
Enjoy fast, free delivery, exclusive deals, and award-winning movies & TV shows with Prime
Try Prime
and start saving today with fast, free delivery
Amazon Prime includes:
Fast, FREE Delivery is available to Prime members. To join, select "Try Amazon Prime and start saving today with Fast, FREE Delivery" below the Add to Cart button.
Amazon Prime members enjoy:- Cardmembers earn 5% Back at Amazon.com with a Prime Credit Card.
- Unlimited Free Two-Day Delivery
- Streaming of thousands of movies and TV shows with limited ads on Prime Video.
- A Kindle book to borrow for free each month - with no due dates
- Listen to over 2 million songs and hundreds of playlists
- Unlimited photo storage with anywhere access
Important: Your credit card will NOT be charged when you start your free trial or if you cancel during the trial period. If you're happy with Amazon Prime, do nothing. At the end of the free trial, your membership will automatically upgrade to a monthly membership.
Buy new:
-30% $69.97$69.97
Ships from: Amazon.com Sold by: Amazon.com
Save with Used - Good
$56.91$56.91
Ships from: Amazon Sold by: M1P Products

Download the free Kindle app and start reading Kindle books instantly on your smartphone, tablet, or computer - no Kindle device required.
Read instantly on your browser with Kindle for Web.
Using your mobile phone camera - scan the code below and download the Kindle app.
Security Controls Evaluation, Testing, and Assessment Handbook 2nd Edition
Purchase options and add-ons
Security Controls Evaluation, Testing, and Assessment Handbook, Second Edition, provides a current and well-developed approach to evaluate and test IT security controls to prove they are functioning correctly. This handbook discusses the world of threats and potential breach actions surrounding all industries and systems. Sections cover how to take FISMA, NIST Guidance, and DOD actions, while also providing a detailed, hands-on guide to performing assessment events for information security professionals in US federal agencies. This handbook uses the DOD Knowledge Service and the NIST Families assessment guides as the basis for needs assessment, requirements and evaluation efforts.
- Provides direction on how to use SP800-53A, SP800-115, DOD Knowledge Service, and the NIST Families assessment guides to implement thorough evaluation efforts
- Shows readers how to implement proper evaluation, testing, assessment procedures and methodologies, with step-by-step walkthroughs of all key concepts
- Presents assessment techniques for each type of control, provides evidence of assessment, and includes proper reporting techniques
- ISBN-100128184272
- ISBN-13978-0128184271
- Edition2nd
- PublisherAcademic Press
- Publication dateDecember 5, 2019
- LanguageEnglish
- Dimensions8.5 x 1.57 x 11 inches
- Print length788 pages
Frequently bought together

Customers who viewed this item also viewed
Editorial Reviews
Review
A current and well-developed approach to the evaluation and testing of security controls to prove they are functioning correctly in today’s IT systems
From the Back Cover
Security Controls Evaluation, Testing, and Assessment Handbook provides a current and well-developed approach to evaluation and testing of security controls to prove they are functioning correctly in today's IT systems. This handbook shows you how to evaluate, examine, and test installed security controls in the world of threats and potential breach actions surrounding all industries and systems. If a system is subject to external or internal threats and vulnerabilities - which most are - then this book will provide a useful handbook for how to evaluate the effectiveness of the security controls that are in place.
Security Controls Evaluation, Testing, and Assessment Handbook shows you what your security controls are doing and how they are standing up to various inside and outside threats. This handbook provides guidance and techniques for evaluating and testing various computer security controls in IT systems.
Author Leighton Johnson shows you how to take FISMA, NIST Guidance, and DOD actions and provide a detailed, hands-on guide to performing assessment events for information security professionals who work with US federal agencies. As of March 2014, all agencies are following the same guidelines under the NIST-based Risk Management Framework. This handbook uses the DOD Knowledge Service and the NIST Families assessment guides as the basis for needs assessment, requirements, and evaluation efforts for all security controls. Each of the controls can and should be evaluated in its own unique way, through testing, examination, and key personnel interviews.
About the Author
Product details
- Publisher : Academic Press; 2nd edition (December 5, 2019)
- Language : English
- Paperback : 788 pages
- ISBN-10 : 0128184272
- ISBN-13 : 978-0128184271
- Item Weight : 4.65 pounds
- Dimensions : 8.5 x 1.57 x 11 inches
- Best Sellers Rank: #1,431,526 in Books (See Top 100 in Books)
- #120 in Content Management
- #302 in Management Information Systems
- #617 in Forensic Science Law
- Customer Reviews:
Customer reviews
- 5 star4 star3 star2 star1 star5 star74%17%0%0%9%74%
- 5 star4 star3 star2 star1 star4 star74%17%0%0%9%17%
- 5 star4 star3 star2 star1 star3 star74%17%0%0%9%0%
- 5 star4 star3 star2 star1 star2 star74%17%0%0%9%0%
- 5 star4 star3 star2 star1 star1 star74%17%0%0%9%9%
Customer Reviews, including Product Star Ratings help customers to learn more about the product and decide whether it is the right product for them.
To calculate the overall star rating and percentage breakdown by star, we don’t use a simple average. Instead, our system considers things like how recent a review is and if the reviewer bought the item on Amazon. It also analyzed reviews to verify trustworthiness.
Learn more how customers reviews work on AmazonTop reviews from the United States
There was a problem filtering reviews. Please reload the page.
- Reviewed in the United States on December 10, 2019I found that his additional insight provided useful information relative to understanding the intent of the 600 + RMF controls. I've spent numerous years attempting to interpret the DISA and NIST documents. This book provided additional information that can be used to ensure proper compliance while assessing RMF controls.
- Reviewed in the United States on December 3, 2019This book is pure garbage and the author and publisher should be ashamed for charging money for this item. Essentially, the author just summarizes and recaps information currently available in the FREE NIST volumes. Yes, copies everything and changes a word here and there...tables, graphics, etc. Even the sample assessment formats come from the official documents online. Everything that is currently available for FREE. There is ZERO need to purchase this book. Want a cross-walk table between NIST 800-53a and ISO, just download the FREE NIST 800-53a volume, the table is there word for word, you do not need it from this book. Want to know how to evaluate security controls just go to the FREE NIST volume. I am so upset at the lack of honesty here, but kudos to the author for being creative and using FREE material to sucker people in (I feel for it). So bottom line, AVOID THIS BOOK. Download NIST 800-53a, 800-171, 800-30, 800-39, etc. from the web. EVERYTHING in this book is available online. No need to pay for it.