{"product_id":"security-privacy-and-digital-forensics-in-the-cloud-isbn-9781119053286","title":"Security, Privacy, and Digital Forensics in the Cloud","description":"\u003cp\u003e\u003cb\u003eIn a unique and systematic way, this book discusses the security and privacy aspects of the cloud, and the relevant cloud forensics.\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003eCloud computing is an emerging yet revolutionary technology that has been changing the way people live and work. However, with the continuous growth of cloud computing and related services, security and privacy has become a critical issue. Written by some of the top experts in the field, this book specifically discusses security and privacy of the cloud, as well as the digital forensics of cloud data, applications, and services. The first half of the book enables readers to have a comprehensive understanding and background of cloud security, which will help them through the digital investigation guidance and recommendations found in the second half of the book.\u003c\/p\u003e \u003cp\u003ePart One of \u003ci\u003eSecurity, Privacy and Digital Forensics in the\u003c\/i\u003e \u003ci\u003eCloud\u003c\/i\u003e covers cloud infrastructure security; confidentiality of data; access control in cloud IaaS; cloud security and privacy management; hacking and countermeasures; risk management and disaster recovery; auditing and compliance; and security as a service (SaaS). Part Two addresses cloud forensics – model, challenges, and approaches; cyberterrorism in the cloud; digital forensic process and model in the cloud; data acquisition; digital evidence management, presentation, and court preparation; analysis of digital evidence; and forensics as a service (FaaS).\u003c\/p\u003e \u003cul\u003e \u003cli\u003eThoroughly covers both security and privacy of cloud and digital forensics\u003c\/li\u003e \u003cli\u003eContributions by top researchers from the U.S., the European and other countries, and professionals active in the field of information and network security, digital and computer forensics, and cloud and big data\u003c\/li\u003e \u003cli\u003eOf interest to those focused upon security and implementation, and incident management\u003c\/li\u003e \u003cli\u003eLogical, well-structured, and organized to facilitate comprehension\u003c\/li\u003e \u003c\/ul\u003e \u003cp\u003e\u003ci\u003eSecurity, Privacy and Digital Forensics in the\u003c\/i\u003e \u003ci\u003eCloud\u003c\/i\u003e is an ideal book for advanced undergraduate and master's-level students in information systems, information technology, computer and network forensics, as well as computer science. It can also serve as a good reference book for security professionals, digital forensics practitioners and cloud service providers.\u003c\/p\u003e \u003cp\u003eList of Contributors xv\u003c\/p\u003e \u003cp\u003e\u003cb\u003ePart I Cloud Security and Privacy 1\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003e\u003cb\u003e1 Introduction to the Cloud and Fundamental Security and Privacy Issues of the Cloud 3\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eHassan Takabi and Mohammad GhasemiGol\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e1.1 Introduction 3\u003c\/p\u003e \u003cp\u003e1.2 Cloud Computing and Security Issues 4\u003c\/p\u003e \u003cp\u003e1.3 Identity Security in the Cloud 9\u003c\/p\u003e \u003cp\u003e1.4 Information Security in the Cloud 9\u003c\/p\u003e \u003cp\u003e1.5 Cloud Security Standards 16\u003c\/p\u003e \u003cp\u003e1.6 Conclusion 20\u003c\/p\u003e \u003cp\u003eReferences 20\u003c\/p\u003e \u003cp\u003e\u003cb\u003e2 Cloud Infrastructure Security 23\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eMohammad GhasemiGol\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e2.1 Introduction 23\u003c\/p\u003e \u003cp\u003e2.2 Infrastructure Security in the Cloud 24\u003c\/p\u003e \u003cp\u003e2.3 Infrastructure Security Analysis in Some Clouds 31\u003c\/p\u003e \u003cp\u003e2.4 Protecting Cloud Infrastructure 45\u003c\/p\u003e \u003cp\u003e2.5 Conclusion 49\u003c\/p\u003e \u003cp\u003eReferences 49\u003c\/p\u003e \u003cp\u003e\u003cb\u003e3 Confidentiality of Data in the Cloud: Conflicts Between Security and Cost 51\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eNathalie Baracaldo and Joseph Glider\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e3.1 Introduction 51\u003c\/p\u003e \u003cp\u003e3.2 Background 51\u003c\/p\u003e \u003cp\u003e3.3 Confidentiality: Threats and Adversaries 54\u003c\/p\u003e \u003cp\u003e3.4 Achieving Data Confidentiality in Cloud Storage Systems 55\u003c\/p\u003e \u003cp\u003e3.5 Reducing Cloud Storage System Costs through Data‐Reduction Techniques 57\u003c\/p\u003e \u003cp\u003e3.6 Reconciling Data Reduction and Confidentiality 59\u003c\/p\u003e \u003cp\u003e3.7 Trusted Decrypter 62\u003c\/p\u003e \u003cp\u003e3.8 Future Directions for Cloud Storage Confidentiality with Low Cost 74\u003c\/p\u003e \u003cp\u003e3.9 Conclusions 76\u003c\/p\u003e \u003cp\u003eReferences 77\u003c\/p\u003e \u003cp\u003e\u003cb\u003e4 Access Control in Cloud IaaS 81\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eYun Zhang, Ram Krishnan, Farhan Patwa, and Ravi Sandhu\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e4.1 Introduction 81\u003c\/p\u003e \u003cp\u003e4.2 Background 82\u003c\/p\u003e \u003cp\u003e4.3 Access Control in OpenStack Cloud IaaS 83\u003c\/p\u003e \u003cp\u003e4.4 Access Control in AWS Cloud IaaS 90\u003c\/p\u003e \u003cp\u003e4.5 Access Control in Azure Cloud IaaS 99\u003c\/p\u003e \u003cp\u003e4.6 Conclusions 107\u003c\/p\u003e \u003cp\u003eReferences 107\u003c\/p\u003e \u003cp\u003e\u003cb\u003e5 Cloud Security and Privacy Management 109\u003cbr\u003e\u003c\/b\u003e\u003ci\u003ePatrick Kamongi\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e5.1 Introduction and Background 109\u003c\/p\u003e \u003cp\u003e5.2 Security and Privacy Analysis 111\u003c\/p\u003e \u003cp\u003e5.3 Best Security Practices and Recommendation 117\u003c\/p\u003e \u003cp\u003e5.4 Use Case Example: Microsoft Office 365, SaaS Version 118\u003c\/p\u003e \u003cp\u003e5.5 Current Trends and Future Direction 125\u003c\/p\u003e \u003cp\u003e5.6 Related Works 125\u003c\/p\u003e \u003cp\u003e5.7 Conclusion 126\u003c\/p\u003e \u003cp\u003eAcknowledgments 126\u003c\/p\u003e \u003cp\u003eReferences 126\u003c\/p\u003e \u003cp\u003e\u003cb\u003e6 Hacking and Countermeasures in the Cloud 129\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eFarzaneh Abazari, Hassan Takabi, and Morteza Analoui\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e6.1 Introduction 129\u003c\/p\u003e \u003cp\u003e6.2 Background 130\u003c\/p\u003e \u003cp\u003e6.3 Cloud Security Threats 130\u003c\/p\u003e \u003cp\u003e6.4 Cloud Security Countermeasures 134\u003c\/p\u003e \u003cp\u003e6.5 Hacking the Cloud: Reality Check 136\u003c\/p\u003e \u003cp\u003e6.6 Future