Items related to Cyber Security All-in-One, Volume 1: Foundations and...

Cyber Security All-in-One, Volume 1: Foundations and Threats: Security Principles, Threat Actors, Attack Lifecycles, Networks, Endpoints, ... Trust and Defensible Enterprise Architecture - Softcover

Book 1 of 4: Cyber Security All-in-One

London, Prof Kai

 
9798188194765: Cyber Security All-in-One, Volume 1: Foundations and Threats: Security Principles, Threat Actors, Attack Lifecycles, Networks, Endpoints, ... Trust and Defensible Enterprise Architecture

Synopsis

Security fails at the foundations, or it does not fail at all.



Volume 1 builds the complete mental model every practitioner needs: what the modern threat landscape actually is, how attacks really develop from reconnaissance to impact, and how principles like least privilege and defence in depth become engineering decisions a reviewer can inspect.



Twenty chapters carry you from core security principles through threat actors, social engineering, malware and vulnerability exploitation, into networks, segmentation, firewalls and detection, then operating systems, endpoints and virtualisation, then cryptography, PKI and key management — closing with threat modelling, secure design review and zero trust architecture.

Every chapter is built on a real incident


Colonial Pipeline told accurately, not as the myth. The expired certificate that blinded Equifax's inspection for seventy-six days. The deepfake video call that moved twenty-five million dollars. Change Healthcare's missing multi-factor authentication. Log4Shell, NotPetya, WannaCry — and the outage that proved availability is a security property.

Every chapter gives you something to use


  • In this chapter — what you will be able to do by the end of it

  • Opening scenario — a real-shaped organisation, under pressure, in real time

  • Plain-English explanation — the mechanism before the acronym, no assumed knowledge

  • Technical deep dive — engineer-grade depth you can act on

  • From the headlines — one verified public incident, separating confirmed fact from what is popularly misremembered

  • Controls and mitigations — what to do, and the evidence that proves you did it

  • The board translation — the same subject in money, liability and decision language

  • Practitioner checklist — take it into the office on Monday

  • Review questions — with answers that teach



Plus reference apparatus you will actually reopen


Nine original framework diagrams. A field toolkit of working templates. Worked technical examples — a STRIDE threat model, a firewall rule review, a TLS configuration review, a key rotation schedule. A glossary of over 130 terms. A page-accurate index.



Written for security engineers, network engineers, architects, consultants, technical managers, and anyone preparing for senior security roles.



Assume the breach. Prove the control. Command the response.

"synopsis" may belong to another edition of this title.