Book Description
Oracle security expert David Knox explains how to design and develop an integrated, secure Oracle environment. “In my experience in the security world, including 32 years at the Central Intelligence Agency, I’ve not found anyone with more experience in the theory and practice of protecting your data than David Knox.” --Dave Carey, former Executive Director of the CIA
Customer Reviews:
Not too helpful for the security beginner.......2006-12-08
I'm trying to set up proxy authentication and the book made a lot of assumptions about what I know. The author uses the SCOTT, BLAKE and APP_USER accounts and assumes that we know exactly how these accounts where set up. It would seem that the APP_USER account seems to be the schema owner, or is it the SCOTT and BLAKE accounts. Am I to assume that the SCOTT account is the defualt demo account that is setup by oracle? Being new to high level Oracle security I would have preferred a step-by-step approach to solving my security problems. I noticed that all other reviews where by people that seem to have a handle on this and just needed hints. Even the setting up of an LDAP sever was confusing, we never got it to work and even after following the steps did not get the same things that the author got. Even though I have not been a DBA for too long I have been using Oracle for 20 years now, so I'm not a novice.
Fantastic!.......2005-05-24
Buy this book if you haven't already... it's wonderful!
An easy/enjoyable read full of everything you need to know about locking down a 10gDB install!
Excellent Oracle help.......2005-03-14
Effective Oracle Database 10g Security by Design is sooo helpful.
There is a lot of good info in the Oracle documentation, but David Knox fill in a lot of the blanks.
Good Enough for the CIA.......2004-12-14
It would be easy to be secure if all the data were in one room, there were no connections to the outside world (well I guess you have to have power coming in, but that's all), and there were no people who knew the data.
Unfortunately that's not the real world. Breaking the German and Japanese codes during World War II would have been meaningless if that information wasn't used to sink the submarines, divert the convoy, or be ready at Midway.
The situation hasn't changed, but the integral capabilities of the Oracle database itself have. As security has gotten ever more important, the steps you need to take get every more complex. At the same time, the users of your data can't be expected to agree, they have a job to do and if security systems prevent them from doing their job they will find ways to bypass or ignore the security system.
This book can be read on two levels. First it is an excellent primer on security in general. Second it is Oracle centric so that anyone responsible for security on an Oracle based system need go no further.
Note that the Foreward is by David Carey, former Executive Director of the Central Intelligence Agency. It is generally believed that a big contract from the CIA was Oracle's first major success. The implication is that the CIA worked with Oracle to develop the security system discussed here. If the CIA says it's good enough....
Get This Book.......2004-12-02
Best Book for Oracle Security.
Comprehensive and well-written describe Oracle 10g new features for security.
Book Description
Today’s computer trading programs can be a godsend to traders looking for an extra edge. They can also be filled with dangerous—and expensive—pitfalls for the uninitiated. Trading Systems That Work reviews and analyzes today’s major software programs, and helps traders determine which will work best for their personal trading style and habits—and which could actually work against them. Emphasizing Tradestation and Excel (the two most popular software trading programs), this valuable guidebook covers all aspects of building, understanding, and evaluating a system. Traders will keep Trading Systems That Work handy for its: *Clear, step-by-step assistance with intricate systems *Techniques to evaluate the true performance of any system
Customer Reviews:
Good.......2007-03-20
This is good for programmers. It's a bit beyond me but I still got some useful stuff out of it that gave me an edge so that made it worth it. If someone is a programmer, this is your book. He's great and gets you thinking.
Useful but.......2006-10-14
remember: there is no such thing as a free lunch..you have to build systems yourself and test test test and then optimise a bit.(I said a bit :-)
Good techniques for developing a system.......2006-01-31
If you want a caned system, this is not the book for you. What this book will teach you is how to evaluate a system that you are developing. It is a little hard to read, but the excel formulas are worth it.
It covers the essetials of a good trading system (entry, exit and money management) and explains why not all good trading systems are profitable. (All profitable trading systems must be good first).
professional methodology of systems dvelopment.......2005-06-08
Very good book for serious system developers. Most books on the topic present a system, optimize it so it fits a particular market, show couple of very convincing graphs and voila, here is the contribution to the trading science.
