Chapter 1. Key Principles of Security

In this chapter: 
Understanding Risk Management3
Understanding Security8

Managing information security is difficult. To do it well requires a combination of technical, business, and people skills, many of which are not intuitive. The foundation of information security is risk management. Without a good understanding of risk management, it is impossible to secure any large modern network. More often than not, the failure of network administrators and managers to build a secure network results in the organization’s most closely held information being as secure as the lunch menu. Thus, either the lunch menu will be very secure, or the security of important information will be very weak. Neither situation is workable ...

Get Microsoft® Windows® Security Resource Kit, Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.