Rassoul Ghaznavi-zadeh, the author, has been an IT security consultant since 1999. He started as a network and security engineer and developed his knowledge around enterprise business, security governance and also standards and frameworks like ISO, COBIT, HIPPA, SOC and PCI. He has helped a lot of enterprise organizations to have a safe and secure environment by testing, auditing and providing recommendations. He has also other security books around penetration and enterprise security. Rassoul holds multiple international certificates around security and architecting enterprise IT.