In this book the author presents system development in the context of portfolio trading: a robust system should work in a variety of markets. Stridsman takes you through his process of testing a system, from setting the data, to performance measures. Results of his systems, by the way, are not "fantastic", and that for me adds credibility. Analysis of his systems is done in a statistical manner, so that all aspects of a system are set up using statistical methodology, as opposed to conventional wisdom. A lot of work is also done in an attempt to introduce some degree of predictability in the author's trading approach. Aspects of system design are discussed in sophisticated detail: MAE, MFE, kurtosis, different types of drawdown, trade efficiency etc.
His optimization techiques are interesting. This is the first time I have seen the use of surface graphs to present two-variable optimization.
Not once in this book I have sensed an advertisement for the author's methods. The author simply discusses his approach. There is no hype, exclamation marks. The book is very concentrated and packed with ideas, which can be applied to any other system or markets. I don't think it would be possible to make it any shorter.
Good value for money if you like quantitative approach to trading.
Trading systems that confuse.......2004-10-13
If you're building a computer based trading system, this title offers some interesting insight. There are several example trading systems that implement commonly used system features, and these systems are analyzed and commented on. But this is far from a blueprint--the methods used are too rough to actually use as defined, and the descriptions are very confusing in many places. Included TradeStation code is a bit easier than most to understand, but that's not saying much. Every time I read this book, I feel like my time would be better spent reviewing Conway & Behle's "Professional Stock Trading: System Design and Automation", which covers much of the same material but with considerably more coherance.
Book Description
Whether you're a new officer or in need of a mentor, From Buddy to Boss: Effective Fire Service Leadership, is a must-have management book you'll turn to over and over again. Fire service veteran Chase Sargent has taken his popular course and written a no-holds barred leadership book for the fire service in a conversational and easy-to-read style. He tells you how to accept and survive politics, deal with the fringe employees, and keep your cool -- tricks of the trade that usually takes years to acquire.
Average customer rating:
- Physical Security
- Effective Physical Security
- Excellent introduction for security new comers.
- Good introduction and reference to the subject
|
Effective Physical Security, Third Edition
Lawrence Fennelly
Manufacturer: Butterworth-Heinemann
ProductGroup: Book
Binding: Paperback
General
| Business & Investing
| Subjects
| Books
Management
| Management & Leadership
| Business & Investing
| Subjects
| Books
Production & Operations
| Management & Leadership
| Business & Investing
| Subjects
| Books
General
| Law
| Subjects
| Books
Law Enforcement
| Criminal Law
| Law
| Subjects
| Books
Criminology
| Crime & Criminals
| Nonfiction
| Subjects
| Books
Law Enforcement
| Criminal Law
| Law
| Professional & Technical
| Subjects
| Books
Look Inside Business Books
| Trip
| Specialty Stores
| Books
Look Inside Nonfiction Books
| Trip
| Specialty Stores
| Books
All Amazon Upgrade
| Amazon Upgrade
| Stores
| Books
Business & Investing
| Amazon Upgrade
| Stores
| Books
Law
| Amazon Upgrade
| Stores
| Books
Nonfiction
| Amazon Upgrade
| Stores
| Books
Professional & Technical
| Amazon Upgrade
| Stores
| Books
All Titles
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Business & Investing
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Nonfiction
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Professional
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Similar Items:
-
The Design and Evaluation of Physical Protection Systems
-
Risk Analysis and the Security Survey, Third Edition
-
Introduction to Security, Seventh Edition
-
Contemporary Security Management, Second Edition
-
Implementing Physical Protection Systems: A Practical Guide
ASIN: 0750677678 |
Book Description
Effective Physical Security, Third Edition is a best-practices compendium that details the essential elements to physical security protection. The book contains completely updated sections that have been carefully selected from the previous Butterworth-Heinemann publication, Handbook of Loss Prevention and Crime Prevention, 4E.
Designed for easy reference, the Third Edition contains important coverage of environmental design, security surveys, locks, lighting, CCTV as well as a new chapter covering the latest in physical security design and planning for Homeland Security. The new edition continues to serve as a valuable reference for experienced security practitioners as well as students in undergraduate and graduate security programs.
- Each chapter has been contributed to by top professionals in the security industry
- Over 80 figures illustrate key security concepts discussed
- Numerous appendices, checklists, and glossaries support the easy-to-reference organization
- Each chapter has been contributed to by top professionals in the security industry
- Over 80 figures illustrate key security concepts discussed
- Numerous appendices, checklists, and glossaries support the easy-to-reference organization
Customer Reviews:
Physical Security.......2007-07-13
This proved to be a concise, easy to read synopsis of most aspects of physical security.
