Ir al contenido

Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis
Foto de archivo: la portada puede ser diferente

Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis Tapa dura - 2015 - 1st Edición

de Tony Ucedavelez; Marco M. Morana


Información de la editorial

This book introduces the Process for Attack Simulation & Threat Analysis (PASTA) threat modeling methodology. It provides an introduction to various types of application threat modeling and introduces a risk-centric methodology aimed at applying security countermeasures that are commensurate to the possible impact that could be sustained from defined threat models, vulnerabilities, weaknesses, and attack patterns.

This book describes how to apply application threat modeling as an advanced preventive form of security. The authors discuss the methodologies, tools, and case studies of successful application threat modeling techniques. Chapter 1 provides an overview of threat modeling, while Chapter 2 describes the objectives and benefits of threat modeling. Chapter 3 focuses on existing threat modeling approaches, and Chapter 4 discusses integrating threat modeling within the different types of Software Development Lifecycles (SDLCs). Threat modeling and risk management is the focus of Chapter 5. Chapter 6 and Chapter 7 examine Process for Attack Simulation and Threat Analysis (PASTA). Finally, Chapter 8 shows how to use the PASTA risk-centric threat modeling process to analyze the risks of specific threat agents targeting web applications. This chapter focuses specifically on the web application assets that include customer's confidential data and business critical functionality that the web application provides.

- Provides a detailed walkthrough of the PASTA methodology alongside software development activities, normally conducted via a standard SDLC process

- Offers precise steps to take when combating threats to businesses

- Examines real-life data breach incidents and lessons for risk management

Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis is a resource for software developers, architects, technical risk managers, and seasoned security professionals.

Descripción de contraportada

This book introduces the Process for Attack Simulation & Threat Analysis (PASTA) threat modeling methodology. It provides an introduction to various types of application threat modeling and introduces a risk-centric methodology aimed at applying security countermeasures that are commensurate to the possible impact that could be sustained from defined threat models, vulnerabilities, weaknesses, and attack patterns.

This book describes how to apply application threat modeling as an advanced preventive form of security. The authors discuss the methodologies, tools, and case studies of successful application threat modeling techniques. Chapter 1 provides an overview of threat modeling, while Chapter 2 describes the objectives and benefits of threat modeling. Chapter 3 focuses on existing threat modeling approaches, and Chapter 4 discusses integrating threat modeling within the different types of Software Development Lifecycles (SDLCs). Threat modeling and risk management is the focus of Chapter 5. Chapter 6 and Chapter 7 examine Process for Attack Simulation and Threat Analysis (PASTA). Finally, Chapter 8 shows how to use the PASTA risk-centric threat modeling process to analyze the risks of specific threat agents targeting web applications. This chapter focuses specifically on the web application assets that include customer's confidential data and business critical functionality that the web application provides.

  • Provides a detailed walkthrough of the PASTA methodology alongside software development activities, normally conducted via a standard SDLC process
  • Offers precise steps to take when combating threats to businesses
  • Examines real-life data breach incidents and lessons for risk management

Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysisis a resource for software developers, architects, technical risk managers, and seasoned security professionals.

Tony UcedaV�lez is CEO at VerSprite, an Atlanta based security services firm assisting global MNCs on various areas of cyber security, secure software development, threat modeling and security risk management. Tony has worked and led teams in the areas of application security, penetration testing, security architecture, and technical risk management for various organizations in Utility, Banking, Government, Retail, Healthcare, and Information Services.

Marco M Morana serves as Senior Vice President-Application Security Architect for CitiGroup, where he is responsible for managing the architecture risk analysis and threat modeling program globally and leads global initiatives to mitigate risks of emerging cyber-threats targeting web applications of institutional clients. Marco has designed and developed business critical security software products for several Fortune 500 companies, and also for NASA.

Detalles

  • Título Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis
  • Autor Tony Ucedavelez; Marco M. Morana
  • Encuadernación Tapa dura
  • Número de edición 1st
  • Edición 1
  • Páginas 696
  • Volúmenes 1
  • Idioma ENG
  • Editorial Wiley
  • Fecha de publicación 2015-05-26
  • ISBN 9780470500965 / 0470500964
  • Peso 2.35 libras (1.07 kg)
  • Dimensiones 9.3 x 6.2 x 1.6 pulgadas (23.62 x 15.75 x 4.06 cm)
  • Library of Congress subjects Risk assessment, Computer security
  • Número de catálogo de la Librería del Congreso de EEUU 2015000692
  • Dewey Decimal Code 658.470

Acerca del autor

Tony UcedaVlez is CEO at VerSprite, an Atlanta based security services firm assisting global MNCs on various areas of cyber security, secure software development, threat modeling and security risk management. Tony has worked and led teams in the areas of application security, penetration testing, security architecture, and technical risk management for various organizations in Utility, Banking, Government, Retail, Healthcare, and Information Services.

