The Art of Deception: Controlling the Human Element of Security
by Kevin D. MitnickExplore social engineering tactics and their impact on security audits, enhancing your understanding of human vulnerabilities.
Security Engineering: A Guide to Building Dependable Distributed Systems
by Ross J. AndersonA foundational text that delves into security principles, providing frameworks essential for effective risk management and audits.
The Web Application Hacker's Handbook: Finding and Exploiting Security Flaws
by Dafydd Stuttard and Marcus PintoMaster practical penetration testing techniques tailored for web applications, crucial for modern security assessments.
Risk Management Framework: A Lab-Based Approach to Securing Information Systems
by James BroadThis book offers hands-on risk management strategies that align with security audits, enhancing your practical skills.
Incident Response & Computer Forensics
by Jason Luttgens, Matthew Pepe, and Kevin MandiaLearn about incident response protocols, crucial for developing effective security improvement plans post-audit.
The Cybersecurity Playbook: How Every Leader and Employee Can Contribute to a Culture of Security
by Allan AlfordFosters a culture of security awareness, essential for stakeholder engagement in risk management and audits.
Hacking: The Art of Exploitation
by Jon EricksonProvides deep insights into hacking techniques, enhancing your skills in penetration testing and security assessments.
Security Policies and Procedures: Principles and Practices
by Michael E. Whitman and Herbert J. MattordA comprehensive guide to developing and implementing security policies, vital for effective risk management.