Effective Physical Security.......2007-03-08
This is a great book! For those in Facilities security, physical security or responsible for the security of a community, this is a must read. Insightful! Helps you ask the right questions and points you to positive solutions.
Excellent introduction for security new comers........2005-09-13
The chapter on Crime Prevention by Environmental Design was worth the price of the book. Technical coverage of various physical design features (CCTV, alarms, lighting, etc) were sufficient. The book is an excellent reference for security new comers. I personally would like to see more specific treatment on various security scenarios such as warehouse, commercial buildings, etc. In general, I consider this a good buy.
Good introduction and reference to the subject.......2001-03-27
I'm not an expert in physical security--I like to think of myself in an expert in information security. An understanding of physical security topics is essential for an Infosec consultant, but consultants and CISSP test candidates looking for information on this subject don't really know where to turn.
This book was suggested to me by another CISSP and I found it useful. The book, which is really a set of essays by multiple authors, including Fennelly, is split into three sections: Design, Equipment, and Operations. It includes lengthy discussions of building construction, lighting and fencing, and far more about locks than I ever wanted to know. Many checklists on several different subject areas are included, although not all of the checklist items are necessarily explained somewhere in the book. Several very detailed glossaries are included, although they are unfortunately not listed in the table of contents or index.
The chapter "Electronic Access Control and System Integration" is good, but is lifted right out of another book I recommend, "The Book on Access Control," by Konicek and Little. The chapter "Physical Access Control for Computer Areas," taken from John M. Carroll's computer security text is excellent. I highly recommend the chapter "Approaches to Physical Security" by Gigliotti and Jason. Infosec professionals will feel at home with the discussion of threat analysis, planning, cost justification, and layering. Besides being a useful essay on physical security, there is a lot of value to the Infosec professional in learning how related disciplines approach similar problems.
Chapter 2, the author's 11-page essay on conducting security surveys, is not only a useful guide to that subject, but it also contains wise advice that should be helpful for a professional in any discipline: "Only when you have developed the ability to visualize the potential for criminal activity will you become an effective crime scene surveyor." Overall, the book seems pretty solid, so I'm putting it on my must-buy list for security practitioners.
Book Description
By definition, information security exists to protect your organization's valuable information resources. But too often information security efforts are viewed as thwarting business objectives. An effective information security program preserves your information assets and helps you meet business objectives. Information Security Policies, Procedures, and Standards: Guidelines for Effective Information Security Management provides the tools you need to select, develop, and apply a security program that will be seen not as a nuisance but as a means to meeting your organization's goals. Divided into three major sections, the book covers: writing policies, writing procedures, and writing standards. Each section begins with a definition of terminology and concepts and a presentation of document structures. You can apply each section separately as needed, or you can use the entire text as a whole to form a comprehensive set of documents. The book contains checklists, sample policies, procedures, standards, guidelines, and a synopsis of British Standard 7799 and ISO 17799. Peltier provides you with the tools you need to develop policies, procedures, and standards. He demonstrates the importance of a clear, concise, and well-written security program. His examination of recommended industry best practices illustrates how they can be customized to fit any organization's needs. Information Security Policies, Procedures, and Standards: Guidelines for Effective Information Security Management helps you create and implement information security procedures that will improve every aspect of your enterprise's activities.
Customer Reviews:
This book is truly a treasure of knowledge........2006-11-19
Information security policies and all of in this book. This is a great advice for business to start, continue, follow on their journey. Thomas has captured the essence of what the business of all levels want to know when it comes to developing IT policies and systems. This book is must read for all of business executive.
Good, but should have been edited.......2005-02-24
I just started developing InfoSec policies for my company, and was having a hard time getting started. The Web is filled with sample documents and articles for specific documents, but I needed a resource that assumed I was starting from scratch and would help me build up a good library of content to satisfy our auditors.
So I was a little excited to stumble across this book. It lays a good foundation for what's needed in a security policy library, and steps through the development of the major document types: policies, procedures, standards, and guidelines. It's filled with lots of samples, checklists, templates, and other starting points for everything I was looking for.
One glaring problem, though, which by itself drops the rating 1-2 stars: there is an embarrasingly high number of grammar, syntax, and occassionally even semantic, mistakes. Even though these kind of problems are one of my biggest pet peeves, I might overlook them ... except the author makes multiple statements about proofreading your work before submitting to management!! It seems pretty clear that the book was rushed to publication without a serious round of review (I wonder if I put more editorial time into this review than they did into the book...). Even though the book was written for techno-types, there is no excuse for such egregious errors.