Marco M Morana serves as Senior Vice President-Application Security Architect for CitiGroup, where he is responsible for managing the architecture risk analysis and threat modeling program globally and leads global initiatives to mitigate risks of emerging cyber-threats targeting web applications of institutional clients. Marco has designed and developed business critical security software products for several Fortune 500 companies, and also for NASA.

Ir arriba

Más ejemplares

Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis
Foto de archivo: la portada puede ser diferente

Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis

de UcedaVelez, Tony; Morana, Marco M.

  • Usado
  • very good
  • First
Estado
Usado - Very Good
Edición
1
ISBN 10 / ISBN 13
9780470500965 / 0470500964
Cantidad disponible
1
Librería
Philadelphia, Pennsylvania, United States
Puntuación del vendedor:
Este vendedor ha conseguido 4 de las cinco estrellas otorgadas por los compradores de Biblio.
Precio
EUR 69.58
Envío gratuito a USA

Mostrar detalles

Descripción:
Wiley. 1. Very Good. Very Good. Ship within 24hrs. Satisfaction 100% guaranteed. APO/FPO addresses supported
Precio
EUR 69.58
Envío gratuito a USA
Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis

Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis

de Tony UcedaVelez

  • Nuevo
  • Tapa dura
Estado
New
Encuadernación
Hardcover
ISBN 10 / ISBN 13
9780470500965 / 0470500964
Cantidad disponible
10
Librería
Southport, Merseyside, United Kingdom
Puntuación del vendedor:
Este vendedor ha conseguido 5 de las cinco estrellas otorgadas por los compradores de Biblio.
Precio
EUR 110.65
EUR 11.77 enviando a USA

Mostrar detalles

Descripción:
Hardback. New. This book educates readers on how to apply application threat modeling as a more advanced preventive form of security, describing countermeasures to security threats.
Precio
EUR 110.65
EUR 11.77 enviando a USA
Risk Centric Threat Modeling � Process for Attack Simulation and Threat Analysis
Foto de archivo: la portada puede ser diferente

Risk Centric Threat Modeling � Process for Attack Simulation and Threat Analysis

de Morana, Marco/ Ucedavelez, Tony

  • Nuevo
  • Tapa dura
Estado
New
Encuadernación
Hardcover
ISBN 10 / ISBN 13
9780470500965 / 0470500964
Cantidad disponible
1
Librería
Exeter, Devon, United Kingdom
Puntuación del vendedor:
Este vendedor ha conseguido 4 de las cinco estrellas otorgadas por los compradores de Biblio.
Precio
EUR 140.65
EUR 11.83 enviando a USA

Mostrar detalles

Descripción:
John Wiley & Sons Inc, 2015. Hardcover. New. 1st edition. 696 pages. 10.00x6.50x1.50 inches.
Precio
EUR 140.65
EUR 11.83 enviando a USA
Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis
Foto de archivo: la portada puede ser diferente

Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis

de Ucedavelez

  • Nuevo
Estado
New
ISBN 10 / ISBN 13
9780470500965 / 0470500964
Cantidad disponible
81
Librería
Victoria, British Columbia, Canada
Puntuación del vendedor:
Este vendedor ha conseguido 5 de las cinco estrellas otorgadas por los compradores de Biblio.
Precio
EUR 136.79
EUR 14.13 enviando a USA

Mostrar detalles

Descripción:
Wiley. New. Special order direct from the distributor
Precio
EUR 136.79
EUR 14.13 enviando a USA
Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis
Foto de archivo: la portada puede ser diferente

Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis

de UcedaVelez, Tony; Morana, Marco M

  • Nuevo
  • Tapa dura
Estado
New
Encuadernación
Hardcover
ISBN 10 / ISBN 13
9780470500965 / 0470500964
Cantidad disponible
5
Librería
campbelltown, Florida, United States
Puntuación del vendedor:
Este vendedor ha conseguido 1 de las cinco estrellas otorgadas por los compradores de Biblio.
Precio
EUR 140.43
EUR 14.14 enviando a USA

Mostrar detalles

Descripción:
Wiley. hardcover. New. 6x1x9. Brand New Book in Publishers original Sealing
Precio
EUR 140.43
EUR 14.14 enviando a USA
Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis
Foto de archivo: la portada puede ser diferente

Risk Centric Threat Modeling: Process for Attack Simulation and Threat Analysis

de UcedaVelez, Tony; Morana, Marco M

  • Usado
  • good
  • Tapa dura
Estado
Usado - Good
Encuadernación
Hardcover
ISBN 10 / ISBN 13
9780470500965 / 0470500964
Cantidad disponible
2
Librería
Franklin Lakes, New Jersey, United States
Puntuación del vendedor:
Este vendedor ha conseguido 5 de las cinco estrellas otorgadas por los compradores de Biblio.
Precio
EUR 165.96
EUR 3.68 enviando a USA

Mostrar detalles

Descripción:
Wiley, 2015-05-26. Hardcover. Good. Textbook, May Have Highlights, Notes and/or Underlining, BOOK ONLY-NO ACCESS CODE, NO CD, Ships with Tracking
Precio
EUR 165.96
EUR 3.68 enviando a USA