Buy New
-
To see product details, add this item to your cart.
Ships from: Amazon.com Sold by: Amazon.com
Used - Very Good
-
To see product details, add this item to your cart.
Ships from: ThriftBooks-Phoenix Sold by: ThriftBooks-Phoenix
Download the free Kindle app and start reading Kindle books instantly on your smartphone, tablet, or computer - no Kindle device required.
Read instantly on your browser with Kindle for Web.
Using your mobile phone camera - scan the code below and download the Kindle app.
Follow the authors
OK
Applied Network Security Monitoring: Collection, Detection, and Analysis
Purchase options and add-ons
Network security monitoring is based on the principle that prevention eventually fails. In the current threat landscape, no matter how much you try, motivated attackers will eventually find their way into your network. At that point, your ability to detect and respond to that intrusion can be the difference between a small incident and a major disaster.
The book follows the three stages of the NSM cycle: collection, detection, and analysis. As you progress through each section, you will have access to insights from seasoned NSM professionals while being introduced to relevant, practical knowledge that you can apply immediately.
- Discusses the proper methods for planning and executing an NSM data collection strategy
- Provides thorough hands-on coverage of Snort, Suricata, Bro-IDS, SiLK, PRADS, and more
- The first book to define multiple analysis frameworks that can be used for performing NSM investigations in a structured and systematic manner
- Loaded with practical examples that make use of the Security Onion Linux distribution
- Companion website includes up-to-date blogs from the authors about the latest developments in NSM, complete with supplementary book materials
You will get caught off guard, you will be blind sided, and sometimes you will lose the fight to prevent attackers from accessing your network. This book is about equipping you with the right tools for collecting the data you need, detecting malicious activity, and performing the analysis that will help you understand the nature of an intrusion. Although prevention can eventually fail, NSM doesn't have to.
** Note: All author royalties from the sale of Applied NSM are being donated to a number of charities selected by the authors.
- ISBN-100124172083
- ISBN-13978-0124172081
- Edition1st
- PublisherSyngress
- Publication dateDecember 19, 2013
- LanguageEnglish
- Dimensions7.5 x 1.12 x 9.25 inches
- Print length496 pages
Frequently bought together

Customers who viewed this item also viewed
- Practical Packet Analysis, 3rd Edition: Using Wireshark to Solve Real-World Network ProblemsPaperback$3.99 shippingGet it Oct 8 - 14Usually ships within 12 to 13 days
- The Practice of Network Security Monitoring: Understanding Incident Detection and ResponsePaperbackFREE ShippingGet it Sep 25 - 29
- Intelligence-Driven Incident Response: Outwitting the AdversaryPaperbackFREE Shipping by AmazonGet it as soon as Sunday, Sep 20Only 1 left in stock (more on the way).
- TCP/IP Illustrated: The Protocols, Volume 1 (Addison-Wesley Professional Computing Series)HardcoverFREE Shipping by AmazonGet it as soon as Saturday, Sep 19
- The TCP/IP Guide: A Comprehensive, Illustrated Internet Protocols ReferenceHardcoverFREE Shipping by AmazonGet it as soon as Saturday, Sep 19
- Cyber Defense Matrix: The Essential Guide to Navigating the Cybersecurity LandscapePaperbackGet it as soon as Thursday, Sep 24
Customers also bought or read
- Practical Packet Analysis, 3rd Edition: Using Wireshark to Solve Real-World Network Problems
Paperback$33.67$33.67$3.99 delivery Oct 8 - 14 - The Practice of Network Security Monitoring: Understanding Incident Detection and Response
Paperback$50.85$50.85FREE delivery Sep 25 - 29 - Network Security Through Data Analysis: From Data to Action
Paperback$39.43$39.43FREE delivery Sat, Sep 19 - TCP/IP Illustrated: The Protocols, Volume 1 (Addison-Wesley Professional Computing Series)#1 Best SellerTCP-IP
Hardcover$64.49$64.49FREE delivery Sat, Sep 19 - Practical Malware Analysis: The Hands-On Guide to Dissecting Malicious Software
Paperback$48.72$48.72FREE delivery Mon, Sep 21 - Blue Team Handbook: SOC, SIEM, and Threat Hunting (V1.02): A Condensed Guide for the Security Operations Team and Threat Hunter
Paperback$21.78$21.78Delivery Sat, Sep 19 - Network Defense and Countermeasures: Principles and Practices (Pearson IT Cybersecurity Curriculum (ITCC))
Paperback$87.22$87.22FREE delivery Wed, Sep 23 - Intelligence-Driven Incident Response: Outwitting the Adversary
Paperback$44.94$44.94FREE delivery Sep 20 - 23 - Attacking Network Protocols: A Hacker's Guide to Capture, Analysis, and Exploitation
Paperback$44.10$44.10FREE delivery Oct 2 - 7 - Cyber Defense Matrix: The Essential Guide to Navigating the Cybersecurity Landscape
Paperback$20.73$20.73Delivery Thu, Sep 24 - The TCP/IP Guide: A Comprehensive, Illustrated Internet Protocols Reference#1 Best SellerEmail Administration
Hardcover$80.17$80.17FREE delivery Sat, Sep 19 - Practical Threat Intelligence and Data-Driven Threat Hunting: A hands-on guide to threat hunting with the ATT&CK™ Framework and open source tools
Paperback$44.99$44.99FREE delivery Mon, Sep 21 - Practical Binary Analysis: Build Your Own Linux Tools for Binary Instrumentation, Analysis, and Disassembly
Paperback$44.55$44.55FREE delivery Thu, Sep 24 - The Ultimate Kali Linux Book: Harness Nmap, Metasploit, Aircrack-ng, and Empire for cutting-edge pentesting
Paperback$29.82$29.82Delivery Mon, Sep 21 - Penetration Testing Fundamentals: A Hands-On Guide to Reliable Security Audits (Pearson It Cybersecurity Curriculum (Itcc))
Paperback$66.68$66.68FREE delivery Mon, Sep 21 - The Hacker and the State: Cyber Attacks and the New Normal of Geopolitics
Paperback$22.95$22.95Delivery Sep 22 - 30 - Black Hat Bash: Creative Scripting for Hackers and Pentesters
Paperback$39.60$39.60FREE delivery Mon, Sep 21 - How Linux Works, 3rd Edition: What Every Superuser Should Know#1 Best SellerLinux Servers
Paperback$34.49$34.49Delivery Sat, Sep 19 - The Tao Of Network Security Monitoring: Beyond Intrusion Detection
Paperback$27.00$27.00Delivery Tue, Sep 22 - Windows Internals: System architecture, processes, threads, memory management, and more, Part 1 (Developer Reference)#1 Best SellerWindows Server Guides
Paperback$40.92$40.92FREE delivery Mon, Sep 21 - The Linux Command Line, 3rd Edition: A Complete Introduction#1 Best SellerLinux & UNIX Administration
Paperback$27.94$27.94Delivery Sat, Sep 19
Editorial Reviews
Review
"... an extremely informative dive into the realm of network security data collection and analysis...well organized and thought through...I have only positive comments from my study." --The Ethical Hacker Network, Oct 31, 2014
Review
The essential guide to becoming an NSM analyst from the ground up
About the Author
Chris is a Senior Security Analyst with InGuardians. He has as extensive experience supporting multiple government and military agencies, as well as several Fortune 500 companies. In multiple roles with the US Department of Defense, Chris significantly helped to further to role of the Computer Network Defense Service Provider (CNDSP) model, and helped to create several NSM and intelligence tools currently being used to defend the interests of the nation.
Chris has authored several books and articles, including the international best seller "Practical Packet Analysis" form No Starch Press, currently in its second edition. Chris currently holds several industry certifications, including the SANS GSE and CISSP distinctions.
In 2008, Chris founded the Rural Technology Fund. The RTF is a 501(c)(3) non-profit organization designed to provide scholarship opportunities to students form rural areas pursuing careers in computer technology. The organization also promotes technology advocacy in rural areas through various support programs. The RTF has provided thousands of dollars in scholarships and support to rural students.
When Chris isn't buried knee-deep in packets, he enjoys watching University of Kentucky Wildcat basketball, being a BBQ Pitmaster, amateur drone building, and spending time at the beach. Chris currently resides in Charleston, South Carolina with his wife Ellen.
Chris blogs at appliednsm.com and chrissanders.org. He is on Twitter as @chrissanders88.
Product details
- Publisher : Syngress
- Publication date : December 19, 2013
- Edition : 1st
- Language : English
- Print length : 496 pages
- ISBN-10 : 0124172083
- ISBN-13 : 978-0124172081
- Item Weight : 2.31 pounds
- Dimensions : 7.5 x 1.12 x 9.25 inches
- Best Sellers Rank: #1,127,997 in Books (See Top 100 in Books)
- #180 in Computer Networks
- #822 in Computer Networking (Books)
- #917 in Computer Network Security
- Customer Reviews:
About the authors

