The Practice of Network Security Monitoring: Understanding Incident Detection and Response

(No reviews yet) Write a Review
$13.61 - $48.59
UPC:
9781593275099
Binding:
Paperback
Publication Date:
2013-07-15
Release Date:
2013-07-15
Author:
Richard Bejtlich
Language:
english
Edition:
1

Warning:Codes/CDs/Accessories are not guaranteed for used books!

Product Overview

Network security is not simply about building impenetrable wallsdetermined attackers will eventually overcome traditional defenses. The most effective computer security strategies integrate network security monitoring (NSM): the collection and analysis of data to help you detect and respond to intrusions.

In The Practice of Network Security Monitoring, Mandiant CSO Richard Bejtlich shows you how to use NSM to add a robust layer of protection around your networksno prior experience required. To help you avoid costly and inflexible solutions, he teaches you how to deploy, build, and run an NSM operation using open source software and vendor-neutral tools.

You'll learn how to:
Determine where to deploy NSM platforms, and size them for the monitored networks
Deploy stand-alone or distributed NSM installations
Use command line and graphical packet analysis tools, and NSM consoles
Interpret network evidence from server-side and client-side intrusions
Integrate threat intelligence into NSM software to identify sophisticated adversaries

Theres no foolproof way to keep attackers out of your network. But when they get in, youll be prepared. The Practice of Network Security Monitoring will show you how to build a security net to detect, contain, and control them. Attacks are inevitable, but losing sensitive data shouldn't be.

Reviews

(No reviews yet) Write a Review