Join Amazon Prime and ship Two-Day for free and Overnight for $3.99. Already a member? Sign in.
Managing an Information Security and Privacy Awareness an... and over 300,000 other books are available for Amazon Kindle – Amazon’s new wireless reading device. Learn more

 

or
Sign in to turn on 1-Click ordering.
 
 
More Buying Choices
17 used & new from $56.66

Have one to sell? Sell yours here
 
   
Managing an Information Security and Privacy Awareness and Training Program
 
 
Start reading Managing an Information Security and Privacy Awareness an... on your Kindle in under a minute.

Don’t have a Kindle? Get yours here.
 
  

Managing an Information Security and Privacy Awareness and Training Program (Hardcover)

by Rebecca Herold (Author) "It is worthwhile to take a brief look at workplace training and awareness history..." (more)
Key Phrases: effectiveness evaluation framework, job appraisal process, customer privacy issues, Data Collection Method, Instruments Data Sources, Computer Security Institute (more...)
4.8 out of 5 stars See all reviews (6 customer reviews)

List Price: $83.95
Price: $56.66 & this item ships for FREE with Super Saver Shipping. Details
You Save: $27.29 (33%)
In Stock.
Ships from and sold by Amazon.com. Gift-wrap available.

11 new from $56.66 6 used from $81.91
Also Available in: List Price: Our Price: Other Offers:
Kindle Edition (Kindle Book) $50.99
Hardcover (2) $79.95 $72.99

Frequently Bought Together

Customers buy this book with Computer Security: 20 Things Every Employee Should Know (McGraw-Hill Professional Education) by Ben Rothke

Managing an Information Security and Privacy Awareness and Training Program + Computer Security: 20 Things Every Employee Should Know (McGraw-Hill Professional Education)

Customers Who Bought This Item Also Bought

Security Education, Awareness and Training: SEAT from Theory to Practice

Security Education, Awareness and Training: SEAT from Theory to Practice

by Carl Roper
$57.95
Security Metrics: Replacing Fear, Uncertainty, and Doubt

Security Metrics: Replacing Fear, Uncertainty, and Doubt

by Andrew Jaquith
4.6 out of 5 stars (20)  $31.49
CISSP Certification All-in-One Exam Guide, Fourth Edition

CISSP Certification All-in-One Exam Guide, Fourth Edition

by Shon Harris
4.2 out of 5 stars (31)  $50.39
The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments

The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments

by Douglas J. Landoll
5.0 out of 5 stars (4)  $75.07
The Ciso Handbook: A Practical Guide to Securing Your Company

The Ciso Handbook: A Practical Guide to Securing Your Company

by Michael Gentile
5.0 out of 5 stars (3)  $63.16
Explore similar items


Editorial Reviews

Review
Rebecca Herold has the answers in her definitive book on everything everybody needs to know about how to impart security awareness, training, and motivation. Motivation had been missing from the information security lexicon until Herold put it there in most thorough and effective ways…She demonstrates that security must become a part of job performance rather than being in conflict with job performance…

Rebecca Herold has the answers in her definitive book on everything everybody needs to know about how to impart security awareness, training, and motivation. Motivation had been missing from the information security lexicon until Herold put it there in most thorough and effective ways…She demonstrates that security must become a part of job performance rather than being in conflict with job performance…

The power of this book also lies in applying real education theory, methods, and practice to teaching security awareness and training…After reading this book, there is no question about the necessary and important roles of security awareness, training, and motivation.
Donn B. Parker, CISSP, from the Preface

The power of this book also lies in applying real education theory, methods, and practice to teaching security awareness and training…After reading this book, there is no question about the necessary and important roles of security awareness, training, and motivation.
Donn B. Parker, CISSP, from the Preface

This book is remarkable because it covers in detail all the facets of providing effective security awareness training…I can, without reservation, recommend use of this book to any organization faced with the need to develop a successful training and awareness program. It surely provides everything you need to know to create a real winner.
Hal Tipton, from the Foreword

