Critical Infrastructure Risk Assessment. Ernie Hayden, MIPM, CISSP, CEH, GICSP(Gold), PSP

Чтение книги онлайн.

Читать онлайн книгу Critical Infrastructure Risk Assessment - Ernie Hayden, MIPM, CISSP, CEH, GICSP(Gold), PSP страница 5

Critical Infrastructure Risk Assessment - Ernie Hayden, MIPM, CISSP, CEH, GICSP(Gold), PSP

Скачать книгу

rel="nofollow" href="#ulink_fd960cf6-6f2e-5182-b5be-ebc2bea212c1">3.6 Dynamic Risk Assessment

       3.7 Difference Between Assessment and Audit57

       3.8 Assessment Models

       3.8.1 ISO 31000

       3.8.2 NIST SP 800-30, R1 — Guide for Conducting Risk Assessments

       3.8.3 NIST SP 800-30, R0 — Risk Management Guide for Information Technology Systems

       3.8.4 Cyber Security Assessments of Industrial Control Systems — Good Practice Guide

       3.8.5 Hybrid Risk Assessment Flow Chart

       3.9 Assessment Process

       3.9.1 Pre-assessment/Planning

       3.9.2 Conducting the Assessment

       3.9.3 Reporting

       3.10 Questions for Further Thought and Discussion

       REFERENCES

       PART II HANDBOOK Chapter 4 Pre-Assessment

       In this chapter you will discover:

       4.1 Planning

       4.2 Identify Team Members

       4.3 Identify Assessment Goals

       4.4 Collect Artifacts, Templates, Preliminary Documentation

       4.5 Define the Assessment Plan

       4.6 Hold the Initial Team Meeting

       4.7 Client Kick Off Call

       4.8 Data Requests to Client

       4.9 Packing & Travel Planning

       4.10 Devising the Work Plan

       4.10.1 Example Site Risk Assessment Visit Plan

       4.10.2 Preparing Your Steno Pad

       4.10.3 Pre-Checking Control System Assets for Vulnerabilities

       4.11 Excited to Start the Assessment

       REFERENCES

       Chapter 5 The Power of the Observation

       In this chapter you will discover:

       5.1 An Introduction to the History of Observations

       5.2 Just What is an “Observation?”

       5.3 Observation Format

       5.4 Critical Thinking

       5.4.1 Asking “Why?”

       5.4.2 Communicating Your Observations

       5.4.3 Raising Issues

       5.5 Unintended Influence of the Observation on Performance of Work

       5.6 Writing the Observation

       5.7 The Power of the Observation

       REFERENCES

       Chapter 6 On Site

       In this chapter you will discover:

       6.1 On Site Arrival — Entrance Meeting

       6.2 Example Site Schedule and Activities

      

Скачать книгу