Description
Book SynopsisInformation security is about people, yet in most organizations protection remains focused on technical countermeasures. The human element is crucial in the majority of successful attacks on systems and attackers are rarely required to find technical vulnerabilities, hacking the human is usually sufficient. Ian Mann turns the black art of social engineering into an information security risk that can be understood, measured and managed effectively. The text highlights the main sources of risk from social engineering and draws on psychological models to explain the basis for human vulnerabilities. Chapters on vulnerability mapping, developing a range of protection systems and awareness training provide a practical and authoritative guide to the risks and countermeasures that are available. There is a singular lack of useful information for security and IT professionals regarding the human vulnerabilities that social engineering attacks tend to exploit. Ian Mann provides a rich mix of exa
Table of ContentsContents: Introduction; Part One The Risks: What is social engineering?; Understanding your risks; People, your weakest link; Limitations to current security thinking. Part Two Understanding Human Vulnerabilities: Trust me; Reading a person; Subconscious mind; Parent, Adult, Child. Part Three Countermeasures: Vulnerability mapping; Protection systems; Awareness and Training; Testing. Index.