Book Image

The Cybersecurity Playbook for Modern Enterprises

By : Jeremy Wittkop
Book Image

The Cybersecurity Playbook for Modern Enterprises

By: Jeremy Wittkop

Overview of this book

Security is everyone's responsibility and for any organization, the focus should be to educate their employees about the different types of security attacks and how to ensure that security is not compromised. This cybersecurity book starts by defining the modern security and regulatory landscape, helping you understand the challenges related to human behavior and how attacks take place. You'll then see how to build effective cybersecurity awareness and modern information security programs. Once you've learned about the challenges in securing a modern enterprise, the book will take you through solutions or alternative approaches to overcome those issues and explain the importance of technologies such as cloud access security brokers, identity and access management solutions, and endpoint security platforms. As you advance, you'll discover how automation plays an important role in solving some key challenges and controlling long-term costs while building a maturing program. Toward the end, you'll also find tips and tricks to keep yourself and your loved ones safe from an increasingly dangerous digital world. By the end of this book, you'll have gained a holistic understanding of cybersecurity and how it evolves to meet the challenges of today and tomorrow.
Table of Contents (15 chapters)
1
Section 1 – Modern Security Challenges
5
Section 2 – Building an Effective Program
9
Section 3 – Solutions to Common Problems

What are we trying to accomplish?

Many organizations do security for security's sake. There is a legitimate higher purpose for what they should be doing, but if no one on the team knows the higher purpose, does it matter? It is important to ensure security teams have clarity of purpose. If they can connect their day-to-day work to a higher purpose, they are more likely to do a great job in protecting the organization. If they are going through mundane tasks with little understanding of why, they are more likely to make mistakes.

There are some specific pieces of information that the security leadership should be aware of. First is the relationship between cyber risk and business risk.

Cyber risk is business risk

Cyber risk is business risk. The reason cyber security matters is because it is designed to protect the organization from harm. If a system is breached or information is stolen, the impact is a business impact. If a negligent employee discloses regulated information...