Security Monitoring: Proven Methods for Incident Detection on Enterprise Networks Chris Fry and Martin Nystrom
How well does your enterprise stand up against today’s sophisticated security threats? In this book, security experts from Cisco Systems demonstrate how to detect damaging security incidents on your global network–first by teaching you which assets you need to monitor closely, and then by helping you develop targeted strategies and pragmatic techniques to protect them.Security Monitoring is based on the authors’ years of experience conducting incident response to keep Cisco’s global network secure. It offers six steps to improve network monitoring. These steps will help you:Develop Policies: define rules, regulations, and monitoring criteriaKnow Your Network: build knowledge of your infrastructure with network telemetrySelect Your Targets: define the subset of infrastructure to be monitoredChoose Event Sources: identify event types needed to discover policy violationsFeed and Tune: collect data, generate alerts, and tune systems using contextual informationMaintain Dependable Event Sources: prevent critical gaps in collecting and monitoring eventsSecurity Monitoring illustrates these steps with detailed examples that will help you learn to select and deploy the best techniques for monitoring your own enterprise network. Categories:
Computers – Security
Year:
2009
Publisher:
O’Reilly Media
Language:
english
ISBN 10:
0596518161
ISBN 13:
9780596518165
File:
57 MB
Security Monitoring: Proven Methods for Incident Detection on Enterprise Networks
$15.99
Security Monitoring: Proven Methods for Incident Detection on Enterprise Networks
Authors: Chris Fry and Martin Nystrom
Year: 2009
Publisher: O’Reilly Media
Language: English
ISBN 13: 9780596518165
ISBN 10: 596518161
Categories: Computers, Security
Pages: 320 / 319
Edition:
Availability: 5000 in stock
Only logged in customers who have purchased this product may leave a review.
Reviews
There are no reviews yet.