Skip to main content
  • Book
  • © 2016

Building a Comprehensive IT Security Program

Practical Guidelines and Best Practices

Apress

Authors:

  • Organizations continue to struggle with information security programs
  • This book will demystify a lot of concepts around building effective information security programs
  • This book will introduce concepts, ideas, and strategies that have been proven to be successful, but have not yet been published to a wide audience
  • Organizations spend hundreds of thousands of dollars for the intelligence and thought leadership that will be provided in the book
  • The book will cite historical examples and put the current situation in context in a way that it can be explained simply to people who may not be familiar with information security concepts

Buy it now

Buying options

eBook USD 39.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book USD 49.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Other ways to access

This is a preview of subscription content, log in via an institution to check for access.

Table of contents (12 chapters)

  1. Front Matter

    Pages i-xix
  2. The Problem We Are Facing

    • Jeremy Wittkop
    Pages 1-20
  3. Protecting Critical Assets

    • Jeremy Wittkop
    Pages 21-39
  4. Monetizing Risk

    • Jeremy Wittkop
    Pages 41-53
  5. Security Intelligence Model

    • Jeremy Wittkop
    Pages 55-72
  6. Incident Response Planning

    • Jeremy Wittkop
    Pages 73-87
  7. The People Problem

    • Jeremy Wittkop
    Pages 89-105
  8. Assigning Accountability

    • Jeremy Wittkop
    Pages 107-120
  9. Shifting the Paradigm

    • Jeremy Wittkop
    Pages 121-136
  10. The Definition of Insanity

    • Jeremy Wittkop
    Pages 137-152
  11. Deja Vu

    • Jeremy Wittkop
    Pages 153-165
  12. The Information Security Community

    • Jeremy Wittkop
    Pages 167-176
  13. Partnering with Governments

    • Jeremy Wittkop
    Pages 177-188
  14. Back Matter

    Pages 189-195

About this book

This book explains the ongoing war between private business and cyber criminals, state-sponsored attackers, terrorists, and hacktivist groups. Further, it explores the risks posed by trusted employees that put critical information at risk through malice, negligence, or simply making a mistake. It clarifies the historical context of the current situation as it relates to cybersecurity, the challenges facing private business, and the fundamental changes organizations can make to better protect themselves. The problems we face are difficult, but they are not hopeless.

Cybercrime continues to grow at an astounding rate. With constant coverage of cyber-attacks in the media, there is no shortage of awareness of increasing threats. Budgets have increased and executives are implementing stronger defenses. Nonetheless, breaches continue to increase in frequency and scope.

Building a Comprehensive IT Security Program shares why organizations continue to fail to securetheir critical information assets and explains the internal and external adversaries facing organizations today. This book supplies the necessary knowledge and skills to protect organizations better in the future by implementing a comprehensive approach to security.

Jeremy Wittkop’s security expertise and critical experience provides insights into topics such as:

  • Who is attempting to steal information and why?
  • What are critical information assets?
  • How are effective programs built?
  • How is stolen information capitalized?
  • How do we shift the paradigm to better protect our organizations?
  • How we can make the cyber world safer for everyone to do business?

Reviews

“This is an excellent book that covers all of the relevant topics needed for implementing a successful security program. The author clearly understands both security and business issues and explains the need for senior management involvement and how a security process must complement the overall business process. … The writing is clear and readable for nontechnical people. I highly recommend it to anyone interested in cyber security.” (Computing Reviews, May, 2017)

Authors and Affiliations

  • Boulder, USA

    Jeremy Wittkop

About the author

Jeremy Wittkop is a leader in the information security industry, specifically as it relates to content and context protection.  Jeremy brings insights from a variety of industries including, military and defense, logistics, entertainment, as well as information security services.

Jeremy started with Intelisecure as the leader of the Managed Services department and has overseen 1000% growth of that department by helping to solve complex Information Security challenges for organizations spanning the globe. Jeremy now leads Intelisecure's Sales Engineering team, which is responsible for architecting solution packages that include creative approaches to people, process, and technology.

Bibliographic Information

Buy it now

Buying options

eBook USD 39.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book USD 49.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Other ways to access