Skip to Content
Information Security and Privacy Quick Reference
book

Information Security and Privacy Quick Reference

by Mike Chapple, Joe Shelley, James Michael Stewart
June 2025
Intermediate to advanced
320 pages
8h 5m
English
Wiley
Content preview from Information Security and Privacy Quick Reference

CHAPTER 8Security Assessment and Testing

Maintaining a robust security posture requires continuous vigilance and proactive measures. As a security and privacy professional, your role involves not just implementing security controls but also ensuring their ongoing effectiveness. This chapter provides a comprehensive guide to security assessment and testing, essential practices that help you identify, evaluate, and mitigate vulnerabilities within your organization's IT environment.

By delving into this chapter, you will gain insights into building a structured security assessment and testing program that aligns with your organization's unique requirements. You will explore the intricacies of vulnerability management, understand the nature of security vulnerabilities, and learn how to conduct penetration testing to simulate real-world attacks. Additionally, the chapter covers the importance of testing software to uncover hidden flaws and the vital role of training and exercises in preparing your team for potential security incidents. By mastering these concepts, you will enhance your ability to safeguard your organization's assets, ensure compliance with regulatory standards, and ultimately protect sensitive information from malicious threats.

Building a Security Assessment and Testing Program

Building a comprehensive security assessment and testing program is fundamental for any information security team. This program ensures that an organization has adequate security controls ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

Computer and Information Security Handbook, 3rd Edition

Computer and Information Security Handbook, 3rd Edition

John R. Vacca
Practical Cyber Intelligence

Practical Cyber Intelligence

Adam Tilmar Jakobsen

Publisher Resources

ISBN: 9781394353316