Buy new:
$27.99
FREE delivery: Saturday, April 6 on orders over $35.00 shipped by Amazon.
Ships from: Amazon.com
Sold by: Amazon.com
List Price: $50.00 Details

The List Price is the suggested retail price of a new product as provided by a manufacturer, supplier, or seller. Except for books, Amazon will display a List Price if the product was purchased by customers on Amazon or offered by other retailers at or above the List Price in at least the past 90 days. List prices may not necessarily reflect the product's prevailing market price.
Learn more
Save: $22.01 (44%)
Get Fast, Free Shipping with Amazon Prime FREE Returns
FREE delivery Saturday, April 6 on orders shipped by Amazon over $35
Or fastest delivery Friday, April 5. Order within 8 hrs 42 mins
In Stock
$$27.99 () Includes selected options. Includes initial monthly payment and selected options. Details
Price
Subtotal
$$27.99
Subtotal
Initial payment breakdown
Shipping cost, delivery date, and order total (including tax) shown at checkout.
FREE delivery April 16 - May 1. Details
Used: Good | Details
Sold by Reuseaworld
Condition: Used: Good
Comment: This book is in good condition with some minor wear to the spine and/or cover. Damaged cover. The cover of is slightly damaged for instance a torn or bent corner. Grubby book may have mild dirt or some staining, mostly on the edges of pages.
Access codes and supplements are not guaranteed with used items.
Loading your book clubs
There was a problem loading your book clubs. Please try again.
Not in a club? Learn more
Amazon book clubs early access

Join or create book clubs

Choose books together

Track your books
Bring your club to Amazon Book Clubs, start a new book club and invite your friends to join, or find a club that’s right for you for free.
Kindle app logo image

Download the free Kindle app and start reading Kindle books instantly on your smartphone, tablet, or computer - no Kindle device required.

Read instantly on your browser with Kindle for Web.

Using your mobile phone camera - scan the code below and download the Kindle app.

QR code to download the Kindle App

Follow the author

Something went wrong. Please try your request again later.

Alice and Bob Learn Application Security 1st Edition

4.6 out of 5 stars 190

{"desktop_buybox_group_1":[{"displayPrice":"$27.99","priceAmount":27.99,"currencySymbol":"$","integerValue":"27","decimalSeparator":".","fractionalValue":"99","symbolPosition":"left","hasSpace":false,"showFractionalPartIfEmpty":true,"offerListingId":"XV7ll%2Bf9AB4s5z%2FM9ugBJ3CkHKFhv%2Fw4UEp15YhkshWuLTQ3Nlngt19gxoaXiSdMB9R3tNto%2BHx%2BddTXaI%2BfAuyHJOEV9AJrQ0%2BZCHVPydNF1BLBpMQAqqwkbMbNwGPK11GLmN3NU6%2B36K97DztKmQ%3D%3D","locale":"en-US","buyingOptionType":"NEW","aapiBuyingOptionIndex":0}, {"displayPrice":"$22.81","priceAmount":22.81,"currencySymbol":"$","integerValue":"22","decimalSeparator":".","fractionalValue":"81","symbolPosition":"left","hasSpace":false,"showFractionalPartIfEmpty":true,"offerListingId":"XV7ll%2Bf9AB4s5z%2FM9ugBJ3CkHKFhv%2Fw40Ky%2FAEsIL9qEfSLQNgQj38FE2PDwBHMUn99F22ZadmWjAq4CSAEmRTZo0oKvf7iyufnY9KteDNBo870FhSPWmghD4QeF0CNbxeJJkcePnGDY9%2BsP7OWmXQ1CBTy3gKI2pqYlMff8tbQW7e4j1iiiU%2FaqNBhQXZAm","locale":"en-US","buyingOptionType":"USED","aapiBuyingOptionIndex":1}]}

Purchase options and add-ons


Amazon First Reads | Editors' picks at exclusive prices

Frequently bought together

$27.99
Get it as soon as Saturday, Apr 6
In Stock
Ships from and sold by Amazon.com.
+
$36.04
Only 1 left in stock - order soon.
Ships from and sold by Woodcastle Books.
+
$29.95
Get it as soon as Monday, Apr 8
Only 5 left in stock - order soon.
Sold by Elmira Bookshop and ships from Amazon Fulfillment.
Total price:
To see our price, add these items to your cart.
Details
Added to Cart
Some of these items ship sooner than the others.
Choose items to buy together.

From the Publisher

application security, appsec, secops, devsec, devsecops, secure coding, secure application design

application security, appsec, secops, devsec, devsecops, secure coding, secure application design

application security, appsec, secops, devsec, devsecops, secure coding, secure application design

application security, appsec, secops, devsec, devsecops, secure coding, secure application design

application security, appsec, secops, devsec, devsecops, secure coding, secure application design

application security, appsec, secops, devsec, devsecops, secure coding, secure application design

application security, appsec, secops, devsec, devsecops, secure coding, secure application design

Editorial Reviews

Review

“Tanya knows her stuff. She has a huge depth of experience and expertise in application security, DevSecOps, and cloud security. We can all learn a ton of stuff from Tanya, so you should read her book!”

-Dafydd Stuttard, best-selling co-author of The Web Application Hacker's Handbook, creator of Burp Suite

“I learned so much from this book! Information security is truly everyone's job ― this book is a fantastic overview of the vast knowledge needed by everyone, from developer, infrastructure, security professionals, and so much more. Kudos to Ms. Janca for writing such an educational and practical primer. I loved the realistic stories that frame real-world problems, spanning everything from design, migrating applications from problematic frameworks, mitigating admin risks, and things that every modern developer needs to know.”

