Network Auditing: A Control Assessment Approach - Hardcover

Smith, Gordon E.

 
9780471179757: Network Auditing: A Control Assessment Approach

Inhaltsangabe

Protecting your corporation′s interconnected networks The first comprehensive book to take an in–depth look at intranets and the Internet from an audit and information systems perspective, Network Auditing delivers the advice, guidance, and tools necessary for properly securing interconnected networks. Packed with risk/control checklists and tables, it shows you how to pinpoint potential risks, create sound contingency plans, and implement strong security measures. Covering a wide range of essential topics, from carrier–related issues and communications alternatives to risk management and mitigation, this accessible and practical resource comes with a disk that contains auditing programs for either direct use or individual customization.

Die Inhaltsangabe kann sich auf eine andere Ausgabe dieses Titels beziehen.

Über die Autorin bzw. den Autor

GORDON E. SMITH is president of Canaudit Inc. With seventeen years of experience, he continues to audit complex technology and business applications, specializing in networks, information security, operating systems, and client/server environments. His work in integrated auditing has made the "Integrated Audit Workshop" the most successful seminar in the ten year history of Canaudit Inc. A member of the Information Systems Audit and Control Association, The Institute of Internal Auditors, and The Society of Management Accountants, he has been the keynote speaker at several international conferences.

Von der hinteren Coverseite

Protecting your corporation′s interconnected networks The first comprehensive book to take an in–depth look at intranets and the Internet from an audit and information systems perspective, Network Auditing delivers the advice, guidance, and tools necessary for properly securing interconnected networks. Packed with risk/control checklists and tables, it shows you how to pinpoint potential risks, create sound contingency plans, and implement strong security measures. Covering a wide range of essential topics, from carrier–related issues and communications alternatives to risk management and mitigation, this accessible and practical resource comes with a disk that contains auditing programs for either direct use or individual customization.

Aus dem Klappentext

Now part of almost every major corporation, interconnected networks offer staff members unlimited access to information, regardless of where it is stored. While these "open systems" make data easy to retrieve for those authorized to do so, it is also a simple matter for hackers and electronic espionage agents to obtain unauthorized entry to your critical data and programs or to take complete control of your network and the servers within it. In fact, so many poorly controlled dial–up and Internet connections are in existence that outsider access has never been so simple or network penetration risk so high. Written by Gordon Smith, a leading expert in the field, this groundbreaking new book–the first to take an in–depth look at intranets and the Internet from an audit and information systems perspective–shows you how to guard against potentially costly cyberhazards. With businesses focusing on getting interconnected systems up and running, they often overlook or mishandle the issue of network defenses. As Smith tells us, "Operating system controls in the UNIX, NT, and Novell environments in many corporations are so poor that they practically invite hackers to enter the network." Network Auditing provides the tools necessary to detect poorly secured network components and to install strong preventive measures to secure your network. It also provides a sound methodology and practical checklists to identify specific risks facing your network. With clear explanations and practical guidance, you′ll learn how to identify control issues with carriers, circuits, and routers; audit for cost and efficiency; use control techniques to provide a safe processing environment; apply a Committee of Sponsoring Organizations (COSO) report; and much more. In addition to helpful risk/control tables and checklists, here′s where you′ll find complete details on:
∗ Networks–early systems, impact of interconnected networks on business, interconnected audit time schedules, telecommunications glossary
∗ Carrier issues–critical process analysis, cost containment, network contracts
∗ Communications alternatives–wire line and broadcast–type circuits, laser and shared communications, integrated services digital networks
∗ Network operations and management–business continuance, disaster preparedness, maintenance, problem reporting and resolution
∗ Cataloging the network–cataloging the wide area network, servers and LANs, the Internet and other public networks
Accompanied by a disk that contains auditing programs for either direct use or individual customization, Network Auditing is essential reading for anyone responsible for safeguarding interconnected corporate systems.

„Über diesen Titel“ kann sich auf eine andere Ausgabe dieses Titels beziehen.