Quotes
"...this is a top-down approach to securing an organisation, helping you to understand how all the pieces fit together...The people most likely to benefit...are IT staff who don’t necessarily have a great deal of experience in security." --Network Security,December1 2013
This work can best serve as a supplemental general resource to accompany a more-technical work on information security (IS)…overall, the text is well-written and engaging...Summing Up: Recommended" --CHOICE,August 1 2014
"If you want to roll your sleeves up and do the computer equivalent of getting your hands greasy under the bonnet, this book will take you through hosts, firewalls, passwords, phishing and the like. Thanks partly to case studies and profiles, the authors never forget that infosec is about people, both the good guys and the fraudsters and hackers." --Professional Security Magazine Online, May 28, 2014
"The book provides a good balance between the broad aspects of information security, privacy and risk management; without overwhelming the novice with far too much minutiae…For those looking for an introduction to the topic, that nonetheless provides a comprehensive overview of the relevant areas, Introduction to Information Security: A Strategic-Based Approach is an excellent reference." --RSAConference.com, May 7, 2014
"As an American book, it covers US law on the subject…If you want to roll your sleeves up and do the computer equivalent of getting your hands greasy under the bonnet, this book will take you through hosts, firewalls, passwords, phishing and the like. Thanks partly to case studies and profiles, the authors never forget that infosec is about people, both the good guys and the fraudsters and hackers." --Professional Security Magazine Online, March 31, 2014
"Along with being an excellent discussion for the security professional, this book is ideally suited for use as a textbook at the undergraduate or graduate level,…For professionals and students alike, the book offers two outstanding features throughout the text: profiles of individuals who made important contributions to the field, and descriptions of real-world attacks that led to many of the technologies and methods discussed." --ComputingReviews.com, February 25, 2014