaningful to management and technical staff
* Uses practical risk management techniques to intelligently assess and manage the network security risks facing your organization
* Presents the material in a witty and lively style, backed up by solid business planning methods
* Companion Web site provides all worksheets and the security planning template

See all Editorial Reviews

Product Details

  • Paperback: 432 pages
  • Publisher: Wiley (January 20, 2003)
  • Language: English
  • ISBN-10: 0471211656
  • ISBN-13: 978-0471211655
  • Product Dimensions: 9.2 x 7.5 x 0.9 inches
  • Shipping Weight: 1.5 pounds (View shipping rates and policies)
  • Average Customer Review: 4.9 out of 5 stars See all reviews (9 customer reviews)
  • Amazon.com Sales Rank: #1,324,429 in Books (See Bestsellers in Books)

Inside This Book (learn more)
First Sentence:
Security isn't a product, a feature, or anything that we can simply acquire and then implement, confident that it will work now and forever after. Read the first page
Key Phrases - Statistically Improbable Phrases (SIPs): (learn more)
quality management worksheet, security worksheet, executable management, chief security planner, secure time services, vulnerability analysis systems, access control plan, security stack, hacked time, security planning team, network interface box, security planning process, staff management policies, train operations staff, assured transactions, protocol space, authentication plan, buffer exploits, workflow impact, encryption plan, effective security plan, incident response process, access control matrix, insecure software, building access control
Key Phrases - Capitalized Phrases (CAPs): (learn more)
Business Use Worksheet, Security Stack Use Worksheet, Selling Security Use Worksheet, Life-Cycle Management Use Worksheet, Customers Identify, Middle Management Show, Staff Highlight, Key Relationships, Employees Identify, Social Security, Executive Provide, Operating System Identify, Operations Define, Owners Identify, Technology Selection Select, Achieving Security, Control Server, Employees Develop, Implementation Develop, Operations Train, Technology Selection Evaluate
New!
Concordance | Text Stats
Browse Sample Pages:
Front Cover | Table of Contents | First Pages | Index | Back Cover | Surprise Me!
Search Inside This Book:


Tags Customers Associate with This Product

 (What's this?)
Click on a tag to find related items, discussions, and people.
Check the boxes next to the tags you consider relevant or enter your own tags in the field below.

Your tags: Add your first tag
 
Help others find this product — tag it for Amazon search
No one has tagged this product for Amazon search yet. Why not be the first to suggest a search for which it should appear?

Sell a Digital Version of This Book in the Kindle Store

If you are a publisher or author and hold the digital rights to a book, you can sell a digital version of it in our Kindle Store. Learn more

 

Customer Reviews

9 Reviews
5 star:
 (8)
4 star:
 (1)
3 star:    (0)
2 star:    (0)
1 star:    (0)
 
 
 
 
 
Average Customer Review
4.9 out of 5 stars (9 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

 
4 of 4 people found the following review helpful:
5.0 out of 5 stars Awesome high-level book, May 7, 2003
It is very rarely, that you'd see a good high-level security book nowadays. There are lots of great "worm-eye view" books with nice detailed descriptions of attacks, defenses, secure configuration options, tools and tricks. However, many of the high-level books resolve to quoting some outdated CSI/FBI survey, blabbering about security policy and giving out piles of outworldly advice on how to "mitigate risks".

This visionary book proves the opposite: you can have a high-level security book, which is not just practical, but actionable. "Mission Critical Security Planner" delivers a portion of the security process, packed into one toolkit. Make no mistake - this book is about planning how to do security, not how to tweak your scanner or configure a firewall. However, planning is indeed a critical (and, as the author points out, often missing) piece of security conundrum, and the book delivers on that.

An awesome component of the book is a large collection of templates and worksheets on "selling" security measures, planning the implementations, organizing security team, dealing with various business people and many other occasions. The book has the printed versions while its companion website criticalsecurity.com has the download.

The main part of the book is organized around "security fundamentals", large domains of security (such as authentication, encryption, integrity, privacy, etc), which are used to structure the security planning process, described by the author. For each of the fundamentals, the content is organized in sections: summary, security stack (covering various aspects from physical to application level), life-cycle management (from technology selection to response), business (on dealing with various categories of business people, such as suppliers and customers) and selling security (to execs, managers and staff). All of the above contain various templates.

Among the more fun parts, the section on negotiating with hackers is just exclusive and of the never-seen-before kind. Section in hacker profiling is also of interest, since it seems to originate from author's experiences (and not in just reading about it on the news). The book also demystifies such elusive notions as "impact analysis", "security ROI". PKI also has a prominent role in the book. While PKI (as it is defined today) might or might not fly, the book gives a great example of large-scale production implementation, running for many years. Another great feature of the book is author's "future 10 attacks list" with his predictions on threat landscape.

Overall, the book seems indispensable to those responsible for securing networks. Security managers and CSOs will likely gain maximum benefits from using it (due to the book targeting), but other security professionals will benefit as well. Notice, that the benefits can be derived from "using" it as opposed to just "reading" it, although even the latter will prove highly enlightening. The "selling security" templates alone are likely worth their weigh in gold. The book is well-written and, while not possessing the lively style of some recent security books, will beat some of them hands down in real-world applicability. After all, even if you very well know that IDS is valuable, who will help you to "sell" it to the CIO? This book just might!