of Cloud Security 137\u003c\/p\u003e \u003cp\u003e6.6.1 Cloud Security for the IoT 138\u003c\/p\u003e \u003cp\u003e6.7 Conclusions 139\u003c\/p\u003e \u003cp\u003eReferences 139\u003c\/p\u003e \u003cp\u003e\u003cb\u003e7 Risk Management and Disaster Recovery in the Cloud 143\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eSaman Zonouz\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e7.1 Introduction 143\u003c\/p\u003e \u003cp\u003e7.2 Background 143\u003c\/p\u003e \u003cp\u003e7.3 Consequence‐ Centric Security Assessment 145\u003c\/p\u003e \u003cp\u003e7.4 Future Directions 154\u003c\/p\u003e \u003cp\u003e7.5 Conclusions 155\u003c\/p\u003e \u003cp\u003e\u003cb\u003e8 Cloud Auditing and Compliance 157\u003cbr\u003e\u003c\/b\u003e\u003ci\u003ePaolina Centonze\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e8.1 Introduction 157\u003c\/p\u003e \u003cp\u003e8.2 Background 157\u003c\/p\u003e \u003cp\u003e8.3 Cloud Auditing 162\u003c\/p\u003e \u003cp\u003e8.4 Cloud Compliance 170\u003c\/p\u003e \u003cp\u003e8.5 Future Research Directions for Cloud Auditing and Compliance 183\u003c\/p\u003e \u003cp\u003e8.6 Conclusion 184\u003c\/p\u003e \u003cp\u003eReferences 185\u003c\/p\u003e \u003cp\u003eFurther Reading 187\u003c\/p\u003e \u003cp\u003e\u003cb\u003e9 Security‐as‐a‐Service (SECaaS) in the Cloud 189\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eSaman Taghavi Zargar, Hassan Takabi, and Jay Iyer\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e9.1 Introduction 189\u003c\/p\u003e \u003cp\u003e9.2 Related Work 192\u003c\/p\u003e \u003cp\u003e9.3 Security‐ as‐a‐Service Framework 194\u003c\/p\u003e \u003cp\u003e9.4 Conclusions 199\u003c\/p\u003e \u003cp\u003eReferences 199\u003c\/p\u003e \u003cp\u003e\u003cb\u003ePart II Cloud Forensics 201\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003e\u003cb\u003e10 Cloud Forensics: Model, Challenges, and Approaches 203\u003cbr\u003e\u003c\/b\u003eLei Chen, Nhien‐An Le‐Khac, Sebastian Schlepphorst, and Lanchuan Xu\u003c\/p\u003e \u003cp\u003e10.1 Introduction 203\u003c\/p\u003e \u003cp\u003e10.2 Background 204\u003c\/p\u003e \u003cp\u003e10.3 Process and Model of Cloud Forensics 207\u003c\/p\u003e \u003cp\u003e10.4 Cloud Forensics Methods, Approaches, and Tools 211\u003c\/p\u003e \u003cp\u003e10.5 Challenges in Cloud Forensics 213\u003c\/p\u003e \u003cp\u003e10.6 Conclusions 214\u003c\/p\u003e \u003cp\u003eReferences 214\u003c\/p\u003e \u003cp\u003e\u003cb\u003e11 Cyberterrorism in the Cloud: Through a Glass Darkly 217\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eBarry Cartwright, George R. S. Weir, and Richard Frank\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e11.1 Introduction 217\u003c\/p\u003e \u003cp\u003e11.2 What is Terrorism? 218\u003c\/p\u003e \u003cp\u003e11.3 Defining Cyberterrorism 220\u003c\/p\u003e \u003cp\u003e11.4 Cyberterrorism vs. Terrorist Use of Cyberspace 221\u003c\/p\u003e \u003cp\u003e11.5 Cyberterrorism in the Cloud 222\u003c\/p\u003e \u003cp\u003e11.6 The Benefits of the Cloud to Cyberterrorists 225\u003c\/p\u003e \u003cp\u003e11.7 Cyberlaw and Cyberterrorism 227\u003c\/p\u003e \u003cp\u003e11.8 Conclusion: Through a Glass Darkly 230\u003c\/p\u003e \u003cp\u003eReferences 232\u003c\/p\u003e \u003cp\u003e\u003cb\u003e12 Digital Forensic Process and Model in the Cloud 239\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eNhien‐An Le‐Khac, James Plunkett, M‐Tahar Kechadi, and Lei