Industrial cybersecurity efficiently monitor the cybersecurity posture of your ICS environment

What you will learn Monitor the ICS security posture actively as well as passively Respond to incidents in a controlled and standard way Understand what incident response activities are required in your ICS environment Perform threat-hunting exercises using the Elasticsearch, Logstash, and Kibana (E...

Full description

Bibliographic Details
Main Author: Ackerman, Pascal
Format: eBook
Language:English
Published: Birmingham Packt 2021
Edition:Second edition
Subjects:
Online Access:
Collection: O'Reilly - Collection details see MPG.ReNa
LEADER 04519nmm a2200385 u 4500
001 EB002003908
003 EBX01000000000000001166809
005 20251104000000.0
007 cr|||||||||||||||||||||
008 211025 ||| eng
020 |a 1800205821 
050 4 |a QA76.9.A25 
100 1 |a Ackerman, Pascal 
245 0 0 |a Industrial cybersecurity  |b efficiently monitor the cybersecurity posture of your ICS environment  |c Pascal Ackerman 
250 |a Second edition 
260 |a Birmingham  |b Packt  |c 2021 
300 |a xx, 779 pages  |b illustrations 
505 0 |a Table of Contents Introduction and Recap of First Edition A Modern Look at the Industrial Control System Architecture The Industrial Demilitarized Zone Designing the ICS Architecture with Security in Mind Introduction to Security Monitoring Passive Security Monitoring Active Security Monitoring Industrial Threat Intelligence Visualizing, Correlating, and Alerting Threat Hunting Threat Hunt Scenario 1 – Malware Beaconing Threat Hunt Scenario 2 – Finding Malware and Unwanted Applications Threat Hunt Scenario 3 – Suspicious External Connections Different Types of Cybersecurity Assessments Industrial Control System Risk Assessments Red Team/Blue Team Exercises Penetration Testing ICS Environments Incident Response for the ICS Environment Lab Setup 
653 |a Computer security / fast 
653 |a Computer Security 
653 |a Sécurité informatique 
653 |a Process control / Security measures 
653 |a Fabrication / Contrôle / Sécurité / Mesures 
653 |a Computer security / http://id.loc.gov/authorities/subjects/sh90001862 
041 0 7 |a eng  |2 ISO 639-2 
989 |b OREILLY  |a O'Reilly 
500 |a Includes index 
500 |a Made available through: Safari, an O'Reilly Media Company 
015 |a GBC1D3592 
776 |z 9781800202092 
856 4 0 |u https://learning.oreilly.com/library/view/~/9781800202092/?ar  |x Verlag  |3 Volltext 
082 0 |a 658.478 
520 |a What you will learn Monitor the ICS security posture actively as well as passively Respond to incidents in a controlled and standard way Understand what incident response activities are required in your ICS environment Perform threat-hunting exercises using the Elasticsearch, Logstash, and Kibana (ELK) stack Assess the overall effectiveness of your ICS cybersecurity program Discover tools, techniques, methodologies, and activities to perform risk assessments for your ICS environment Who this book is for If you are an ICS security professional or anyone curious about ICS cybersecurity for extending, improving, monitoring, and validating your ICS cybersecurity posture, then this book is for you. IT/OT prof ... 
520 |a Get up and running with industrial cybersecurity monitoring with this hands-on book, and explore ICS cybersecurity monitoring tasks, activities, tools, and best practices Key Features Architect, design, and build ICS networks with security in mind Perform a variety of security assessments, checks, and verifications Ensure that your security processes are effective, complete, and relevant Book Description With Industrial Control Systems (ICS) expanding into traditional IT space and even into the cloud, the attack surface of ICS environments has increased significantly, making it crucial to recognize your ICS vulnerabilities and implement advanced techniques for monitoring and defending against rapidly evolving cyber threats to critical infrastructure. This second edition covers the updated Industrial Demilitarized Zone (IDMZ) architecture and shows you how to implement, verify, and monitor a holistic security program for your ICS environment.  
520 |a You'll begin by learning how to design security-oriented architecture that allows you to implement the tools, techniques, and activities covered in this book effectively and easily. You'll get to grips with the monitoring, tracking, and trending (visualizing) and procedures of ICS cybersecurity risks as well as understand the overall security program and posture/hygiene of the ICS environment. The book then introduces you to threat hunting principles, tools, and techniques to help you identify malicious activity successfully. Finally, you'll work with incident response and incident recovery tools and techniques in an ICS environment. By the end of this book, you'll have gained a solid understanding of industrial cybersecurity monitoring, assessments, incident response activities, as well as threat hunting.