Favorite Security Books

Favorite Security Books

Here is a list of my top 10 favorite books on IT Cybersecurity, which I assembled.

Hope you find these useful and interesting.


(1) “Art of deception” by Kevin Mitnick is a classic book on Social Engineering - how to trick people in revealing information?

https://www.amazon.com/Art-Deception-Controlling-Element-Security/dp/076454280X


(2)?

“A Hacker’s mind : How the powerful bend society’s rules and how to bend them back”

Legendary cybersecurity expert?Bruce Schneier reveals how using a hacker’s mindset can change how you think about your life and the world.

https://www.amazon.com/Hackers-Mind-Powerful-Societys-Rules/dp/0393866661


(3) “Network Security Assessment: Know Your Network” by Chris McNab

This book is a bit technical but contains a lot of great recipes for learning how to perform network security assessments

https://www.amazon.com/Network-Security-Assessment-Know-Your/dp/149191095X



(4) “Linux Basics for Hackers: Getting Started with Networking, Scripting, and Security in Kali”

Kali linux is a distribution with lots of great hacking tools - that you want to download and experiment with.

https://www.amazon.com/Linux-Basics-Hackers-Networking-Scripting/dp/1593278551



(5) “American Kingpin: The Epic Hunt for the Criminal Mastermind Behind the Silk Road” by Nick Bilton

It’s a really exhilarating read about how FBI arrested the Silk Road dark web marketplace mastermind.

https://www.amazon.com/American-Kingpin-Criminal-Mastermind-Behind/dp/1591848148/


(6)?“Confident Cyber Security: How to Get Started in Cyber Security and Futureproof Your Career” by Jessica Barker

https://www.amazon.com/Confident-Cyber-Security-Started-Futureproof

Great introductory overview to the world of cybersecurity.


(7) “Spam Nation: The Inside Story of Organized Cybercrime―from Global Epidemic to Your Front Door”

Excellent expose by Brian Krebs who unmasks cybercriminal masterminds and explains how Spam works.

https://www.amazon.com/Spam-Nation-Organized-Cybercrime-Epidemic

(8) “Countdown to Zero Day : StuxNet and the Launch of the World’s First Digital Weapon” by Kim Setter.

https://www.amazon.com/Countdown-Zero-Day-Stuxnet-Digital/dp/077043617X

Kim Zetter tells the story behind the virus that sabotaged Iran’s nuclear efforts and shows how its existence has ushered in a new age of warfare—one in which a digital attack can have the same destructive capability as a megaton bomb.

?


(9) “Security Metrics: Replacing Fear, Uncertainty, and Doubt”

Andy Jaquith is a great thought leader in the space and?

He compiled an excellent guide to using security metrics in the enterprise.

https://www.amazon.com/Security-Metrics-Replacing-Uncertainty-Doubt/dp/0321349989


(10) This final recommendation is “biased” since it’s my own book : but I spoke to dozens of top CISOs, CEOs, and Board members and compiled it into an encyclopedia about how to bridge communication gap between CISOs and the Board members.

The Perfect Scorecard: Getting An 'A' in Cybersecurity From Your Board Of Directors” by Aleksandr Yampolskiy

https://www.amazon.com/Perfect-Scorecard-Getting-Cybersecurity-Directors/dp/0578930447/


I would love to know if there are any other “must read” recommendations on cybersecurity, which I missed?

Ken Peterson, CTPRP

CEO and Founder, Churchill & Harriman, Board Advisor Cybersecurity Risk Management

1 年

Nice. I have to add any book by Richard Clarke.

回复
Cindy Zhou

Chief Marketing Officer at KnowBe4 | Advisor | Board Member | Revenue Enablement & Operations | Technologist

1 年

One more suggestion: Kevin Mitnick's Ghost in the Wires. https://a.co/d/1jFQ1du

回复
Angelia Bingham-Love

Chief Communications Officer (VP/SVP/Chief) I Global Corporate Comms I Corporate Affairs I Brand & Reputation I ex @DellTechnologies @Delphix @SecurityScorecard @Secureworks

1 年

I would add "The Lazarus Heist," by Geoff White. He's a former/sometimes BBC reporter. I had the chance to hear him voice over a great deal of this book - fascinating to see how quickly billions of dollars could be stolen/and the strong network effect of threat actors. https://www.amazon.com/Lazarus-Heist-Hollywood-Finance-Inside/dp/024155425X

回复

I have to add The Cuckoo's Egg by Clifford Stoll. A great oldie from the 80s — a true international spy thriller about a hacker who broke into Lawrence Berkeley National Laboratory.

要查看或添加评论,请登录

Aleksandr Yampolskiy的更多文章

  • Pros an Cons of "Founder Mode"

    Pros an Cons of "Founder Mode"

    I recently came across an article by Paul Graham "Founder Mode" (https://paulgraham.com/foundermode.

    6 条评论
  • De-personalizing decision making

    De-personalizing decision making

    Here's a post I sent to our team on one important cultural attribute at SecurityScorecard :"How do we depersonalize…

    7 条评论
  • RSA 2024 Insights

    RSA 2024 Insights

    I just returned from an exciting RSA 2024 Conference, and wow, what an experience! Here are some of the insights I had…

    13 条评论
  • Hunger

    Hunger

    The one quality I look for above all others when hiring people is 'hunger.' In my humble view, hunger is often a bigger…

    6 条评论
  • 5 Essential Tips for Staying Safe Online

    5 Essential Tips for Staying Safe Online

    This article has first appeared on https://www.meetup.

  • On Recent Events In Our Community

    On Recent Events In Our Community

    Dear all: I wanted to take a few moments to address the recent events here in the US on so many of our minds today…

  • Playing chess moves for your business in uncertain times

    Playing chess moves for your business in uncertain times

    "Playing chess moves for your business in uncertain times" From Aleksandr Yampolskiy, CEO and co-founder of…

    1 条评论
  • The 6 Best Cybersecurity Books for Summer 2018

    The 6 Best Cybersecurity Books for Summer 2018

    Summer is a great time to catch up on reading at the beach. Here are my six recommendations for books, related to cyber…

    3 条评论
  • Why Security Ratings and Credit Ratings Share A Lot in Common

    Why Security Ratings and Credit Ratings Share A Lot in Common

    General Patton has once said: "Prepare for the unknown by studying how others in the past have coped with the…

    6 条评论
  • We need a simpler language for "blockchain" and "security jargon"

    We need a simpler language for "blockchain" and "security jargon"

    In my first year of a Ph.D.

    7 条评论

社区洞察