Expenditure of company information, staff salary. The password information of the network, etc., these data will be in Database. Server or in other server The protection and security of the information will be.In addition to these important information. If a hacker has other information that I don't see much importance.For example, the data of the network, the diagram.Model / brand of each device, the first / last day / month / year of birth. Of the employees and staff of network, etc. You
.Control access to sensitive data from the remote will have the risk, find the breach and gaps are found, such as to prevent skipping through authentication. SQL Injection which are able to elicit information in Database.XSS can steal Cookie / Session ID of Webmaster and enter the website with the rights of Webmaster which Webmaster usually manage information. Database via the web!
besides protecting corporate information. Need to protect customer information, such as information about the customer's credit in the Database of site e-commerce. The 2.4 training
.Training is a training and a test of General Certificate (Certificate) in the exam ประกาศนียบัตรมี leaves several can be divided as follows:
a basic level. CCSA CWNA i-Net,,,,, Security intermediate CCSE CCSPA CIW, Security Analyst CWSP
high Solaris 9 Security CCMSE,,,,, CCSE Plus CCSP CISSP SSCP
2.5 check (Audit)
.Current information system auditor or IT / IS Auditor career is preferred. Specialist perform check operation Department and systems development, information ซึ่งปัญหา big is. A shortage of information system auditor throughout.Now many people still understand that "internal audit" refers to "the information system." this statement correctly, but not means. Information system auditor are divided into two types: internal information system auditorInternal Auditor) and external information system auditor (IT / IS External Auditor) that the difference is, the information system inside it. An employee of the organization does not come from the outside, usually by the information system inside the สังกัดแผนก check.Which will match up Board of director obligation to monitor the overall in the enterprise information system. The independent control of the system
.
information or free from the control of the CIO the information system auditor external
.
การแปล กรุณารอสักครู่..
