Information technology security audit guidebook for NIST SP 800-171 / (Record no. 20658)
[ view plain ]
000 -LEADER | |
---|---|
fixed length control field | 01899nam a2200229Ia 4500 |
003 - CONTROL NUMBER IDENTIFIER | |
control field | NULRC |
005 - DATE AND TIME OF LATEST TRANSACTION | |
control field | 20250520103003.0 |
008 - FIXED-LENGTH DATA ELEMENTS--GENERAL INFORMATION | |
fixed length control field | 250520s9999 xx 000 0 und d |
020 ## - INTERNATIONAL STANDARD BOOK NUMBER | |
International Standard Book Number | 9781726674904 |
040 ## - CATALOGING SOURCE | |
Transcribing agency | NULRC |
050 ## - LIBRARY OF CONGRESS CALL NUMBER | |
Classification number | QA 76.9.A93 .R87 2020 |
100 ## - MAIN ENTRY--PERSONAL NAME | |
Personal name | Russo, Mark A. |
Relator term | author |
245 #0 - TITLE STATEMENT | |
Title | Information technology security audit guidebook for NIST SP 800-171 / |
Statement of responsibility, etc. | Mark A. Russo |
250 ## - EDITION STATEMENT | |
Edition statement | Second Edition. |
260 ## - PUBLICATION, DISTRIBUTION, ETC. | |
Place of publication, distribution, etc. | Washington : |
Name of publisher, distributor, etc. | Syber-Risk.com, |
Date of publication, distribution, etc. | c2020 |
300 ## - PHYSICAL DESCRIPTION | |
Extent | 257 pages ; |
Dimensions | 21 pages. |
365 ## - TRADE PRICE | |
Price amount | USD31.5 |
505 ## - FORMATTED CONTENTS NOTE | |
Formatted contents note | For NIST 800-171 Security Auditors -- Elements of good Audit practice -- Current NIST 800+171 Contract direction and development -- Why pursue an expansion of NIST-based cybersecurity standards? -- People-Process-Technology PPT Model -- More about artifacts and POAMs -- All things considered -- How to use this book -- ACCESS CONTROL -- AWARENESS & TRAINING (AT) -- AUDIT AND ACCOUNTABILITY (AU) -- CONFIGURATION MANAGEMENT (CM) -- IDENTIFICATION AND AUTHENTICATION (IA) -- INCIDENT RESPONSE (IR) -- MAINTENANCE (MA) -- MEDIA PROTECTION (MP) -- PERSONNEL SECURITY (PS) -- PHYSICAL PROTECTION (PP) -- RISK ASSESSMENT (RA) -- SECURITY ASSESSMENT (SA) -- SYSTEM AND COMMUNICATIONS PROTECTION (SC) -- SYSTEM AND INFORMATION INTEGRITY (SI) -- CONSCLUSION. |
520 ## - SUMMARY, ETC. | |
Summary, etc. | This book is designed to walk the auditor through each of the 110 controls with a thorough understanding of whether a control is met or not. There is no "partial credit." While the process is subjective, the assessor must make a reasonable determination that the system owner understands and can demonstrate his company or agency's compliance with NIST 800-171. We include a compliance checklist designed to build out a record of the audit. This has been one of our most sought books on the evolving state of NIST 800-171. |
650 ## - SUBJECT ADDED ENTRY--TOPICAL TERM | |
Topical term or geographic name entry element | INFORMATION AUDITS |
942 ## - ADDED ENTRY ELEMENTS (KOHA) | |
Source of classification or shelving scheme | Library of Congress Classification |
Koha item type | Books |
Withdrawn status | Lost status | Source of classification or shelving scheme | Damaged status | Not for loan | Collection | Home library | Current library | Shelving location | Date acquired | Source of acquisition | Cost, normal purchase price | Total checkouts | Full call number | Barcode | Date last seen | Copy number | Price effective from | Koha item type |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Library of Congress Classification | Accountancy | LRC - Annex II | National University - Manila | General Circulation | 05/31/2022 | Purchased - Amazon | 31.50 | GC QA 76.9.A93 .R87 2020 | NULIB000018417 | 05/20/2025 | c.1 | 05/20/2025 | Books |