This book is remarkable because it covers in detail all the facets of providing effective security awareness training…I can, without reservation, recommend use of this book to any organization faced with the need to develop a successful training and awareness program. It surely provides everything you need to know to create a real winner.
Hal Tipton, from the Foreword

…perfect for lay and professional audiences, this is a guide not for implementing technical necessities but for getting everybody in an organization on board.
Journal of Productive Innovation, 2005
Rebecca Herold, an independent computer security advisor, knows privacy. Not all security consultants do. In her latest book, Managing an Information Security and Privacy Awareness and Training Program, Herold has collected her best advice…Perfect for lay and professional audiences, this is a guide not for implementing technical necessities but for getting everybody in an organization on board.
- Privacy Journal

…perfect for lay and professional audiences, this is a guide not for implementing technical necessities but for getting everybody in an organization on board.
Journal of Productive Innovation, 2005
Rebecca Herold, an independent computer security advisor, knows privacy. Not all security consultants do. In her latest book, Managing an Information Security and Privacy Awareness and Training Program, Herold has collected her best advice…Perfect for lay and professional audiences, this is a guide not for implementing technical necessities but for getting everybody in an organization on board.
- Privacy Journal

Product Description
Managing an Information Security and Privacy Awareness and Training Program provides a starting point and an all-in-one resource for infosec and privacy education practitioners who are building programs for their organizations. The author applies knowledge obtained through her work in education, creating a comprehensive resource of nearly everything involved with managing an infosec and privacy training course. This book includes examples and tools from a wide range of businesses, enabling readers to select effective components that will be beneficial to their enterprises. The text progresses from the inception of an education program through development, implementation, delivery, and evaluation.

See all Editorial Reviews

Product Details

  • Hardcover: 552 pages
  • Publisher: Auerbach Publications; 1 edition (April 26, 2005)
  • Language: English
  • ISBN-10: 0849329639
  • ISBN-13: 978-0849329630
  • Product Dimensions: 9.1 x 6.4 x 1.4 inches
  • Shipping Weight: 2 pounds (View shipping rates and policies)
  • Average Customer Review: 4.8 out of 5 stars See all reviews (6 customer reviews)
  • Amazon.com Sales Rank: #573,782 in Books (See Bestsellers in Books)

Inside This Book (learn more)



Books on Related Topics (learn more)
 
 

What Do Customers Ultimately Buy After Viewing This Item?

Managing an Information Security and Privacy Awareness and Training Program
83% buy the item featured on this page:
Managing an Information Security and Privacy Awareness and Training Program 4.8 out of 5 stars (6)
$56.66
The Art of Deception: Controlling the Human Element of Security
10% buy
The Art of Deception: Controlling the Human Element of Security 4.2 out of 5 stars (125)
$11.53
Managing Catastrophic Loss of Sensitive Data: A Guide for IT and Security Professionals
7% buy
Managing Catastrophic Loss of Sensitive Data: A Guide for IT and Security Professionals 5.0 out of 5 stars (1)
$54.31

Tags Customers Associate with This Product

 (What's this?)
Click on a tag to find related items, discussions, and people.
Check the boxes next to the tags you consider relevant or enter your own tags in the field below.
(1)

Your tags: Add your first tag
 
Help others find this product — tag it for Amazon search
No one has tagged this product for Amazon search yet. Why not be the first to suggest a search for which it should appear?

