Articles With Just Good Information |
Stop Parking Domain Names Develop Your Domain Names |
|||||||
New Book Shows Software Developers The Key To Best Practice Application Security
Ely, England (PRWEB) April 16, 2008 -- As software applications are today the primary gateways to sensitive data, application security has according to Gartner become a top priority concern for CIOs. To help software developers ensure that best practice security is fully incorporated within their products, IT Governance has published 'Application Security in the ISO27001 Environment' (http://www.itgovernance.co.uk/products/1496). This practical guide explains how to use the global ISO27001 standard (http://www.itgovernance.co.uk/iso27001.aspx) to meet the increasingly rigorous security demands of the software application market, an important requirement for future commercial success. It is also of value to organisations that deploy applications, providing them with a clear explanation of the issues they must monitor.
Software applications have become integral to our personal and professional lives, facilitating everything from email and communications to personal finance and Internet shopping. They have therefore become a channel through which vast amount of sensitive data is passed, including financial and other personally identifiable information. To underpin their customer loyalty, reputations and brand value, companies and organisations must ensure that this data is secure and that their information systems are robust and dependable.
For this reason, CIOs and other budget holders now place far greater emphasis upon information security when making application procurement decisions. According to Deloitte's 2007 Global Security Survey, The Shifting Security Paradigm, 'generic countermeasures are no longer adequate' for ensuring application security. Meanwhile, in the same study, Deloitte found that 87 percent of respondents saw poor software development quality as a top threat facing them in the next 12 months.
'Application Security in the ISO27001 Environment' is written by Vinod Vasudevan, Anoop Mangla, Firosh Ummer, Sachin Shetty, Sangita Pakala and Siddharth Anbalahan. Together, the authors offer a wealth of expertise in ISO27001 information security, risk management and software application development. Over 224 pages, they address a range of essential topics, including an introduction to ISO27001 and ISO27002, secure development lifecycles, threat profiling and security testing, and secure coding guidelines. As well as showing how to use ISO27001 to secure individual applications, the book demonstrates how to tackle this issue as part of the development and roll out of an organisation-wide Information Security Management System conforming to the Standard (http://www.itgovernance.co.uk/bs7799.aspx).
'Application Security in the ISO27001 Environment' is priced at £39.95/$79.10/?51.94 and is available in hard copy (ISBN 978-1-905356-35-5) and e-book (ISBN 978-1-905356-36-2) formats. To purchase a copy for immediate despatch or download, visit http://www.itgovernance.co.uk/products/1496.
NOTES TO EDITORS
Media review copies are available upon request.
The authors of Application Security in the ISO27001 Environment:
? Vinod Vasudevan, CISSP, is the Director of Managed Risk Services at Paladion. He is the co-author of Enhancing Computer Security with Smart Technology, published by Auerbach. Prior to co-founding Paladion, Vinod worked with Microsoft. He wrote the chapter 'Application Security and ISO27001'.
? Anoop Mangla is a risk specialist in banking and finance. Previously with PCQuest, Anoop is an expert on the effectiveness of security technologies in an organisation's security. He wrote the chapter on 'Introduction to Application Security Threats'.
? Firosh Ummer, CISA, ISO27001 LA, CBCP, BS15000 LA, is co-founder of Paladion and head of the ISO27001 consulting practice. Firosh advises Fortune 500 companies on their ISMS strategy and helps them get certified to the new ISO standard. Firosh wrote the chapter 'Threat Profiling and Security Testing'.
? Sachin Shetty, CISSP, is a senior application security engineer with Paladion. Sachin's work on fighting keyloggers has been published in Securityfocus. Sachin wrote the chapter 'Attacks on Applications'.
? Sangita Pakala, GCIH, is Head of Application Security Projects at Paladion. She has had experience on more than 50 application security projects. Sangita is the lead author of the OWASP Application Security FAQ. Sangita's work was presented at RSA Conference 2006 and ISACA Europe 2005. She wrote the chapter 'Secure Development Lifecycle'.
? Siddharth Anbalahan is a senior application security engineer with experience of more than twenty penetration tests. Siddharth has developed anti-phishing toolkits to enable banks to detect phishing attacks in real time. He is the editor of Palisade, the application security magazine. Siddharth wrote the chapter 'Secure Coding Guidelines'.
IT Governance Ltd is the one-stop shop for books, tools, training and consultancy for Governance, Risk Management and Compliance. It is a leading authority on data security and IT governance for business and the public sector. IT Governance is 'non-geek', approaching IT issues from a non-technology background and talking to management in its own language. Its customer base spans Europe, the Americas, the Middle East and Asia. More information is available at www.itgovernance.co.uk.
###
This press release has been reprinted from PRWEB per the terms and conditions of the copyright notice.
Other Article Sites findabook.com moneycd.info a-mortgage.info
about-lemon-laws.info aboutstudentloans.info |
MORE ARTICLES: This Week on TelecomWeb's 'The Next Generation Contact Center Report': News Briefs and Feature Articles TelecomWeb's "The Next Generation Contact Center Report" (www.telecomweb.com/ccr) features free weekly news briefs and articles geared toward helping companies migrate effectively to an IP Contact Center environment.
This Week on TelecomWeb's "The Next Generation Contact Center Report": News Briefs and Feature Articles
News Article
Skincare-News.com's Latest Article Discusses Facial Peels and Skin Care
A Review of the Top Three MLM News Articles
New Free Information and Articles on Drug and Alcohol Addiction Presented by AddictionSearch.com
Pcapex Com Pc Hardware Reviews News Amp Mods Article
Construction Directory: News and Articles, Not Just Listings
Skincare-news.com Releases Safe Tanning Article: Skin Care Tips for Sunless-Tanning
This Week on TelecomWeb's 'The Next Generation Contact Center Report:' News Briefs and Feature Articles
Zillow Article Means Positive News For Investors Buying Memphis, Tennessee Real Estate
This Week on TelecomWeb's "The Next-Generation Contact Center Report" -- News Briefs and Feature Articles
Argumentative News Articles
Articles, Articles, and More Articles
Google News - Just another article announcer?
|
|||||||
| Develop Your Domain Names | Site Map | Home | ||||||||