Master the essentials of computer security with a practical, federal-focused handbook. This guide explains how security fits into an organization’s mission, how to manage risk, and how to plan for incidents and continuity.
The book presents CSL research and guidelines for federal agencies, as well as for organizations in industry, government, and academia. It outlines a comprehensive approach to protecting sensitive information, spanning policy, program management, risk assessment, and operational controls. The material is organized around clear concepts, roles, and interdependencies that help readers build effective security programs.
- Understand how computer security supports an organization's mission and is integrated into sound management.
- Learn structured approaches to risk assessment, risk mitigation, and cost-conscious planning.
- Explore incident handling, awareness and training, and practical controls across people, processes, and technology.
- See how policy, life-cycle planning, monitoring, and compliance interrelate to sustain security over time.
Ideal for readers seeking a clear, actionable overview of how to design and oversee a comprehensive security program.