Sell a Digital Version of This Book in the Kindle Store

If you are a publisher or author and hold the digital rights to a book, you can sell a digital version of it in our Kindle Store. Learn more

 

Customer Reviews

6 Reviews
5 star:
 (5)
4 star:
 (1)
3 star:    (0)
2 star:    (0)
1 star:    (0)
 
 
 
 
 
Average Customer Review
4.8 out of 5 stars (6 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

 
16 of 16 people found the following review helpful:
5.0 out of 5 stars THE Definitive Book on Information Security Practice, July 24, 2005
I'll begin by saying that I have two broad comments about Ms. Herold's new book, Managing an Information Security and Privacy Awareness and Training Program. First, it may be the definitive book on the topic and seems to have enough meat to be the definitive book on the practice of information security in general. It approaches the profession in the right way: people-oriented. That is rare and important. Second, I actually read it from cover to cover - a rare thing for me. Professional books usually find their ways to my reference library and are used mostly for that purpose, not for general reading.

In the over twenty years I have been in the information security profession I have seen a lot of approaches to managing the security of organizational information. There is one common thread that ties all of those approaches together. The successful ones address the people who use and manage that information. Technology simply is a collection of tools to assist the information assurance manager with the task. It has been said that there are management solutions to technical problems but no technical issues to management problems. Ms. Herold addresses this homily head-on and does it with style, personality and skill.

Her experience shows as does the commentary from two icons in our profession, Donn Parker and Hal Tipton. If you have any questions about whether you should buy this book, read their comments in the Preface and Forward.

I have known Becky for many years and I respect her skill, experience and ability to present important issues clearly, concisely and understandably. Her latest book does all that and more.

If I was told that I was moving to a new office and could take only two boxes of books with me from my library, I would fill both with technical books but I would leave space for the only two general books on information assurance I will ever need. One is "The Computer Security Handbook" edited by my good friend and long-time colleague Dr. Mich Kabay. The other would have to be "Managing an Information Security and Privacy Awareness and Training Program". It would take more than the two boxes to cover technical issues in security, but I could put Mich's and Becky's books in my brief case. Then I would have the perfect security library.

This book is highly recommended for any information assurance professional (or aspiring professional), manager with information assurance responsibilities, or training coordinator. I'm sure there are others who need this new offering as well, but Amazon only allows so much space for these reviews. I also will be highly recommend this book to our students in the MSIA program at Norwich.

Peter R. Stephenson, PhD, CISSP, CISM, FICAF
Associate Program Director, MSIA
Norwich University
Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
6 of 6 people found the following review helpful:
5.0 out of 5 stars At last - a security awareness book worth recommending!, January 1, 2006
The author introduces her book very eloquently: "I wrote this book to provide a starting point and an all-in-one resource for information security and privacy education practitioners. I incorporated much of the information and knowledge I obtained while working on my MA in computer science and education as applicable to providing education to adult learners. Additionally, I included the same type of information that I've used and found helpful over the years when creating awareness and training programs ... My goal was to provide a more comprehensive resource of everything involved with managing an information security and privacy training and awareness program than I had been able to find - a reference for practitioners to go to when implementing any part of their education program and get ideas that will help them be successful with their own program."

The entire `lifecycle' of a security awareness program is covered from program design (e.g. why awareness is important, legal and regulatory requirements and even `how not to do it') through program delivery and execution (getting started, gaining executive sponsorship and budget, topics to cover, methods of delivery/communications and motivational techniques, incorporating awareness into job responsibilities etc.) to program management (hints about planning, controlling and reporting progress) and program review (how to check that your program remains on-track and effective).

The book may appear overwhelming to someone just starting out on their information security and privacy awareness although it is not compulsory to read the entire book cover-to-cover in one sitting (tempting though that may be!). The chapter on `Getting started' is recommended reading, with details of how to identify key contacts, review the organization's existing approach to awareness and training, and a handy road-map that would serve as a good high level project plan. For more experienced information security professionals, and especially those considering or tasked with `doing awareness', this book is a must-read. Even seasoned security awareness practitioners would likely learn new things from this book, at least I did and suspect my copy will become well-thumbed in the months and years ahead.

