This is the volume for three o'clock in the morning.
Twenty chapters on how organisations actually monitor, detect, hunt, investigate, contain and recover — and how they prove afterwards that they did the right thing.
It covers building and running a security operations centre, logging and telemetry engineering, SIEM architecture and cost control, SOAR and automation, endpoint and network detection, and SOC metrics that mean something. Then detection engineering and detection-as-code, behavioural analytics and insider risk, threat intelligence, ATT&CK coverage mapping and threat hunting. Then exposure: vulnerability and attack-surface management, penetration testing, red and purple teaming. And finally the full arc of response — readiness, triage, containment, digital forensics, ransomware and extortion, and crisis communication.
"synopsis" may belong to another edition of this title.
Seller: California Books, Miami, FL, U.S.A.
Condition: New. Print on Demand. Seller Inventory # I-9798188197636
Seller: PBShop.store UK, Fairford, GLOS, United Kingdom
PAP. Condition: New. New Book. Shipped from UK. Established seller since 2000. Seller Inventory # L2-9798188197636
Quantity: Over 20 available
Seller: CitiRetail, Stevenage, United Kingdom
Paperback. Condition: new. Paperback. This is the volume for three o'clock in the morning. Twenty chapters on how organisations actually monitor, detect, hunt, investigate, contain and recover - and how they prove afterwards that they did the right thing. It covers building and running a security operations centre, logging and telemetry engineering, SIEM architecture and cost control, SOAR and automation, endpoint and network detection, and SOC metrics that mean something. Then detection engineering and detection-as-code, behavioural analytics and insider risk, threat intelligence, ATT&CK coverage mapping and threat hunting. Then exposure: vulnerability and attack-surface management, penetration testing, red and purple teaming. And finally the full arc of response - readiness, triage, containment, digital forensics, ransomware and extortion, and crisis communication. Every chapter is built on a real incidentHow the SolarWinds campaign was actually discovered - an anomalous second device registration, noticed by an analyst. A shipping giant's ten-day global rebuild, saved by one domain controller in Ghana that happened to be offline. A casino group's hundred-million-dollar disclosure. A bank's clearing operation halted. A national library rebuilding from nothing, and publishing its own lessons. A file-transfer flaw that reached thousands of organisations through one supplier. A manufacturer that answered a ransomware attack with daily press briefings - and rebuilt its reputation while rebuilding its network. Every chapter gives you something to useA control room or bridge call under pressure, then the engineering behind itA controls-and-evidence table naming the auditable artefact for each controlThe board translation - what leadership must decide, and whenA practitioner checklist and review questions whose answers teachPlus reference apparatus you will actually reopenNine original framework diagrams. A field toolkit of working templates. Worked technical examples - a full detection rule specification with its false-positive profile, correlation logic for ransomware precursors, one alert triaged from raw telemetry to verdict, five incidents severity-classified, a forensic timeline with confidence ratings. A glossary of over 125 terms. A page-accurate index. Written for SOC analysts at every tier, detection engineers, threat hunters, incident responders, forensic practitioners, and the managers accountable for response. Assume the breach. Prove the control. Command the response. This item is printed on demand. Shipping may be from our UK warehouse or from our Australian or US warehouses, depending on stock availability. Seller Inventory # 9798188197636
Quantity: 1 available
Seller: AHA-BUCH GmbH, Einbeck, Germany
Taschenbuch. Condition: Neu. Neuware. Seller Inventory # 9798188197636
Quantity: 2 available