Chris Sanders is an information security author, trainer, and researcher originally from Mayfield, KY now living in Gainesville, GA.
He is the founder of Applied Network Defense, a company focused on delivering high quality, accessible information security training. In previous roles, Chris worked with the US Department of Defense, InGuardians, and Mandiant to build security operation centers and train practitioners focused on defending defense, government, and Fortune 500 networks. Chris is also the founder and director of the Rural Technology Fund, a non-profit that donates scholarships and equipment to public schools to further technical education in rural and high poverty areas. To date, the RTF has put computer science education resources into the hands of over 100,000 students in all 50 states.
Chris has authored several books and articles, including the international bestseller “Practical Packet Analysis” from No Starch Press, currently in its third edition and in seven languages, and “Applied Network Security Monitoring” from Syngress. His current research focus is on the intersection of cybersecurity and cognitive psychology with the goal of enhancing the field of infosec investigative disciplines through a better understanding of the human thought and learning processes.
Chris blogs at http://www.chrissanders.org. You can learn more about Applied Network Defense at http://www.networkdefense.co and the RTF at http://www.ruraltechfund.org.

Discover more of the author’s books, see similar authors, read book recommendations and more.

Jason Smith is an intrusion detection analyst by day and junkyard engineer by night. Originally from Bowling Green, Kentucky, Jason started his career mining large data sets and performing finite element analysis as a budding physicist. By dumb luck, his love for data mining led him to information security and network security monitoring where he took up a fascination with data manipulation and automation.
Jason has a long history of assisting state and federal agencies with hardening their defensive perimeters and currently works as a Security Engineer with Mandiant. As part of his development work, he has created several open source projects, many of which have become "best-practice" tools for the DISA CNDSP program.
Jason regularly spends weekends in the garage building anything from arcade cabinets to open wheel racecars. Other hobbies include home automation, firearms, monopoly, playing guitar, and eating. Jason has a profound love of rural America, a passion for driving, and an unrelenting desire to learn. Jason is currently living in Frankfort, Kentucky.
Jason blogs at appliednsm.com and can be reached on Twitter as @automayt.



















![Intellectual Property In the Digital Age [Edition 2024]: A Practical Guide on Patents, Trademarks, Copyrights, and Protecting Confidential Information [AI Insight Bonus]](https://m.media-amazon.com/images/I/41WitElGixL._AC_SR100,100_QL65_.jpg)


