Reader small image

You're reading from  Cybersecurity Architect's Handbook

Product typeBook
Published inMar 2024
PublisherPackt
ISBN-139781803235844
Edition1st Edition
Right arrow
Author (1)
Lester Nichols
Lester Nichols
author image
Lester Nichols

Lester E. Nichols III currently resides in North Texas and is the Director Security Architecture/VP Cybersecurity Operations at JPMorgan Chase & Co. Previous experience includes the Director of IT Infrastructure and Security for a development company, SOC oversight manager/Senior Infrastructure Officer within DHS and previous experience in Local/Federal/DoD/financial sectors. Lester has post graduate education with a Master's of Science Degree in Information Assurance from Norwich University, the oldest private military school in the United States, and multiple industry certifications including CISSP and SANS certs, as well as others. Lester is also a contributing author to the Computer Security Handbook 5th-6th Editions by Wiley Press.
Read more about Lester Nichols

Right arrow

Summary

This chapter provided an overview of key threats, risks, and governance factors that CSAs must consider when designing security architectures and programs. This included the following:

  • Threat landscape:
    • Architects must have in-depth knowledge of threat actors, their motivations, and TTPs. Staying current on emerging threats through TI is critical.
    • Threat modeling using approaches such as STRIDE provides a systematic way to identify vulnerabilities and attack vectors.
  • Risk management:
    • Risk assessments, both initial and residual, are essential to identify, analyze, and prioritize risks. Special consideration should be given to risks such as data breaches, ransomware, and third-party vendors.
    • Risk treatment involves selecting mitigation strategies to reduce unacceptable risks. This may include controls, process changes, or risk transfer.
  • Governance:
    • Policies, standards, and procedures form the foundation of cybersecurity governance. Compliance with regulations such...
lock icon
The rest of the page is locked
Previous PageNext Chapter
You have been reading a chapter from
Cybersecurity Architect's Handbook
Published in: Mar 2024Publisher: PacktISBN-13: 9781803235844

Author (1)

author image
Lester Nichols

Lester E. Nichols III currently resides in North Texas and is the Director Security Architecture/VP Cybersecurity Operations at JPMorgan Chase & Co. Previous experience includes the Director of IT Infrastructure and Security for a development company, SOC oversight manager/Senior Infrastructure Officer within DHS and previous experience in Local/Federal/DoD/financial sectors. Lester has post graduate education with a Master's of Science Degree in Information Assurance from Norwich University, the oldest private military school in the United States, and multiple industry certifications including CISSP and SANS certs, as well as others. Lester is also a contributing author to the Computer Security Handbook 5th-6th Editions by Wiley Press.
Read more about Lester Nichols