Anton Chuvakin, Ph.D., GCIA, GCIH is a Senior Security Analyst with a major information security company. His areas of infosec expertise include intrusion detection, UNIX security, forensics, honeypots, etc. In his spare time, he maintains his security portal info-secure.org

Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
3 of 3 people found the following review helpful:
5.0 out of 5 stars Greenberg has done 1/2 the work for you, March 8, 2003
By Priscilla Oppenheimer (Ashland, OR USA) - See all my reviews
In Mission-Critical Security Planner, Greenberg lays out all the security elements that should concern you and what questions you should ask about them. With this book, half the battle is won because you at least know how to do the planning. You still have to do the planning, but with the worksheets and tips provided in the book, that will be much easier than it used to be.

I read the book twice: once to get an idea of what all the worksheets were about and once to really read them with all the technical and practical details provided by Greenberg.

Greenberg identifies 28 security elements, including 15 fundamental elements, (six of which are core elements), and 13 wrap-up elements. Core elements include things like authorization and access control, authentication, encryption, integrity, nonrepudiation, and privacy. Those may seem obvious, but Greenberg has a lot of useful things to say about them that others haven't said.

Perhaps the most valuable part of the book is all the other elements, which we tend to forget, including addressing and routing (with tips on how to get those right from a security point of view), configuration management, directory services, time services, staff management, legal issues, and so on.

I'd be interested to see some projects get implemented with Greenberg's methods. I think it should work quite well, although due to entropy, laziness, over-worked engineers, and other such factors, I would guess that some of the numerous worksheets will fall by the wayside. But I think Greenberg would be OK with that as long as most of the worksheets are maintained and the company adopts security as a way of thinking.

In summary, this book is definitely worth reading, probably numerous times!

Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
2 of 2 people found the following review helpful:
4.0 out of 5 stars Great security cookbook., June 16, 2003
The truth is, hackers and other attackers won't take no for an answer, and while there is absolutely no way to stop attackers from trying; there are ways to stop them in their tracks.

With that, Mission-Critical Security Planner is a surprisingly good book, aimed at someone looking to start developing their information security infrastructure. Rather than having to reinvent the wheel, the book provides planners with the framework and tools they need to create their information security infrastructure.

One good feature of the book it is large collection of templates and worksheets on various security elements. .../

The book is not overly technical and is quite good for those who need to get their security group up and running in a short timeframe.

For those that are serious about security, they will find that Mission-Critical Security Planner is like a cookbook. They can use it to prepare their security as needed.

Overall, Mission-Critical Security Planner is a very readable and useful book. Those who have an imperative to get their security groups up and running will find huge value in the book immediately.

Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)


Share your thoughts with other customers: Create your own review
 
 
Ad
 
Most Recent Customer Reviews

5.0 out of 5 stars When Hackers Won't Take No for an Answer
excellent reference material has been invaluable to me in the last week and has steered me into making some difficult choices easily
Published on July 20, 2005 by Graham S. Roberts

5.0 out of 5 stars Unique and on the mark
This book, especially if used in conjunction with the author's web site (see ASIN B0000C7RBX), is one of the most valuable additions to the IT security profession that I've read... Read more
Published on March 21, 2004 by Mike Tarrani

5.0 out of 5 stars Comprehensive & Practical Security Planner
Greenberg advocates an actionable, meaningful security approach that doesn't get hung up on methodology or reliance on abstract standards, like DoD and other common standards. Read more
Published on February 22, 2003

5.0 out of 5 stars Fast-track approach to a successful real-world security plan
This book provides an easily-adaptable methodology for the development and implementation of a comprehensive security plan, while avoiding the pitfalls that doom most of these... Read more
Published on February 18, 2003 by Chris Haggstrom

5.0 out of 5 stars Figure Out What's What
What's mission critical at my company isn't somewhere else, but I had no idea how to figure that out, let alone write up the proposal for my boss until I came across Eric... Read more
Published on February 10, 2003

5.0 out of 5 stars Putting Your Best Plan Forward
Eric Greenberg has put together an excellent book, at last someone has thought about planning security, instead of hacking security precautions on as an afterthought. Read more
Published on January 17, 2003 by rkb_woo92

Only search this product's reviews



Customer Discussions

 Beta (What's this?)
New! See all customer communities, and bookmark your communities to keep track of them.
This product's forum (0 discussions)
  Discussion Replies Latest Post
  No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
  [Cancel]

   


Product Information from the Amapedia Community

Beta (What's this?)


Look for Similar Items by Category


$10 Instant Savings

Beauty Blender
Get a $10 instant rebate with orders of $100 or more on beauty products sold by Amazon.com. See details. Promo code: IOBeauty.

Shop all eligible items now

 

Big Savings in Books

Bargain Books
Find great titles at fantastic prices in our Bargain Books Store.
 

Buy Three Books, Get a Fourth Free

4-for-3 Books
Order any four eligible books under $10 and get the lowest-price book free in our 4-for-3 Books Store. See more details.
 

Best Books

Best of the Month
See our editors' picks and more of the best new books on our Best of the Month page.
 
Ad

 

Feedback

If you need help or have a question for Customer Service, contact us.
 Would you like to update product info or give feedback on images?
Is there any other feedback you would like to provide?

Your comments can help make our site better for everyone.


Where's My Stuff?

Shipping & Returns

Need Help?

Your Recent History

  (What's this?)
You have no recently viewed items or searches.

After viewing product detail pages or search results, look here to find an easy way to navigate back to pages you are interested in.

Look to the right column to find helpful suggestions for your shopping session.

Continue shopping: Top Sellers
Free
Free by Chris Anderson
Paranoia
Paranoia by Joseph Finder
The Adventures of Sherlock Holmes
The Adventures of Sherlock Holmes by Arthur Conan, Sir, 1859-1930 Doyle
My Soul to Lose
My Soul to Lose by Rachel Vincent

Conditions of Use | Privacy Notice © 1996-2009, Amazon.com, Inc. or its affiliates