Ads by TechWords

See your link here
Receive the latest technology news and information.
Security
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
Cloud Computing
View all newsletters




Privacy Policy
 

Infosec books for IT managers

March 5, 2003 12:00 PM ET

Computerworld - There's a wealth of books for technologists, but there are few high-level books on security for managers. Here are my recommendations on titles that can help you better manage security systems in the enterprise.

Business-centric Titles


Most technology managers grew up in technology: They worked their way through the ranks in software development, systems administration or operations. While they're well versed in one particular technology, most don't have in-depth experience in all of the services for which they are now responsible. And many are weak in knowledge and skills related to the business they're supporting.


For IT managers new to the juncture of technology and business, I recommend Achieving Business Value from Technology: A Practical Guide for Today's Executive, by Tony Murphy (John Wiley and Sons, 2002). This pragmatic book presents the contribution of technology to business in easy-to-understand language. Managers who need to understand the link between business and technology should read Chapter 2, which describes "Five Pillars of Benefits Realization," paying close attention to the sections on "Strategic Alignment" and "Business Process Impact."


I say this because many people in IT organizations, especially younger managers who grew up in the drunken debauchery of the technology-centric 1990s, need to get their feet back on the ground and pay close attention to the value that technology plays in the success of the business.


Broad IT Security












Peter H. Gergory



For IT managers who want to dive headlong into security topics, I suggest Computer Security Handbook, edited by Seymour Bosworth and Michel E. Kabay (John Wiley and Sons, 2002). This book is a compilation of articles written by several individuals; what it lacks in flow and single-author consistency it makes up with a comprehensive array of topics.

Chapter 15, "Protecting the Information Infrastructure," provides a broad look at the basics for protecting a technology environment. However, just as there is no accounting for taste, professional knowledge and experience vary widely from one individual to the next, and out of 54 chapters, there are bound to be a few that are of particular value to technology managers.


Security Practices


IT managers who need to stay on top of the best current practices should consider The CERT Guide to System and Network Security Practices, by Julia Allen (Addison-Wesley, 2001). The reader will learn the steps that need to be taken to protect systems (which is what most IT managers need to know), but not the details, which are left for you to do, based on your operating system, applications and other specifics of your system.




Jump to comments

Security

Additional Resources

WHITE PAPER
Approximately 60 percent of data migration projects overrun time or budget, while some fail completely. Download this white paper, "Enhancing Your Chance for Successful Data Migration," to learn the critical steps you need to take to execute a data migration project with minimum cost and risk to your business.
WHITE PAPER
Read the Gartner research note to learn why the TCO of a server-based computing deployment used to deliver all applications to users is around 50% lower than that of an unmanaged desktop deployment.
WHITE PAPER
Economic downturns have a tendency to accelerate emerging technologies, boost the adoption of effective solutions, and punish solutions that are not cost competitive or that are out of synch with industry trends. This IDC White Paper presents the results of an IDC survey of 330 companies in Western Europe, Asia/Pacific and the Americas that measures the receptiveness to Linux and takes into consideration changing views driven by the disruptive economic environment that businesses face today.

White Papers & Webcasts

Share our Strength
Download Now  

Managing Secure File Transfer to Save Time, Money and IT Resources
Learn how companies are using innovative technology to overcome these challenges and improve user productivity by offloading e-mail attachments and replacing FTP with...

Security Convergence Equals Network Security Cost Savings
Listen to IBM Internet Security Systems' take on network security convergence.

Disaster Recovery 2008: Reduced Costs and Improved Performance
How long can your Enterprise afford to be without your data? With an accelerated disaster recovery program, you never have to answer this...