,Table of Contents
Cover
Table of Contents
Title Page
Copyright
Dedication
Acknowledgments
About the Authors
About the Technical Editor
About the Technical Proofreader
Introduction
The Security+ Exam
What Does This Book Cover?
Exam SY0-701 Exam Objectives
SY0-701 Certification Exam Objective Map
Assessment Test
Answers to Assessment Test
Chapter 1: Today's Security Professional
Cybersecurity Objectives
Data Breach Risks
Implementing Security Controls
Data Protection
Summary
Exam Essentials
Review Questions
Chapter 2: Cybersecurity Threat Landscape
Exploring Cybersecurity Threats
, Threat Data and Intelligence
Summary
Exam Essentials
Review Questions
Chapter 3: Malicious Code
Malware
Summary
Exam Essentials
Review Questions
Chapter 4: Social Engineering and Password Attacks
Social Engineering and Human Vectors
Password Attacks
Summary
Exam Essentials
Review Questions
Chapter 5: Security Assessment and Testing
Vulnerability Management
Vulnerability Classification
Penetration Testing
Audits and Assessments
Vulnerability Life Cycle
Summary
Exam Essentials
Review Questions
Chapter 6: Application Security
Software Assurance Best Practices
Designing and Coding for Security
Software Security Testing
Injection Vulnerabilities
, Exploiting Authentication Vulnerabilities
Exploiting Authorization Vulnerabilities
Exploiting Web Application Vulnerabilities
Application Security Controls
Secure Coding Practices
Automation and Orchestration
Summary
Exam Essentials
Review Questions
Chapter 7: Cryptography and the PKI
An Overview of Cryptography
Goals of Cryptography
Cryptographic Concepts
Modern Cryptography
Symmetric Cryptography
Asymmetric Cryptography
Hash Functions
Digital Signatures
Public Key Infrastructure
Asymmetric Key Management
Cryptographic Attacks
Emerging Issues in Cryptography
Summary
Exam Essentials
Review Questions
Chapter 8: Identity and Access Management
Identity
Authentication and Authorization
Authentication Methods
Cover
Table of Contents
Title Page
Copyright
Dedication
Acknowledgments
About the Authors
About the Technical Editor
About the Technical Proofreader
Introduction
The Security+ Exam
What Does This Book Cover?
Exam SY0-701 Exam Objectives
SY0-701 Certification Exam Objective Map
Assessment Test
Answers to Assessment Test
Chapter 1: Today's Security Professional
Cybersecurity Objectives
Data Breach Risks
Implementing Security Controls
Data Protection
Summary
Exam Essentials
Review Questions
Chapter 2: Cybersecurity Threat Landscape
Exploring Cybersecurity Threats
, Threat Data and Intelligence
Summary
Exam Essentials
Review Questions
Chapter 3: Malicious Code
Malware
Summary
Exam Essentials
Review Questions
Chapter 4: Social Engineering and Password Attacks
Social Engineering and Human Vectors
Password Attacks
Summary
Exam Essentials
Review Questions
Chapter 5: Security Assessment and Testing
Vulnerability Management
Vulnerability Classification
Penetration Testing
Audits and Assessments
Vulnerability Life Cycle
Summary
Exam Essentials
Review Questions
Chapter 6: Application Security
Software Assurance Best Practices
Designing and Coding for Security
Software Security Testing
Injection Vulnerabilities
, Exploiting Authentication Vulnerabilities
Exploiting Authorization Vulnerabilities
Exploiting Web Application Vulnerabilities
Application Security Controls
Secure Coding Practices
Automation and Orchestration
Summary
Exam Essentials
Review Questions
Chapter 7: Cryptography and the PKI
An Overview of Cryptography
Goals of Cryptography
Cryptographic Concepts
Modern Cryptography
Symmetric Cryptography
Asymmetric Cryptography
Hash Functions
Digital Signatures
Public Key Infrastructure
Asymmetric Key Management
Cryptographic Attacks
Emerging Issues in Cryptography
Summary
Exam Essentials
Review Questions
Chapter 8: Identity and Access Management
Identity
Authentication and Authorization
Authentication Methods