-Gene Kim, bestselling author of The Unicorn Project, co-author of The Phoenix Project, DevOps Handbook, Accelerate

“Practical guidance for the modern era; Tanya does a great job of communicating current day thinking around AppSec in terms we can all relate to.”

-Troy Hunt, creator of "Have I Been Pwned"

From the Inside Flap

A TRIED-AND-TESTED APPROACH TO BUILDING SECURITY INTO PROJECTS FROM THE START

Do you have difficulty implementing application security into your software development process? Alice and Bob Learn Application Security shows readers how to "push left" in software, by building security considerations into their system development life cycle, right from the start.

You'll learn basic security fundamentals and requirements, as well as secure design concepts, all while benefiting from the code, exercises, and examples interspersed throughout the text.

Written by one of the leading voices in the application security field, the book includes answers to the most common questions people starting out in application security often have. It also includes valuable additional resources where readers can find more answers.

The core security concepts are illustrated through references to the personas of Alice and Bob and how their professional lives and businesses drive application security decisions. The book takes a pleasantly straightforward approach that's heavy on practical strategies and light on needless jargon or complexity. At the same time, it supplies the rigor or richness you would expect to find in a leading resource on the topic of application security.

The book is perfect for current and aspiring software and application developers. It also belongs on the bookshelves of software project managers, Chief Information Security Officers, and penetration testers who seek to improve their craft and their ability to deliver valuable results.

Alice and Bob Learn Application Security will teach you everything you need to know about:

  • Security fundamentals and requirements
  • Secure design concepts
  • Secure coding (with guidelines)
  • The basics of threat modelling and security testing
  • How to build an AppSec program
  • Modern application security concerns and defenses
  • How to implement security hygiene protocols for developers and IT staff

Product details

  • Publisher ‏ : ‎ Wiley; 1st edition (November 10, 2020)
  • Language ‏ : ‎ English
  • Paperback ‏ : ‎ 288 pages
  • ISBN-10 ‏ : ‎ 1119687357
  • ISBN-13 ‏ : ‎ 978-1119687351
  • Item Weight ‏ : ‎ 2.31 pounds
  • Dimensions ‏ : ‎ 7.3 x 0.8 x 9.2 inches
  • Customer Reviews:
    4.6 out of 5 stars 190

About the author

Follow authors to get new release updates, plus improved recommendations.
Tanya Janca
Brief content visible, double tap to read full content.
Full content visible, double tap to read brief content.

Tanya Janca, also known as SheHacksPurple, is the author of ‘Alice and Bob Learn Application Security’. She is also the founder of We Hack Purple, an online learning academy, community and podcast that revolves around teaching everyone to create secure software. Tanya has been coding and working in IT for over twenty years, won numerous awards, and has been everywhere from startups to public service to tech giants (Microsoft, Adobe, & Nokia). She has worn many hats; startup founder, pentester, CISO, AppSec Engineer, and software developer. She is an award-winning public speaker, active blogger & streamer and has delivered hundreds of talks and trainings on 6 continents. She values diversity, inclusion and kindness, which shines through in her countless initiatives.

Founder: We Hack Purple (Academy, Community and Podcast), WoSEC International (Women of Security), OWASP DevSlop, OWASP Victoria, #CyberMentoringMonday

Customer reviews

4.6 out of 5 stars
4.6 out of 5
190 global ratings

Top reviews from the United States

Reviewed in the United States on January 10, 2024
Reviewed in the United States on November 13, 2022
4 people found this helpful
Report
Reviewed in the United States on January 25, 2022
Reviewed in the United States on November 15, 2022
One person found this helpful
Report
Reviewed in the United States on January 14, 2022
One person found this helpful
Report
Reviewed in the United States on November 15, 2020
9 people found this helpful
Report
Reviewed in the United States on May 19, 2021
One person found this helpful
Report
Reviewed in the United States on January 6, 2021
3 people found this helpful
Report

Top reviews from other countries

Translate all reviews to English
Tamara Arnold
5.0 out of 5 stars A great learning resource
Reviewed in Canada on May 11, 2021
lucia
5.0 out of 5 stars Seguridad
Reviewed in Spain on April 30, 2023
Fabio
5.0 out of 5 stars Must have for application security
Reviewed in Italy on April 21, 2023
Alisson F.
5.0 out of 5 stars Leitura essencial para um AppSec!
Reviewed in Brazil on November 16, 2020
Customer image
Alisson F.
5.0 out of 5 stars Leitura essencial para um AppSec!
Reviewed in Brazil on November 16, 2020
O que me chamou atenção nesse livro foi o fato de seguir uma linha de pensamento que permite quem está sem conhecimento algum em segurança de aplicações a conhecer todas as fases necessárias (S-SDLC) para criar uma aplicação com segurança, sendo esse, o trabalho principal de um AppSec auxiliando nestas diversas fases, promovendo o shift left nas mesmas. O livro também aborda conteúdos mais estratégicos, como iniciar um programa de maturidade de desenvolvimento seguro de software, seja com o OWASP SAMM, BSIMM ou alguma metodologia própria, por exemplo. Aborda também algumas considerações interessantes referentes a Microsserviços, Serverless e etc.
Images in this review
Customer image
Customer image
3 people found this helpful
Report
Sami
5.0 out of 5 stars Great book and highly recommended
Reviewed in the United Kingdom on December 18, 2021