| 000 -LEADER |
| fixed length control field |
02095cam a22003257i 4500 |
| 001 - CONTROL NUMBER |
| control field |
19253598 |
| 003 - CONTROL NUMBER IDENTIFIER |
| control field |
OSt |
| 005 - DATE AND TIME OF LATEST TRANSACTION |
| control field |
20250925114232.0 |
| 008 - FIXED-LENGTH DATA ELEMENTS--GENERAL INFORMATION |
| fixed length control field |
160830s2016 caua 001 0 eng d |
| 010 ## - LIBRARY OF CONGRESS CONTROL NUMBER |
| LC control number |
2016952621 |
| 020 ## - INTERNATIONAL STANDARD BOOK NUMBER |
| International Standard Book Number |
9781484221396 (pbk.) |
|
| International Standard Book Number |
1484221397 (pbk.) |
| 035 ## - SYSTEM CONTROL NUMBER |
| System control number |
(OCoLC)ocn954429355 |
| 040 ## - CATALOGING SOURCE |
| Original cataloging agency |
KYU |
| Language of cataloging |
eng |
| Transcribing agency |
KYUL |
| Modifying agency |
KYUL |
| -- |
BDX |
| -- |
DLC |
| 042 ## - AUTHENTICATION CODE |
| Authentication code |
lccopycat |
| 050 00 - LIBRARY OF CONGRESS CALL NUMBER |
| Classification number |
QA76.9.A25 |
| Item number |
P656 2016 |
| 100 1# - MAIN ENTRY--PERSONAL NAME |
| Personal name |
Pompon, Raymond. |
| 245 10 - TITLE STATEMENT |
| Title |
IT security risk control management : |
| Remainder of title |
an audit preparation plan / |
| Statement of responsibility, etc. |
Raymond Pompon. |
| 246 3# - VARYING FORM OF TITLE |
| Title proper/short title |
I T security risk control management |
| 260 ## - PUBLICATION, DISTRIBUTION, ETC. (IMPRINT) |
| Place of publication, distribution, etc. |
[Berkeley, CA] : |
| Name of publisher, distributor, etc. |
Apress |
| Date of publication, distribution, etc. |
c2016. |
| 300 ## - PHYSICAL DESCRIPTION |
| Extent |
xxxi, 311 pages : |
| Other physical details |
illustrations ; |
| Dimensions |
26 cm |
| 500 ## - GENERAL NOTE |
| General note |
Includes index. |
| 505 0# - FORMATTED CONTENTS NOTE |
| Formatted contents note |
Part I: Getting a Handle on Things -- Chapter 1: Why Audit. Chapter 2: Assume Breach. Chapter 3: Risk Analysis: Assets and Impacts. Chapter 4: Risk Analysis: Natural Threats. Chapter 5: Risk Analysis: Adversarial Risk. Part II: Wrangling the Organization -- Chapter 6: Scope. Chapter 7: Governance. Chapter 8: Talking to the Suits. Chapter 9: Talking to the Techs. Chapter 10: Talking to the Users. Part III: Managing Risk with Controls -- Chapter 11: Policy. Chapter 12: Control Design. Chapter 13: Administrative Controls. Chapter 14: Vulnerability Management. Chapter 15: People Controls. Chapter 16: Logical Access Control. Chapter 17: Network Security Controls. Chapter 18: More Technical Controls. Chapter 19: Physical Security Controls. Part IV: Being Audited.-Chapter 20: Response Controls. Chapter 21: Starting the Audit. Chapter 22: Internal Audit. Chapter 23: Third Party Security. Chapter 24: Post Audit Improvement. |
| 650 #0 - SUBJECT ADDED ENTRY--TOPICAL TERM |
| Topical term or geographic name as entry element |
Information technology |
| General subdivision |
School of Pure and Applied Sciences |
| -- |
School of Pure and Applied Sciences |
| Source of heading or term |
Computer Science |
|
| Topical term or geographic name as entry element |
Computer security. |
| Source of heading or term |
Computer Science |
| General subdivision |
School of Pure and Applied Sciences |
| 906 ## - LOCAL DATA ELEMENT F, LDF (RLIN) |
| a |
7 |
| b |
cbc |
| c |
copycat |
| d |
2 |
| e |
epcn |
| f |
20 |
| g |
y-gencatlg |
| 942 ## - ADDED ENTRY ELEMENTS (KOHA) |
| Source of classification or shelving scheme |
|
| Koha item type |
Long Loan Book |