Computers & Internet Books:

Nist 800-160

A Roadmap for 21st Century Systems Security Engineering Success
Click to share your rating 0 ratings (0.0/5.0 average) Thanks for your vote!

Format:

Paperback / softback
$71.99 was $89.99
Available from supplier

The item is brand new and in-stock with one of our preferred suppliers. The item will ship from a Mighty Ape warehouse within the timeframe shown.

Usually ships in 3-4 weeks

Buy Now, Pay Later with:

Afterpay is available on orders $100 to $2000 Learn more

Availability

Delivering to:

Estimated arrival:

  • Around 27 Jun - 9 Jul using International Courier

Description

NIST SP 800-160 AND SYSTEMS SECURITY ENGINEERING This is a 2021 re-release of the book focused on the balance between operations and security during the system development lifecycle. So why is secure system development so hard? It should not be difficult and should follow existing best practices that have been available for decades. It should follow the same path as normal software, hardware, or system development. At the core of the current break-down is the disconnect between security requirements, as formulated as a "security control," and the systems engineering process. Systems engineering is the foundation of all development efforts. It translates the sought general functionality into a technical specification. For example, a possible function for a modern-day tank is to fire a round for a "threshold" distance of 5 kilometers with and "objective" range of 6 kilometers. The Systems Engineer takes the base functional requirement of "shooting a high explosive round" to a specified and measurable distance. In the case of security, an example of a specified security control would state that all "data at rest be encrypted." The Systems Engineer would take this broad requirement and define it better with, for example, "employ a 256-bit AES symmetric encryption application." Unfortunately, this obvious connection typically does not occur-until the very end when the system is already built!NIST 800-160, Systems Security Engineering (SSE), provides the strategic overview of the SSE process; however, it fails to provide the pragmatic help and direction to users that desperately need better guidance than best practice suggestions. This is not a condemnation of NIST's excellent work in this area for years but is an unfortunate rebuke. NIST's works are too academic and strategic to be implemented by novice companies and agencies. This book is written to provide several major and minor tactical frameworks and approaches to include specifically the National Cybersecurity Framework (NCF) 1.1 and NIST 800-171 and 171A rev 1. It is designed to truly help businesses and agencies create a secure IT system, network, and environment.
Release date Australia
November 13th, 2018
Pages
158
Audience
  • General (US: Trade)
Illustrations
Illustrations, black and white
Dimensions
127x203x9
ISBN-13
9781731254870
Product ID
28846423

Customer reviews

Nobody has reviewed this product yet. You could be the first!

Write a Review

Marketplace listings

There are no Marketplace listings available for this product currently.
Already own it? Create a free listing and pay just 9% commission when it sells!

Sell Yours Here

Help & options

Filed under...