Overall, though, this is a decent resource to help with infosec policy development. Just make sure it's not the only book you use. If they would issue an update, this would become a valuable addition to your library. However, the edition I purchased in Feb 2005 was released in 2002, so I wouldn't expect any updates soon.
Really good.......2004-11-25
Really good for anyone doing infosec policy dev.
this will save you a ton of time.
Excellent practical guidebook.......2004-06-19
This is the best book I've seen (so far!) about writing infosec policies and associated materials. Tom Peltier refers directly to the ISO 17799 structure and gives helpful advice on what to include under the ten sections. More than that, he guides the reader through the *process* of writing and implementing policies, even including a brief chapter on my own specialism, security awareness, and suggestions on writing style.
My main quibble with the book is its inconsistency in the level of detail e.g. 41 of the 191 main text pages are devoted to information classification. There are perhaps too many lists and tables for my liking, but these may be useful as reminders of things to include.
Overall, the book is helpful if you are about to write infosec policies and want to avoid some of the more common pitfalls.
Good book for Infosec Management.......2002-04-11
If you want to find out the relation between Policies, Procedures and Standards buy this book. Although the flow of text is somewhat discontinuous but the author clearly explains the underlying concepts. The examples are very illustrative and have a real world feel. The author has been on the frontlines (clearly evident throughout the text) and this distinguishes the book from rest in the pack. Very few books talk about ISO 17799 and BS7799 in detail. This book goes beyond just reproducing the standard and explains the positioning of such guidelines. The tables and checklists found in the appendices alone are worth many times the cost of the book.
Average customer rating:
- So You'd Like to Learn How Security Works in the Corporate World.
- A must-read for every Security Manager/Executive
- Review by an Industry Professional
- An Excellent Primer on Security Management
- I can't believe this is one of the best!
|
Effective Security Management, Fourth Edition (Effective Security Management)
Charles A. Sennewald
Manufacturer: Butterworth-Heinemann
ProductGroup: Book
Binding: Hardcover
General
| Business & Investing
| Subjects
| Books
Management
| Management & Leadership
| Business & Investing
| Subjects
| Books
Total Quality Management
| Management & Leadership
| Business & Investing
| Subjects
| Books
Manager's Guides to Computing
| Business & Culture
| Computers & Internet
| Subjects
| Books
General
| Computers & Internet
| Subjects
| Books
Law Enforcement
| Criminal Law
| Law
| Subjects
| Books
Sociology
| Social Sciences
| Nonfiction
| Subjects
| Books
| AIDS
| Abuse
| Adults
| Aging
| Children
| Class
| Communities
| Culture
| Death
| General
| History
| Leisure
| Marriage & Family
| Medicine
| Men
| Occupational
| Race Relations
| Religion
| Research & Measurement
| Rural
| Social Groups
| Social Situations
| Social Theory
| Suburban
| Urban
| Women
Law Enforcement
| Criminal Law
| Law
| Professional & Technical
| Subjects
| Books
Look Inside Business Books
| Trip
| Specialty Stores
| Books
Look Inside Computer Books
| Trip
| Specialty Stores
| Books
Look Inside Nonfiction Books
| Trip
| Specialty Stores
| Books
All Amazon Upgrade
| Amazon Upgrade
| Stores
| Books
Business & Investing
| Amazon Upgrade
| Stores
| Books
Computers & Internet
| Amazon Upgrade
| Stores
| Books
Law
| Amazon Upgrade
| Stores
| Books
Nonfiction
| Amazon Upgrade
| Stores
| Books
Professional & Technical
| Amazon Upgrade
| Stores
| Books
All Titles
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Business & Investing
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Computers & Internet
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Nonfiction
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Professional
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Similar Items:
-
Risk Analysis and the Security Survey, Third Edition
-
Introduction to Security, Seventh Edition
-
Security and Loss Prevention
-
The Design and Evaluation of Physical Protection Systems
-
Handbook of Loss Prevention and Crime Prevention, Fourth Edition
ASIN: 0750674547 |
Book Description
This latest edition of
Effective Security Management retains the qualities that made the previous editions a standard of the profession: a readable, comprehensive guide to the planning, staffing, and operation of the security function within an organization. All chapters are completely updated with the focus on practical methods that the reader can put to use in managing an effective security department.
