Role engineering for enterprise security management

著者

    • Coyne, Edward J.
    • Davis, John M.

書誌事項

Role engineering for enterprise security management

Edward J. Coyne, John M. Davis

(Artech House information security and privacy series / Rolf Oppliger)

Artech House, c2008

大学図書館所蔵 件 / 2

この図書・雑誌をさがす

注記

Includes bibliographical references and index

内容説明・目次

内容説明

Role engineering secures information systems. It ensures that every user has the right permission to access just the right information, computers, and networks. When hundred or thousands of computer users must be assigned their own individual access permission, role engineering saves significant time and money while protecting data and systems. This first-of-its-kind book illustrates the entire role engineering process, from project planning to deployment and verification. In addition to explaining technical aspects, the book emphasizes business benefits by showing how to manage risks and costs. Practitioners get proven techniques that define roles and ensure proper assignment of permissions and roles to users. The book also shows how to verify that roles comply with security policies.

目次

The Business Case for Role-Based Access Control. Role Engineering in the Phases of the System Development Life Cycle. Role Engineering and Why We Need It. Staffing for Role Engineering. Defining Good Roles. Two Approaches to Defining Roles. Designing the Roles. Engineering Permissions. Tools that Can Be Used to Assist the Role Engineering Process. Putting It All Together. What Others Have Been Doing. What Can Go Wrong and Why. Planning a Role Engineering Effort.

「Nielsen BookData」 より

関連文献: 1件中  1-1を表示

詳細情報

ページトップへ