Drawing upon a wealth of experience from academia, industry, and government service, Cyber Security Policy Guidebook details and dissects, in simple language, current organizational cyber security policy issues on a global scale―taking great care to educate readers on the history and current approaches to the security of cyberspace. It includes thorough descriptions―as well as the pros and cons―of a plethora of issues, and documents policy alternatives for the sake of clarity with respect to policy alone. The Guidebook also delves into organizational implementation issues, and equips readers with descriptions of the positive and negative impact of specific policy choices. Inside are detailed chapters With a glossary that puts cyber security language in layman's terms―and diagrams that help explain complex topics― Cyber Security Policy Guidebook gives students, scholars, and technical decision-makers the necessary knowledge to make informed decisions on cyber security policy.
The title is misleading as the main theme is mostly policy at state level. Chapter 7, the USGOV approach to cyber security policy, better captures the purpose and target audience. Each chapter seems to be written by multiple different authors so they’re very uneven and disjointed. Chapter 3 and 4, aligning the policy with strategy and org goals were the most helpful for me. 3 stars for those chapters.
I believe the "policy" in the book's title is public policy. This book's audience isn't very clear, perhaps a subtitle would have helped the unwary buyer. I found the book largely unhelpful for policy development within a private corporation. Charles Cresson Woods book is much more useful and appropriate for such a setting, albeit very expensive. The multiple authorship leaves the book rather disjointed, a common issue with such works. I believe the book is meant for policy makers in the government setting, so those working in the beltway might find the book more helpful than those in the private sector.
Interesting subject matter, lots of information; but not an easy read for someone without prior IT knowledge. As an introduction into the subject matter, another book with less detailed information would probably have been a better choice for me.
Hält, was es verspricht. Gibt einen guten Überblick über die wichtigsten Themen rund um die Cybersicherheit und sollte ein Standardwerk für alle sein, die sich mit Cyberpolitik beschäftigen wollen. Als Nachschlagewerk wird es mir sicher noch lange Zeit von Nutzen sein!