The Fourth Edition covers current computer applications that can help in the administrative, managerial, and supervisory aspects of the security function. In addition, two new chapters address employee management in detail. The first, Lifestyle Management for Managers, will discuss motivation at work: the how, when, where, what and why of self-motivation for the boss. The second, The Departing Employee, will discuss the exit interview and the information that can be gained in that process.
Also, back by popular demand, are the author's "Jackass Management Traits," 32 humorous portrayals of negative management traits that illustrate very real problems that can undermine the effectiveness of supervisors and managers.
* Includes a new chapter on the use of statistics as a security management tool
* Contains complete updates to every chapter while retaining the outstanding organization of the previous editions
* Recommended reading for The American Society for Industrial Security's (ASIS) Certified Protection Professional (CPP) exam
Customer Reviews:
So You'd Like to Learn How Security Works in the Corporate World........2006-12-31
By: Jeffrey W. Bennett, ISP. Founder of Laymentor and author of various ISP review study materials and the novel "Under the Lontar Palm" (see my profile for more).
Frankly this is an excellent book that teaches the tremendous role security plays. Contrary to some corporate environments, this book teaches that security should not be run from the background. Mr. Sennewald does an excellent job of demonstrating how security should be conducted in a corporate environment. For most, the lessons taught here will involve a change in culture that is desperately needed to allow the security function at an executive level position and allow the security executive to function at all levels.
The first chapters consider the security professional and the roles, structure and environment of the security organization at all levels of a corporate structure. The rest of the book shows how to conduct security surveys and perform risk analysis. It also spends considerable time teaching security as a profession and is heavy into how leaders should lead and conduct themselves professionally. Quality work!
After many years of working in the government, I had been looking for the ultimate "how to" book of how security should be structured. This book gets it and teaches it well.
If you are looking for a study aid for the CPP, ISP or other security certification, add this to your library.
A must-read for every Security Manager/Executive.......2005-08-08
Rarely have I read a book that so clearly reflects the author's obvious knowledge, understanding and personal hands-on experience in the subject of which he writes. What I found particularly refreshing is that Mr. Sennewald, unlike so many other authors of professional publications, succeeded in effectively conveying his messages in simple yet precise English. Read it once and you understand.
Security management is an ongoing process. My recommendation to every security manager or executive is to use this comprehensive publication to supplement, revise, update, and fine-tune his or her organization's security related programs, policies, and procedures. Understanding and following the contents of Mr. Sennewald's book will undoubtedly improve the reader's security management skills.
Review by an Industry Professional.......2005-07-07
The latest edition of Effectiv Security Management is an invaluable reference for new security managers and a good tool for the experienced security professional. The book begins with the 30,000 foot view then quickly focuses on each aspect
of security management.
The reader gets a valuable perspective on corporate culture and the role of each member of the security team, along with good checklist for hiring new employees and creating job descriptions.
The book does a good job of explaining on-the-job training and methods for discipline, motivation and promotions.
The book also covers the role of security communications within the company. The book covers techniques for managing the security department by defining methods for risk assessment, planning and budgeting with good examples. The book explains the importance of written policies and procedures and provides techniques for applying computer technology to department management along with ways to employ statistical analysis in managing a security department.
There is an excellent section on relationships with Law Enforcement, industry and the community in this book. The most amusing and insightful section was "Jackass Management". The reader is certain to find examples of management types they have experienced in the past and are likely to encounter in the future. The book is well written and well worth the time to read.
Michael Khairallah, PSP
Security Design Solutions
Covington LA
An Excellent Primer on Security Management.......2005-06-28
Mr. Sennewald continues to provide excellent commentary on becoming an effective security manager. This book should be helpful to those beginning a career in security management. It provides thoughtful insight into the many issues a new manager faces. For those already working in security management, the book provides a concise guide to what works. The chapter on computers is one of the few places where a more complete discussion would be welcome, as it is too simplistic.
I can't believe this is one of the best!.......2003-05-01
While Effective Security Management provides a reasonable, high-level look at security management and all of its aspects, I found it to be remedial and insufficient. I own it as a textbook for a graduate course, and many of my classmates agree that you could read the end summary of each chapter to get all of the information of interest.
Beyond that, I was disappointed with the tone and messaging for many parts of the book. At times, examples in the book appear rather sexist in nature, often referring to things that women tend to do wrong. The same also goes for references to people living alternative lifestyles. The book also makes references to moral issues when it would be more appropriate to talk about ethics.
