ABSTRACT

Enterprise Level Security 2: Advanced Topics in an Uncertain World follows on from the authors’ first book on Enterprise Level Security (ELS), which covered the basic concepts of ELS and the discoveries made during the first eight years of its development. This book follows on from this to give a discussion of advanced topics and solutions, derived from 16 years of research, pilots, and operational trials in putting an enterprise system together. The chapters cover specific advanced topics derived from painful mistakes and numerous revisions of processes. This book covers many of the topics omitted from the first book including multi-factor authentication, cloud key management, enterprise change management, entity veracity, homomorphic computing, device management, mobile ad hoc, big data, mediation, and several other topics.

  • The ELS model of enterprise security is endorsed by the Secretary of the Air Force for Air Force computing systems and is a candidate for DoD systems under the Joint Information Environment Program.
  • The book is intended for enterprise IT architecture developers, application developers, and IT security professionals.
  • This is a unique approach to end-to-end security and fills a niche in the market.

chapter 1|8 pages

The First 16 Years

chapter 2|8 pages

A Brief Review of the Initial Book

part |90 pages

Identity and Access Advanced Techniques

chapter 4|10 pages

Identity Claims in High Assurance

chapter 5|14 pages

Cloud Key Management

chapter 6|6 pages

Enhanced Assurance Needs

chapter 7|6 pages

Temporary Certificates

chapter 8|4 pages

Derived Certificates on Mobile Devices

chapter 9|14 pages

Veracity and Counter Claims

chapter 10|10 pages

Delegation of Access and Privilege

chapter 11|12 pages

Escalation of Privilege

chapter 12|12 pages

Federation

part |36 pages

ELS Extensions – Content Management

chapter 13|8 pages

Content Object Uniqueness for Forensics

chapter 14|26 pages

Homomorphic Encryption

part |20 pages

ELS Extensions – Data Aggregation

chapter 15|8 pages

Access and Privilege in Big Data Analysis

chapter 16|10 pages

Data Mediation

part |32 pages

ELS Extensions – Mobile Devices

chapter 17|14 pages

Mobile Ad Hoc

chapter 18|16 pages

Endpoint Device Management

part |68 pages

ELS Extensions – Other Techniques

chapter 19|10 pages

Endpoint Agent Architecture

chapter 20|14 pages

Ports and Protocols

chapter 21|12 pages

Asynchronous Messaging

chapter 22|14 pages

Virtual Application Data Center

chapter 23|10 pages

Managing System Changes

chapter 24|6 pages

Concluding Remarks