Leanpub Header

Skip to main content

Filters

Category: "Security Engineering"

Books

  1. Security engineering is about building systems that stay secure when things go wrong. This book covers the fundamentals of secure applications, infrastructure and operations through practical examples, real breaches and proven security practices.

  2. The Definitive Guide to SOC 2
    A Complete Guide to Designing, Implementing, and Auditing a SOC 2 Compliance Program
    Steve Publications

    SOC 2 doesn’t have to be confusing. This practical handbook walks you through building, documenting and auditing a compliance program from the ground up. Packed with real-world examples, templates and checklists, it gives founders, security teams, engineers and auditors a clear path from first steps to continuous compliance.

  3. Cybersecurity is much more than hacking, as it is often portrayed in movies. At its core, cybersecurity is about protecting people, businesses, governments, and communities from digital threats. Throughout this book, you'll discover how computers communicate, how networks function, how attackers identify vulnerabilities, and how security professionals defend systems against those attacks.

  4. Engineering Secure Sandboxes for AI Coding Agents
    A Technical Guide to Containment, Isolation, and Safe Execution for Autonomous Code-Generating Systems
    Steve Publications

    AI coding agents can build, run and break things at machine speed. This book shows you how to contain them safely. From Linux isolation and microVMs to WebAssembly, threat modeling and incident response, you’ll learn how to design production-grade sandboxes that let autonomous agents execute code without putting your systems at risk.

  5. Modern Cloud Security Engineering
    A Practical Guide to Securing AWS, Azure, and Google Cloud
    Steve Publications

    Cloud security is built, not bought. This practical guide goes beyond checklists and compliance to teach the engineering principles behind secure cloud environments. Learn how to design resilient identity systems, protect workloads, secure data, detect threats, and respond to incidents across AWS, Microsoft Azure, and Google Cloud using production-tested techniques and real-world architectures.