Finally, the 'new' computer section is woefully dated and inadequate. Sennewald may feel that it's necessary to include some high level review of different computer components, but this knowledge doesn't really help manage computer security, and the approach puts computer and information security as mere afterthoughts to an overall security management approach.
Unfortunately, this book is currently seen as one of the best books in the field. So, if you have to read it, make sure to do so with caution and supplement the material with other sources.
Average customer rating:
- Great book overall but...
- Excellent book for those interested in internet security
- Execllent!
- Insightful and Informative
- Counter Hack this Book
|
Counter Hack: A Step-by-Step Guide to Computer Attacks and Effective Defenses
Ed Skoudis
Manufacturer: Prentice Hall PTR
ProductGroup: Book
Binding: Paperback
Encryption
| Security & Encryption
| Web Development
| Computers & Internet
| Subjects
| Books
Privacy
| Business & Culture
| Computers & Internet
| Subjects
| Books
Hacking
| Business & Culture
| Computers & Internet
| Subjects
| Books
Security
| Business & Culture
| Computers & Internet
| Subjects
| Books
Network Security
| Networking
| Computers & Internet
| Subjects
| Books
General
| Networks, Protocols & APIs
| Networking
| Computers & Internet
| Subjects
| Books
General
| Programming
| Computers & Internet
| Subjects
| Books
General
| Computers & Internet
| Subjects
| Books
Engineering
| Professional & Technical
| Subjects
| Books
| Aerospace
| Automotive
| Bioengineering
| Chemical
| Civil
| Computer Technology
| Design
| Economics
| Education
| Electrical & Electronics
| Energy
| General
| Industrial, Manufacturing & Operational Systems
| Management
| Marine
| Materials
| Materials Science
| Mechanical
| Nuclear
| Patents & Inventions
| Petroleum, Mining & Geological
| Power Systems
| Reference
| Research
| Special Topics
| Telecommunications
| Welding
Engineering
| Specialty Stores
| Books
| Aerospace
| Automotive
| Bioengineering
| Chemical
| Civil
| Computer Technology
| Design
| Economics
| Education
| Electrical & Electronics
| Energy
| General
| Industrial, Manufacturing & Operational Systems
| Management
| Materials
| Materials Science
| Mechanical
| Nuclear
| Patents & Inventions
| Petroleum, Mining & Geological
| Power Systems
| Reference
| Research
| Special Topics
| Telecommunications
| Welding
All Titles
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Computers & Internet
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Professional
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Similar Items:
-
Malware: Fighting Malicious Code
-
Real Digital Forensics: Computer Security and Incident Response
-
Gray Hat Hacking : The Ethical Hacker's Handbook
-
Google Hacking for Penetration Testers, Volume 1
-
File System Forensic Analysis
ASIN: 0130332739 |
Amazon.com
In defending your systems against intruders and other meddlers, a little knowledge can be used to make the bad guys--particularly the more casual among them--seek out softer targets. Counter Hack aims to provide its readers with enough knowledge to toughen their Unix and Microsoft Windows systems against attacks in general, and with specific knowledge of the more common sorts of attacks that can be carried out by relatively unskilled "script kiddies." The approach author Ed Skoudis has chosen is effective, in that his readers accumulate the knowledge they need and generally enjoy the process.
The best part of this book may be two chapters, one each for Windows and Unix, that explain the essential security terms, conventions, procedures, and behaviors of each operating system. This is the sort of information that readers need--a Unix person getting into Windows administration for the first time needs an introduction to the Microsoft security scheme, and vice versa. A third chapter explains TCP/IP with focus on security. With that groundwork in place, Skoudis explains how (with emphasis on tools) attackers look for vulnerabilities in systems, gain access, and maintain their access for periods of time without being discovered. You'll probably want to search online resources for more specific information--Skoudis refers to several--but this book by itself will provide you with the vocabulary and foundation knowledge you need to get the details you want. --David Wall
Topics covered: How black-hat hackers work, what tools and techniques they use, and how to assess and improve your systems' defenses. The author explains how Windows, Unix, and TCP/IP can be exploited for nefarious purposes, and details a modus operandi that's typical of the bad guys.
