Description
This is a book about network security and the CompTIA Security+ SY0-301 certification exam. It covers the basics of network security, including compliance and operational security, threats and vulnerabilities, application, data, and host security, access control and identity management, and cryptography. It also includes activities that link to the Information Security Community Site, which offers video lectures, podcats, discussion boards, additional hands-on activities and more to provide a wealth of resources and up-to-the minute information.
Reflecting the latest trends and developments from the information security field, best-selling Security+ Guide to Network Security Fundamentals, International Edition , provides a complete introduction to practical network and computer security and maps to the CompTIA Security+ SY0-301 Certification Exam. The text covers the fundamentals of network security, including compliance and operational security; threats and vulnerabilities; application, data, and host security; access control and identity management; and, cryptography. This updated edition includes new topics, such as psychological approaches to social engineering attacks, Web application attacks, penetration testing, data loss prevention, cloud computing security, and application programming development security. This new edition features activities that link to the Information Security Community Site, which offers video lectures, podcats, discussion boards, additional hands-on activities and more to provide a wealth of resources and up-to-the minute information.
Review:
1. Introduction to Security. 2. Malware and Social Engineering Attacks 3. Internet, Wireless, and Other Attacks. 4. Vulnerability Assessment and Mitigating Attacks 5. Data, Application, and Physical Security. 6. Securing the Host. 7. Network Security. 8. Network Security Protocols and Administering a Secure Network. 9. Wireless Network Security. 10. Access Control Fundamentals. 11. Authentication and Account Management. 12. Basic Cryptography. 13. Digital Certificates, PKI, and Transport Encryption. 14. Business Continuity. 15. Risk Mitigation and Awareness Training.