Security Architecture for Hybrid Cloud: A Practical Method for Designing Security Using Zero Trust Principles

Security Architecture for Hybrid Cloud: A Practical Method for Designing Security Using Zero Trust Principles
by 作者: Mark Buckwell (Author), Stefaan Van daele (Author), Carsten Horst (Author)
Publisher Finelybook 出版社: O’Reilly Media
Edition 版本: 1st
Publication Date 出版日期: 2024-09-03
Language 语言: English
Pages 页数: 474 pages
ISBN-10 书号: 109815777X
ISBN-13 书号: 9781098157777


Book Description

As the transformation to hybrid multicloud accelerates, businesses require a structured approach to securing their workloads. Adopting zero trust principles demands a systematic set of practices to deliver secure solutions. Regulated businesses, in particular, demand rigor in the architectural process to ensure the effectiveness of security controls and continued protection.

This book provides the first comprehensive method for hybrid multicloud security, integrating proven architectural techniques to deliver a comprehensive end-to-end security method with compliance, threat modeling, and zero trust practices. This method ensures repeatability and consistency in the development of secure solution architectures.

Architects will learn how to effectively identify threats and implement countermeasures through a combination of techniques, work products, and a demonstrative case study to reinforce learning. You’ll examine:

  • The importance of developing a solution architecture that integrates security for clear communication
  • Roles that security architects perform and how the techniques relate to nonsecurity subject matter experts
  • How security solution architecture is related to design thinking, enterprise security architecture, and engineering
  • How architects can integrate security into a solution architecture for applications and infrastructure using a consistent end-to-end set of practices
  • How to apply architectural thinking to the development of new security solutions

    About the authors

    Mark Buckwell is a cloud security architect at IBM with 30 years of information security experience.

    Carsten Horst with more than 20 years of experience in Cybersecurity is a certified security architect and Associate Partner at IBM.

    Stefaan Van daele has 25 years experience in Cybersecurity and is a Level 3 certified security architect at IBM.

Review

“Security Architecture for Hybrid Cloud distills the collected wisdom of many skilled practitioners with thousands of successful cloud deployments, and provides an in-depth look at architectural thinking based on this experience. The authors explain why architectural thinking is essential for larger-scale systems and applications, some frameworks and patterns to avoid starting from scratch each time, and how to take a balanced and iterative approach for secure design and implementation. It’s a must-read for anyone responsible for the security, scalability, availability, and usability of complex systems.”
Chris Dotson, Distinguished Engineer, author of Practical Cloud Security

“This book is an essential read and reference for any discerning Architect. Security considerations are, at a minimum, an essential consideration in all solutions and enterprises, so are of worthy note for all Architects. At one level, this work provides essential guidance for those seeking to ensure the viability and validation of the security elements of their solutions, as well as guiding the vital efforts of governance required to assure enterprises of their overall security. At the same time, dedicated security professionals who seek to build upon proven robust practices in their security solutions will gain strong insights as to how solid architectural thinking will reinforce their expertise. A book that will only become more and more relevant.”
Paul Homan, Distinguished Engineer and Architect Profession Lead, IBM

“In an era where cyber threats are constantly evolving and becoming increasingly sophisticated, it is imperative that the next generation of cybersecurity professionals possess the skills and knowledge to enable them to design and deliver effective security for the cloud. The popularity of architectural thinking for security among students underscores its significance as a foundational pillar of cybersecurity education. This excellent book serves as a valuable resource for students and will further enhance their learning. I would recommend it to anyone keen to learn more about security architectures in the cloud.”
Professor Steve Schneider, Director of Computer Science Research Centre, University of Surrey

“Security Architecture for Hybrid Cloud provides a wealth of information to assist IT and security professionals, from strategic leadership to architects to engineers. It provides concrete, practical, and comprehensive information about how to plan, design, build, and operate secure IT environments and solutions. The information is well-structured, the writing precise and easy to read, and provides numerous concrete examples to illustrate the points. I will find a prime spot on my bookshelf for this book and expect it will be a valuable reference in my work.”
–Sarah Brown – Principal Cyber Security Lead, NATO NCI Agency

“This book provides comprehensive and accessible coverage of architecting for security that will become a standard reference in its field.”
Paul Krause, Emeritus Professor, University of Surrey


From the Back Cover

As the transformation to hybrid multicloud accelerates, businesses require a structured approach to securing their workloads. Zero trust principles require the use of a systematic set of practices to deliver secure solutions. Regulated businesses, in particular, demand rigor in the architectural thinking process to ensure the effectiveness of security controls and continued protection.

This book provides the first comprehensive method for hybrid multicloud security, integrating proven architectural techniques to deliver a comprehensive end-to-end security method with compliance, threat modeling, and zero trust practices. This method ensures repeatability and consistency in the development of secure solution architectures.

Architects will learn how to effectively identify threats and implement countermeasures through a combination of techniques, work products, and a demonstrative case study to reinforce learning. You’ll examine:

  • The importance of developing a solution architecture that integrates security for clear communication
  • Roles that security architects perform and how the techniques relate to nonsecurity subject matter experts
  • How security solution architecture is related to design thinking, enterprise security architecture, and engineering
  • How architects can integrate security into a solution architecture for applications and infrastructure using a consistent end-to-end set of practices
  • How to apply architectural thinking to the development of new security solutions


Security Architecture for Hybrid Cloud provides a wealth of information to assist IT and security professionals, from strategic leadership to architects to engineers.”
—Sarah Brown Principal Cyber Security Lead, NATO NCI Agency

“This book provides comprehensive and accessible coverage of architecting for security that will become a standard reference in its field.”
Paul Krause Emeritus Professor, University of Surrey

Amazon page

相关文件下载地址

Formats: PDF(conv), EPUB | 30 MB

打赏
未经允许不得转载:finelybook » Security Architecture for Hybrid Cloud: A Practical Method for Designing Security Using Zero Trust Principles

评论 抢沙发

觉得文章有用就打赏一下

您的打赏,我们将继续给力更多优质内容

支付宝扫一扫

微信扫一扫