Customer Reviews:
Great book overall but..........2007-09-08
I can't argue with the fact that this is a great book to learn security. It also serves as a fantastic intro to networking with some really good insight into the interworkings of TCP/IP. One thing that is great about this book is the detail that the author goes into on each section. This should be required reading for all new security/network professionals. Its funny but the things that people take for granted that they know (foundational knowledge)are the very things that not many people in the field truly understand at a deep level. This book will help you to not be one of those people.
Only one real gripe - I know typos happen and errors are common in technical books BUT... in a chapter about TCP/IP to misspell the late Jon Postel's name is just unbelievable -- Wow. (p.32)
Excellent book for those interested in internet security.......2007-07-09
This book has done a great job at informing readers of network security. After supplying a little OS and networking background information the author composes the information in a way that an attacker would view it so the reader can get inside the mind of an intruder. I would highly recommend this book to anyone interested in how attacks are executed.
Execllent!.......2007-01-30
This book does not tell you how to use hacking-tools, but It teachs you how the tools work!
Insightful and Informative.......2006-12-04
As a student studying information technology with goals of having a career in the information systems security field, Mr. Skoudis' book "Counter Hack Reloaded" provides me with an amazing resource that is helping me obtain the knowledge and skills I need to succeed in the Infosec field. His book is insightful and explains the complexity and workings of varius threats and risks to our networks and computer systems in a way that makes them easy to understand. The steps attackers usually take are broken down and analyzed along with ways to secure your systems from such attacks.
The book is broken down into different phases after the few first chapters go over the basics of networking and the major operating systems (Windows and Linux/Unix). Phase One covers Reconnaissance which includes tactics such as social engineering. Phase Two is scanning and the different methods of scanning networks, both wired and wireless. Phase Three covers gaining access to the network through attacks on applications, OSs, DoS attacks, and other network attacks. Phase Four covers maintaining access, which includes information on varius threats such as backdoors, trojans, rootkits, etc. Phase Five reviews covering one's tracks and hiding evidence of network intrusions, etc.
I recommend this book to anyone in my position of currently obtaining an education in any field having to deal with information systems. Even if security is not your main focus, the knowledge this book provides is valuable as a reference and as a way of better understanding the current threats to our organizations and the networks that make them up, both the technical and personnel networks.
Counter Hack this Book.......2006-09-17
Counter Hack
Reloaded
Second Edition
by
Ed Skoudis
with
Tom Liston
Published by Prentice Hall, December 2005
ISBN 0-13-148104-5
This book is an absolute must have for every security professionals bookshelf. If you are new to the arena of Information Systems Security or a CISSP this book leads you down some extremely interesting vulnerability protection paths. Ed Skoudis gives an exhaustive look into the mind and intentions of the "Nasties" out there and how to protect yourself and your network from them.
The chapters are well laid out and each builds on the knowledge from the previous chapter(s). The Table of Contents allows for easy reference back to a specific chapter for later the material is cutting edge and well explained with references to additional material online.
All in all a very insightful book that made me double check all of my firewalls and filesystem protection methods and apply some of the knowledge learned.
Average customer rating:
|
Practical Techniques for Effective Project Investment Appraisal (A Hawksmere Report)
Ralph Tiffin
Manufacturer: Thorogood Publishing
ProductGroup: Book
Binding: Paperback
General
| Popular Economics
| Business & Investing
| Subjects
| Books
General
| Business & Investing
| Subjects
| Books
General
| Investing
| Business & Investing
| Subjects
| Books
Project Management
| Management & Leadership
| Business & Investing
| Subjects
| Books
Look Inside Business Books
| Trip
| Specialty Stores
| Books
All Titles
| Qualifying Textbooks - Fall 2007
| Stores
| Books
ASIN: 1854180991 |
Book Description
Spending money on projects automatically necessitates an effective appraisal system--a way of telling if the correct decisions on investment have been made. Has your company got such a system?
The text contains many examples of appraisal process spreadsheets, designed to be of practical use in your business. In addition, detailed checklists mean you won't overlook any factors during the appraisal process.
