The Practice Of Network Security Monitoring: Understanding Incident Detection And Response by Richard BejtlichThe Practice Of Network Security Monitoring: Understanding Incident Detection And Response by Richard Bejtlich

The Practice Of Network Security Monitoring: Understanding Incident Detection And Response

byRichard Bejtlich

Paperback | July 15, 2013

Pricing and Purchase Info

$40.70 online 
$52.95 list price save 23%
Earn 204 plum® points

Prices and offers may vary in store

Quantity:

In stock online

Ships free on orders over $25

Not available in stores

about

Network security is not simply about building impenetrable walls — determined attackerswilleventually overcome traditional defenses. The most effective computer security strategies integrate network security monitoring (NSM): the collection and analysis of data to help you detect and respond to intrusions.

InThe Practice of Network Security Monitoring, Mandiant CSO Richard Bejtlich shows you how to use NSM to add a robust layer of protection around your networks — no prior experience required. To help you avoid costly and inflexible solutions, he teaches you how to deploy, build, and run an NSM operation using open source software and vendor-neutral tools.

You'll learn how to:

  • Determine where to deploy NSM platforms, and size them for the monitored networks
  • Deploy stand-alone or distributed NSM installations
  • Use command line and graphical packet analysis tools, and NSM consoles
  • Interpret network evidence from server-side and client-side intrusions
  • Integrate threat intelligence into NSM software to identify sophisticated adversaries

There's no foolproof way to keep attackers out of your network. But when they get in, you'll be prepared.The Practice of Network Security Monitoringwill show you how to build a security net to detect, contain, and control them. Attacks are inevitable, but losing sensitive data shouldn't be.

Richard Bejtlich is Chief Security Officer at Mandiant and was previously Director of Incident Response for General Electric, where he built and led the 40-member GE Computer Incident Response Team (GE-CIRT). He is a graduate of Harvard University and the United States Air Force Academy. Bejtlich's previous works include The Tao of Net...
Loading
Title:The Practice Of Network Security Monitoring: Understanding Incident Detection And ResponseFormat:PaperbackDimensions:376 pages, 9.25 × 7.06 × 1.06 inPublished:July 15, 2013Publisher:No Starch PressLanguage:English

The following ISBNs are associated with this title:

ISBN - 10:1593275099

ISBN - 13:9781593275099

Look for similar items by category:

Reviews

Table of Contents

  • Dedication
  • Foreword
  • Preface
  • Getting Started
    • Chapter 1: Network Security Monitoring Rationale
    • Chapter 2: Collecting Network Traffic: Access, Storage, and Management
  • Security Onion Deployment
    • Chapter 3: Stand-alone NSM Deployment and Installation
    • Chapter 4: Distributed Deployment
    • Chapter 5: SO Platform Housekeeping
  • Tools
    • Chapter 6: Command Line Packet Analysis Tools
    • Chapter 7: Graphical Packet Analysis Tools
    • Chapter 8: NSM Consoles
  • NSM in Action
    • Chapter 9: NSM Operations
    • Chapter 10: Server-side Compromise
    • Chapter 11: Client-side Compromise
    • Chapter 12: Extending SO
    • Chapter 13: Proxies and Checksums
  • Conclusion
  • SO Scripts and Configuration
  • Colophon
  • Updates