CompTIA Security+ Study Guide with Online Labs (häftad)
Format
Häftad (Paperback / softback)
Språk
Engelska
Antal sidor
528
Utgivningsdatum
2020-12-28
Upplaga
7th Edition
Förlag
Sybex Inc.,U.S.
Dimensioner
124 x 185 x 18 mm
Vikt
840 g
Antal komponenter
1
ISBN
9781119784265

CompTIA Security+ Study Guide with Online Labs

Exam SY0-501

Häftad,  Engelska, 2020-12-28

Slutsåld

Expert Security+ SY0-501 exam preparation, endorsed by CompTIA, Now with 25 Online Lab Modules The seventh edition of CompTIA Security+ Study Guide offers invaluable preparation for Exam SY0-501. Written by a team of expert authors, the book covers 100% of the exam objectives with clear and concise explanations. Discover how to handle threats, attacks, and vulnerabilities using industry-standard tools and technologies, while gaining and understanding the role of architecture and design. Spanning topics from everyday tasks like identity and access management to complex subjects such as risk management and cryptography, this study guide helps you consolidate your knowledge base in preparation for the Security+ exam. Illustrative examples show how these processes play out in real-world scenarios, allowing you to immediately translate essential concepts to on-the-job application. Coverage of 100% of all exam objectives in this Study Guide means you'll be ready for: Managing Risk Designing and Diagnosing Networks Understanding Devices and Infrastructure Identify and Access Management Protecting Wireless Networks Securing the Cloud Data, Privacy, and Security Practices Cryptography and PKI Wiley has partnered up with Practice Labs, the IT Competency Hub, to give IT learners discounted access to their live, virtual Practice Labs. Connect to real devices using actual hardware and software straight from a web browser. Practice Labs allow you to cement your theoretical studies with practical, hands-on experience. Master your IT skills and gain virtual work experience to increase your employability. Each purchase provides 6 months' unlimited access. Ready to practice your IT skills? Interactive learning environment Take your exam prep to the next level with Sybex's superior interactive online study tools. To access our learning environment, simply visit www.wiley.com/go/sybextestprep, type in your unique PIN, and instantly gain one year of FREE access to: Interactive test bank with 2 bonus exams and 12 chapter tests. Practice questions help you identify areas where further review is needed. 325 questions total! 100 Electronic Flashcards to reinforce learning and last-minute prep before the exam. Comprehensive glossary in PDF format gives you instant access to the key terms so you are fully prepared. ABOUT THE PRACTICE LABS SECURITY+ LABS So you can practice with hands-on learning in a real environment, Sybex has bundled Practice Labs virtual labs that run from your browser. The registration code is included with the book and gives you 6 months unlimited access to Practice Labs CompTIA Security+ Exam SY0-501 Labs with 25 unique lab modules to practice your skills.
Visa hela texten

Kundrecensioner

Har du läst boken? Sätt ditt betyg »

Övrig information

Emmett Dulaney is a Professor at a small university in Indiana. He has written several certification books on Windows, Security, IT project management, and UNIX, and was co-author of two of Sybex's leading certification titles: CompTIA Security+ Study Guide and CompTIA A+ Complete Study Guide. Chuck Easttom is CEO and Chief Trainer for CEC-Security, which specializes in IT security training and CISP and Security+ exam preparation. He has over 18 years in the IT industry, 10 years teaching and training, and has authored 15 published books.

Innehållsförteckning

Introduction xxiv Assessment Test xli Chapter 1 Managing Risk 1 Risk Terminology 3 Threat Assessment 6 Risk Assessment 6 Computing Risk Assessment 7 Assessing Privacy 12 Acting on Your Risk Assessment 12 Risks Associated with Cloud Computing 15 Risks Associated with Virtualization 16 Developing Policies, Standards, and Guidelines 17 Implementing Policies 17 Understanding Control Types and False Positives/Negatives 26 Risk Management Best Practices 28 Change Management 38 Summary 38 Exam Essentials 38 Review Questions 40 Chapter 2 Monitoring and Diagnosing Networks 45 Monitoring and Diagnosing Networks Terminology 47 Frameworks, Best Practices, and Configuration Guides 48 Industry-Standard Frameworks and Reference Architectures 48 National Institute of Standards and Technology (NIST) 51 Benchmarks/Secure Configuration Guides 54 Secure Network Architecture Concepts 57 Zones 57 Tunneling/VPN 63 Placing Security Devices 64 SDN 67 IDS vs. IPS 67 Secure Systems Design 68 Hardware and Firmware Security 68 Operating Systems 69 Peripherals 73 Secure Staging Deployment Concepts 73 Summary 74 Exam Essentials 74 Review Questions 76 Chapter 3 Understanding Devices and Infrastructure 79 Infrastructure Terminology 81 Designing with Security in Mind 84 Firewalls 84 VPNs and VPN Concentrators 89 Intrusion Detection Systems 91 Router 104 Switch 106 Proxy 107 Load Balancer 108 Access Point 108 SIEM 111 DLP 111 Network Access Control (NAC) 112 Mail Gateway 112 Bridge 113 SSL/TLS Accelerators 113 SSL Decryptors 113 Media Gateway 114 Hardware Security Module 114 Summary 115 Exam Essentials 115 Review Questions 116 Chapter 4 Identity and Access Management 121 Using Tools to Assess Your Network 125 Protocol Analyzer 125 Network Scanners 127 Password Cracker 130 Vulnerability Scanners 131 Command-Line Tools 135 Additional Tools 142 Troubleshooting Common Security Issues 143 Access Issues 144 Configuration Issues 145 Security Technologies 147 Intrusion Detection Systems 147 Antimalware 148 Firewalls and Related Devices 149 Other Systems 150 Identity and Access Management Concepts 151 Identification vs. Authentication 151 Authentication (Single Factor) and Authorization 152 Multifactor Authentication 153 Biometrics 153 Federations 154 Potential Authentication and Access Problems 154 LDAP 155 PAP, SPAP, and CHAP 155 Kerberos 156 Working with RADIUS 157 TACACS, TACACS+, XTACACS 158 OATH 158 One-Time Passwords 158 SAML 159 Install and Configure Identity and Access Services 159 Mandatory Access Control 159 Discretionary Access Control 160 Role-Based Access Control 160 Rule-Based Access Control 160 ABAC 161 Smartcards 161 Tokens 162 File and Database Security 163 Summary 163 Exam Essentials 164 Review Questions 165 Chapter 5 Wireless Network Threats 169 Wireless Threat Terminology 170 Wireless Vulnerabilities to Know 171 Replay 172 Rogue APs and Evil Twins 174 Jamming 174 WPS 175 Bluejacking 175 Bluesnarfing 175 NFC and RFID 176 Disassociation 176 Wireless Commonsense 176 Wireless Attack Analogy 176 Summary 177 Exam Essentials 178 Review Questions 179 Chapter 6 Securing the Cloud 183 Cloud-Related Terminology 184 Working with Cloud Computing 186 Software as a Service (SaaS) 186 Platform as a Service (PaaS) 186 Infrastructure as a Service (IaaS) 188 Private Cloud 189 Public Cloud 189 Community Cloud 189 Hybrid Cloud 190 Working with Virtualization 190 Understanding Hypervisors 190 Understanding Containers and Application Cells 192 VDI/VDE 192 On-Premise vs. Hosted vs. Cloud 192 VM Escape Protection 193 VM Sprawl Avoidance 193 Security and the Cloud 194 Cloud Access Security Brokers 195 Cloud Storage 195 Security as a Service 195 Summary 196 Exam Essentials 196 Review Questions