Book Description
This timely and comprehensive guide is designed to meet the security response needs of both educators and law enforcement personnel by detailing how an effective response plan can be developed to deal with the issue of school violence. By implementing the guidelines detailed in this book, those in responsible positions can help prevent the incalculable costs of death, facility destruction, disruption of operations, negative public perception, and the resulting embarrassment that these acts cause. The information presented will help reduce the amount of collateral damage to the threat area and adjacent areas. It is designed to expand the effectiveness and performance of special response police forces, fire department personnel, medical aid personnel and ancillary support personnel, as well as provide a comprehensive guide to school administrators and other educators who are concerned with school safety issues. The main idea behind this book is the principle of "saving lives when all other proactive means have failed." It focuses on the elements of rapid containment, area control, and the re-securing of the affected area. The author emphasizes that time is an essential factor: the longer the perpetrators remain active, the higher the likelihood that additional people will be killed. In addition, the book is designed to generate a detailed analysis of possible contingency plans for respective emergency responders. An analysis is also included that is site specific and which will help to streamline the planning efforts of all emergency responders, thus heightening personnel survivability and mission success. It is a must-read for those who are responsible for school safety and security.
Average customer rating:
- Perfect Guide For New Security Manager
|
The Effective Security Supervision Manual
Ralph Brislin
Manufacturer: Butterworth-Heinemann
ProductGroup: Book
Binding: Paperback
General
| Business & Investing
| Subjects
| Books
General
| Industries & Professions
| Business & Investing
| Subjects
| Books
Social Services & Welfare
| Poverty
| Current Events
| Nonfiction
| Subjects
| Books
Sociology
| Social Sciences
| Nonfiction
| Subjects
| Books
| AIDS
| Abuse
| Adults
| Aging
| Children
| Class
| Communities
| Culture
| Death
| General
| History
| Leisure
| Marriage & Family
| Medicine
| Men
| Occupational
| Race Relations
| Religion
| Research & Measurement
| Rural
| Social Groups
| Social Situations
| Social Theory
| Suburban
| Urban
| Women
Law Enforcement
| Criminal Law
| Law
| Subjects
| Books
Law Enforcement
| Criminal Law
| Law
| Professional & Technical
| Subjects
| Books
All Amazon Upgrade
| Amazon Upgrade
| Stores
| Books
Business & Investing
| Amazon Upgrade
| Stores
| Books
Law
| Amazon Upgrade
| Stores
| Books
Nonfiction
| Amazon Upgrade
| Stores
| Books
Professional & Technical
| Amazon Upgrade
| Stores
| Books
All Titles
| Qualifying Textbooks - Fall 2007
| Stores
| Books
Similar Items:
-
Effective Security Officer's Training Manual, Second Edition
-
Practical Security Training
-
The Protection Officer's Training Manual, Seventh Edition
ASIN: 0750696117 |
Book Description
Supervision is the cornerstone of good management. Security personnel are often promoted to supervision positions as a result of having performed successfully in their roles as a security officers. This practical manual provides new or experienced security supervisors with the essential tools and skills which will allow them to be more successful in supervising security officers and meeting the objectives of the organization.
Each chapter contains objectives, glossary, summary, questions and practical exercises which are designed to reinforce learning.
Contains sample job descriptions and performance evaluations.
Perfect for both new and experienced security advisors.
Customer Reviews:
Perfect Guide For New Security Manager.......2002-02-03
This book was,and still is a big help to me, being a new Security Manager. It's full of information and criteria one can use to evaluate other security officers. Good information on what to do, and to avoid. I have found this book to be most informative and helpful.
Books:
- Energy Autonomy: The Economic, Social and Technological Case for Renewable Energy
- Every Landlord's Tax Deduction Guide
- Fire Service Personnel Management (2nd Edition)
- First Amendment Law (University Casebook Series)
- FLIP: How to Find, Fix, and Sell Houses for Profit
- Gender Inequality: Feminist Theories and Politics, Third Edition
- Havana Style (Icons)
- History: Fiction or Science? (Chronology, No. 1)
- History: Fiction or Science? (Chronology, No. 1)
- History: Fiction or Science? (Chronology, No. 1)
Books Index
Books Home
Recommended Books
- Wall Street Meat: My Narrow Escape from the Stock Market Grinder
- Standing On The Promises : A Handbook Of Biblical Childrearing
- Mechanics in Biology: Presented at the 2000 Asme International Mechanical Engineering Congress and E
- New International Dictionary of the Christian Church, The
- Rene Magritte: Catalogue Raisonne - Supplement, Bibliography, Indexes
- The 21 Irrefutable Laws of Leadership
- String Figures and How to Make Them: A Study of Cat's Cradle in Many Lands
- Beauty and the Contemporary Sublime
- Magnetic Los Angeles: Planning the Twentieth-Century Metropolis
- National Geographic Society: 100 Years of Adventure and Discovery