Review of The New School of Information Security Posted
Amazon.com just published my four star review of The New School of Information Security by Adam Shostack and Andrew Stewart. From the review:
If you don't "get" Allan Schiffman's 2004 phrase "amateurs study cryptography; professionals study economics," if you don't know who Prof. Ross Anderson is, and if you think anti-virus and a firewall are required simply because they are "best practices," you need to read The New School of Information Security (TNSOIS). If you already recognize why I highlight these issues, you will not find much beyond an explanation of these central tenets in TNSOIS.
If you don't "get" Allan Schiffman's 2004 phrase "amateurs study cryptography; professionals study economics," if you don't know who Prof. Ross Anderson is, and if you think anti-virus and a firewall are required simply because they are "best practices," you need to read The New School of Information Security (TNSOIS). If you already recognize why I highlight these issues, you will not find much beyond an explanation of these central tenets in TNSOIS.
Comments
, this only serves to highlight that the second part of the book is low in content and ideas.
Your review inspired me to do one as well, but it is more a general observation of the whole industry and raising a query about innovation in general.