Chen\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e12.1 Introduction 239\u003c\/p\u003e \u003cp\u003e12.2 Digital Forensics Models 240\u003c\/p\u003e \u003cp\u003e12.3 Cloud Forensics Process and Model 243\u003c\/p\u003e \u003cp\u003e12.4 Toward a New Cloud Forensics Model 246\u003c\/p\u003e \u003cp\u003e12.5 Evaluation and Analysis 251\u003c\/p\u003e \u003cp\u003e12.6 Conclusion 253\u003c\/p\u003e \u003cp\u003eReferences 253\u003c\/p\u003e \u003cp\u003e\u003cb\u003e13 Data Acquisition in the Cloud 257\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eNhien‐An Le‐Khac, Michel Mollema, Robert Craig, Steven Ryder, and Lei Chen\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e13.1 Introduction 257\u003c\/p\u003e \u003cp\u003e13.2 Background 258\u003c\/p\u003e \u003cp\u003e13.3 Data Center as a Source of Evidence 259\u003c\/p\u003e \u003cp\u003e13.4 Cloud Service Providers: Essential Requirements, Governance, and Challenges 260\u003c\/p\u003e \u003cp\u003e13.4.1 Business Model 261\u003c\/p\u003e \u003cp\u003e13.5 Cloud Storage Forensics 264\u003c\/p\u003e \u003cp\u003e13.6 Case Study 1: Finding Data Centers on the Internet in Data‐Dense Environments 265\u003c\/p\u003e \u003cp\u003e13.7 Case Study 2: Cloud Forensics for the Amazon Simple Storage Service 274\u003c\/p\u003e \u003cp\u003e13.8 Conclusion 281\u003c\/p\u003e \u003cp\u003eReferences 281\u003c\/p\u003e \u003cp\u003e\u003cb\u003e14 Digital Evidence Management, Presentation, and Court Preparation in the Cloud: A Forensic Readiness Approach 283\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eLucia De Marco, Nhien‐An Le‐Khac, and M‐Tahar Kechadi\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e14.1 Introduction 283\u003c\/p\u003e \u003cp\u003e14.2 Cloud Forensics and Challenges 284\u003c\/p\u003e \u003cp\u003e14.3 Digital Forensics Readiness 285\u003c\/p\u003e \u003cp\u003e14.4 Cloud Forensics Readiness 287\u003c\/p\u003e \u003cp\u003e14.5 Forensics Readiness in Evidence Management, Presentation, and Court Preparation 291\u003c\/p\u003e \u003cp\u003e14.6 Conclusion 295\u003c\/p\u003e \u003cp\u003eReferences 296\u003c\/p\u003e \u003cp\u003e\u003cb\u003e15 Analysis of Cloud Digital Evidence 301\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eIrfan Ahmed and Vassil Roussev\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e15.1 Introduction 301\u003c\/p\u003e \u003cp\u003e15.2 Background 305\u003c\/p\u003e \u003cp\u003e15.3 Current Approaches 307\u003c\/p\u003e \u003cp\u003e15.4 Proposed Comprehensive Approaches 312\u003c\/p\u003e \u003cp\u003e15.5 Discussion 317\u003c\/p\u003e \u003cp\u003e15.6 Conclusions 317\u003c\/p\u003e \u003cp\u003eReferences 318\u003c\/p\u003e \u003cp\u003e\u003cb\u003e16 Forensics‐as‐a‐Service (FaaS) in the State‐of‐the‐Art Cloud 321\u003cbr\u003e\u003c\/b\u003e\u003ci\u003eAvinash Srinivasan and Frank Ferrese\u003c\/i\u003e\u003c\/p\u003e \u003cp\u003e16.1 Introduction 321\u003c\/p\u003e \u003cp\u003e16.2 Background and Motivation 323\u003c\/p\u003e \u003cp\u003e16.3 State of the Art in Parallel and Distributed Forensic Analysis 325\u003c\/p\u003e \u003cp\u003e16.4 Conclusion and Future Research Direction 334\u003c\/p\u003e \u003cp\u003eReferences 335\u003c\/p\u003e \u003cp\u003eIndex 339\u003c\/p\u003e  \u003cp\u003e\u003cb\u003eLEI CHEN, P\u003csmall\u003eH\u003c\/small\u003eD,\u003c\/b\u003e is tenured Associate Professor with the Department of Information Technology at Georgia Southern