Product Description
This up-to-date resource provides all the tools you need to perform practical security audits on the entire spectrum of a companys IT platformsfrom the mainframe to the individual PCas well as the networks that connect them to each other and to the global marketplace. Auditing and Security: AS/400, NT, Unix, Networks, and Disaster Recovery Plans is the first book on IT security written specifically for the auditor, detailing what controls are necessary to ensure a secure system regardless of the specific hardware, software, or architecture a company runs. The author uses helpful checklists and diagrams and a practical, rather than theoretical, method to understanding and auditing a companys IT security systems and their requirements. This comprehensive volume covers the full range of issues relating to security audits, including:
- Hardware and software
- Operating systems
- Network connections
- The cooperation of logical and physical security systems
- Disaster recovery planning
From the Inside Flap
Auditing information systems for security requires knowledge across a wide range of disciplines beyond computer science, including management science, information security, accounting, finance, business, and human resources. This book supplies the vital information across these divergent fields that auditors, IT managers, controllers, and CIOs need to measure the security of their systems. This comprehensive volume covers the full range of issues relating to security auditshardware, operating systems, network connections, the cooperation of logical and physical security measures, and disaster recovery planning.
The author begins with an overview of the structure of information systems and their security requirements and then shows you how physical and logical security systems work together to create a safe corporate information structure. Comprehensive treatment of the different structures and security needs of AS/400, Microsoft NT, and Unix allows you to understand security requirements regardless of which computer architecture a company runs. Auditing and Security also uses helpful checklists and diagrams and a practical, rather than theoretical, method for understanding hardware, operating systems, and the networks that enable the interconnection of platforms and applications. Another important topic this volume covers is disaster recovery planning to help you ensure that IT systems and the information they safeguard are recoverable in the event of a major disruption in service or intentional destruction of data.
This up-to-date resource provides all the tools you need to perform practical security audits on the entire spectrum of a companys various IT platformsfrom the mainframe to the individual PCas well as the networks that connect them to each other and to the global marketplace. Auditing and Security: AS/400, NT, Unix, Networks, and Disaster Recovery Plans is the first book on IT security written specifically for the auditor, detailing what controls are necessary to ensure a secure system regardless of the specific hardware, software, or architecture a company runs.









