Brook S.E. Schoenfield ; forewords by John N. Stewart and James F. Ransome.
1 online resource :
illustrations
Includes bibliographical references.
Detailing the time-tested practices of experienced security architects, this book explains how to deliver the right security at the right time in the implementation lifecycle. All types of systems, from the simplest applications to complex, enterprise-grade, hybrid cloud architectures are covered. Questions addressed include: When should the security architect begin the analysis?; At what points can a security architect add the most value?; What are the activities the architect must execute?; How are these activities delivered?; What is the set of knowledge domains applied to the analysis?; What are the outputs?; What are the tips and tricks that make security architecture risk assessment easier? To help build skill in assessing architectures for security, six sample assessments are provided. Each assessment examines a different type of system architecture and introduces at least one new pattern for security analysis. --