0%

Book Description

Build an effective vulnerability management strategy to protect your organization’s assets, applications, and data.

Today’s network environments are dynamic, requiring multiple defenses to mitigate vulnerabilities and stop data breaches. In the modern enterprise, everything connected to the network is a target. Attack surfaces are rapidly expanding to include not only traditional servers and desktops, but also routers, printers, cameras, and other IOT devices. It doesn’t matter whether an organization uses LAN, WAN, wireless, or even a modern PAN—savvy criminals have more potential entry points than ever before. To stay ahead of these threats, IT and security leaders must be aware of exposures and understand their potential impact.

Asset Attack Vectors will help you build a vulnerability management program designed to work in the modern threat environment. Drawing on years of combined experience, the authors detail the latest techniques for threat analysis, risk measurement, and regulatory reporting. They also outline practical service level agreements (SLAs) for vulnerability management and patch management.

Vulnerability management needs to be more than a compliance check box; it should be the foundation of your organization’s cybersecurity strategy. Read Asset Attack Vectors to get ahead of threats and protect your organization with an effective asset protection strategy.

What You’ll Learn

  • Create comprehensive assessment and risk identification policies and procedures
  • Implement a complete vulnerability management workflow in nine easy steps
  • Understand the implications of active, dormant, and carrier vulnerability states
  • Develop, deploy, and maintain custom and commercial vulnerability management programs
  • Discover the best strategies for vulnerability remediation, mitigation, and removal
  • Automate credentialed scans that leverage least-privilege access principles
  • Read real-world case studies that share successful strategies and reveal potential pitfalls

Who This Book Is For

New and intermediate security management professionals, auditors, and information technology staff looking to build an effective vulnerability management program and defend against asset based cyberattacks

Table of Contents

  1. Cover
  2. Frontmatter
  3. 1. The Attack Chain
  4. 2. The Vulnerability Landscape
  5. 3. Threat Intelligence
  6. 4. Credential Asset Risks
  7. 5. Vulnerability Assessment
  8. 6. Configuration Assessment
  9. 7. Risk Measurement
  10. 8. Vulnerability States
  11. 9. Vulnerability Authorities
  12. 10. Penetration Testing
  13. 11. Remediation
  14. 12. The Vulnerability Management Program
  15. 13. Vulnerability Management Design
  16. 14. Vulnerability Management Development
  17. 15. Vulnerability Management Deployment
  18. 16. Vulnerability Management Operations
  19. 17. Vulnerability Management Architecture
  20. 18. Sample Vulnerability Plan
  21. 19. Regulatory Compliance
  22. 20. Risk Management Frameworks
  23. 21. Making It All Work
  24. 22. Tales from the Trenches
  25. 23. Final Recommendations
  26. 24. Conclusion
  27. Backmatter
18.116.90.141