The coverage is reasonably even throughout with plenty of meaty content in every section. The writing style is engaging, quite easy to read yet at the same time stimulating and thought provoking. The book is crammed full of good ideas, not just theoretical concepts but solid practical advice that can be put to use immediately. It really is hard to think of any way the book could have been better - praise indeed if you have read any of my reviews of other security awareness books.

This really *is* the definitive guide - a wonderful book for practitioners in our field, one I'm happy to recommend unreservedly.
Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
5 of 5 people found the following review helpful:
5.0 out of 5 stars The definitive reference on creating an information security, May 16, 2005
Managing an Information Security and Privacy Awareness and Training Program is without a doubt the definitive reference on creating an information security awareness program

Behind most information security problems are users who are untrained in security or unaware of the security risks. Millions of dollars of firewalls and cryptography can be bypassed by an unaware end-user.

Managing an Information Security and Privacy Awareness and Training Program is a tremendous book that can be used as a foundation for an effective and comprehensive information security awareness program.

The book contains the fundamental and metrics of why you need an awareness program, and everything you need to set up such a program.

The book is filled with good and advice and direction. Chapter 14 contains 143 methods for effective awareness. The other chapters provide equally effective information and advice.

At 500 pages, this book contains everything you need to know about creating and setting up an effective awareness program and is highly recommended.
Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)


Share your thoughts with other customers: Create your own review
 
 
 
Most Recent Customer Reviews

5.0 out of 5 stars A Definitive Roadmap to building a credible and sustainable Information Security and Privacy Awareness and Training Program
In this work, Rebecca Herold deftly lays out a framework that is easy to follow and comprehensive. She has skilfully managed to compile material that would otherwise take a... Read more
Published 14 months ago by Randolph J Waugh, I.S.P. ITILF...

5.0 out of 5 stars A great investment in your awareness program
If your organization is considering a security or privacy awareness program, this book will pay for itself many times over. Read more
Published 22 months ago by D. J. Lineman

4.0 out of 5 stars Good, but too long
I am not a friend nor acquaintance of Ms. Herold. I believe this is a good book on Awareness Training and would recommend it to professionals in that field and to security... Read more
Published on January 14, 2006 by F. Scholl

Only search this product's reviews



Customer Discussions

 Beta (What's this?)
New! See all customer communities, and bookmark your communities to keep track of them.
This product's forum (0 discussions)
  Discussion Replies Latest Post
  No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
  [Cancel]

   


Product Information from the Amapedia Community

Beta (What's this?)


Look for Similar Items by Category


RotoZip Makes Difficult Cuts Easy

Shop all Rotozip products
RotoZip is proud to offer high-performance accessories, attachments, and tools to cut through a wide variety of materials.
 

Best Books of 2008

Best of 2008
Find our top 100 editors' picks as well as customers' favorites in dozens of categories in our Best Books of 2008 Store.
 

Don't Let the Cold Sneak In

Shop for Weather Stripping
Seal those small gaps around your doors and windows with weather stripping and save on heating costs during the cold seasons.

Shop weather-stripping products

 
Shop for Echo outdoor power equipment
Echo Outdoor Power EquipmentA worldwide leader in outdoor power equipment, Echo prides itself on setting the industry standard.
 

 

Feedback

If you need help or have a question for Customer Service, contact us.
 Would you like to update product info or give feedback on images?
Is there any other feedback you would like to provide?

Your comments can help make our site better for everyone.


Where's My Stuff?

Shipping & Returns

Need Help?

Your Recent History

  (What's this?)
You have no recently viewed items or searches.

After viewing product detail pages or search results, look here to find an easy way to navigate back to pages you are interested in.

Look to the right column to find helpful suggestions for your shopping session.

Continue shopping: Top Sellers
Paranoia
Paranoia by Joseph Finder
My Soul to Lose
My Soul to Lose by Rachel Vincent
Glenn Beck's Common Sense
Glenn Beck's Common Sense

Conditions of Use | Privacy Notice © 1996-2009, Amazon.com, Inc. or its affiliates