University, Statesboro, Georgia, USA. \u003c\/p\u003e\u003cp\u003e\u003cb\u003eHASSAN TAKABI, P\u003csmall\u003eH\u003c\/small\u003eD,\u003c\/b\u003e is tenure-track Assistant Professor with the Department of Computer Science and Engineering, University of North Texas, Denton, Texas, USA. \u003c\/p\u003e\u003cp\u003e\u003cb\u003eNHIEN-AN LE-KHAC, P\u003csmall\u003eH\u003c\/small\u003eD,\u003c\/b\u003e is Lecturer with the School of Computer Science at University College Dublin, Ireland. \t   \u003c\/p\u003e\u003cp\u003e\u003cb\u003eIn a unique and systematic way, this book discusses the security and privacy aspects of the cloud, and the relevant cloud forensics\u003c\/b\u003e \u003c\/p\u003e\u003cp\u003eCloud computing is an emerging yet revolutionary technology that has been changing the way people live and work. However, with the continuous growth of cloud computing and related services, security and privacy has become a critical issue. Written by some of the top experts in the field, this book specifically discusses security and privacy of the cloud, as well as the digital forensics of cloud data, applications, and services. The first half of the book enables readers to have a comprehensive understanding and background of cloud security, which will help them through the digital investigation, guidance and recommendations found in the second half of the book. \u003c\/p\u003e\u003cp\u003ePart I of \u003ci\u003eSecurity, Privacy, and Digital Forensics in the Cloud\u003c\/i\u003e covers cloud infrastructure security; confidentiality of data; access control in cloud IaaS; cloud security and privacy management; hacking and countermeasures; risk management and disaster recovery; auditing and compliance; and security as a service (SaaS). Part II addresses cloud forensics  model, challenges, and approaches; cyberterrorism in the cloud; digital forensic process and model in the cloud; data acquisition; digital evidence management, presentation, and court preparation; analysis of digital evidence; and forensics as a service (FaaS). \u003c\/p\u003e\u003cul\u003e \u003cli\u003eThoroughly covers both security and privacy of cloud and digital forensics\u003c\/li\u003e \u003cli\u003eContributions by top researchers from the U.S., Europe and elsewhere and   professionals active in the field of information and network security, digital and computer   forensics, and cloud and big data\u003c\/li\u003e \u003cli\u003eOf interest to those focused upon security and implementation, and incident management\u003c\/li\u003e \u003cli\u003eLogical, well-structured, and organized to facilitate comprehension\u003c\/li\u003e \t\u003c\/ul\u003e \u003cp\u003e\u003ci\u003eSecurity, Privacy, and Digital Forensics in the Cloud\u003c\/i\u003e is an ideal book for advanced undergraduate and masters-level students in information systems, information technology, computer and network forensics, as well as computer science. It can also serve as a good reference book for security professionals, digital forensics practitioners and cloud service providers.\u003c\/p\u003e","brand":"Wiley","offers":[{"title":"Default Title","offer_id":47989998584037,"sku":"NP9781119053286","price":145.95,"currency_code":"USD","in_stock":false}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/1842\/7735\/files\/9781119053286.jpg?v=1761786161","url":"https:\/\/k12savings.com\/products\/security-privacy-and-digital-forensics-in-the-cloud-isbn-9781119053286","provider":"K12savings","version":"1.0","type":"link"}