Buy New
-45%
$36.54$36.54
FREE delivery Monday, October 12
Ships from: Amazon.com Sold by: Amazon.com
Used - Very Good
$26.39$26.39
$4.99 delivery Thursday, October 15
Ships from: HPB Inc. Sold by: HPB Inc.
Download the free Kindle app and start reading Kindle books instantly on your smartphone, tablet, or computer - no Kindle device required.
Read instantly on your browser with Kindle for Web.
Using your mobile phone camera - scan the code below and download the Kindle app.
Follow the authors
OK
Security Chaos Engineering: Sustaining Resilience in Software and Systems
Purchase options and add-ons
Cybersecurity is broken. Year after year, attackers remain unchallenged and undeterred, while engineering teams feel pressure to design, build, and operate "secure" systems. Failure can't be prevented, mental models of systems are incomplete, and our digital world constantly evolves. How can we verify that our systems behave the way we expect? What can we do to improve our systems' resilience?
In this comprehensive guide, authors Kelly Shortridge and Aaron Rinehart help you navigate the challenges of sustaining resilience in complex software systems by using the principles and practices of security chaos engineering. By preparing for adverse events, you can ensure they don't disrupt your ability to innovate, move quickly, and achieve your engineering and business goals.
- Learn how to design a modern security program
- Make informed decisions at each phase of software delivery to nurture resilience and adaptive capacity
- Understand the complex systems dynamics upon which resilience outcomes depend
- Navigate technical and organizational trade-offs that distort decision making in systems
- Explore chaos experimentation to verify critical assumptions about software quality and security
- Learn how major enterprises leverage security chaos engineering
- ISBN-101098113829
- ISBN-13978-1098113827
- Edition1st
- PublisherO'Reilly Media
- Publication dateMay 9, 2023
- LanguageEnglish
- Dimensions7 x 1 x 9 inches
- Print length428 pages
Frequently bought together

Customers who viewed this item also viewed
- Cybersecurity First Principles: A Reboot of Strategy and TacticsPaperbackFREE Shipping on orders over $35 shipped by AmazonGet it as soon as Monday, Oct 12Only 13 left in stock - order soon.
- Chaos Engineering: System Resiliency in PracticePaperbackFREE Shipping by AmazonGet it as soon as Monday, Oct 12Only 13 left in stock (more on the way).
- Security Engineering: A Guide to Building Dependable Distributed SystemsHardcoverFREE Shipping by AmazonGet it as soon as Monday, Oct 12
- Security Architecture for Hybrid Cloud: A Practical Method for Designing Security Using Zero Trust PrinciplesPaperbackFREE Shipping on orders over $35 shipped by AmazonGet it as soon as Monday, Oct 12Only 3 left in stock (more on the way).
- Building Secure and Reliable Systems: Best Practices for Designing, Implementing, and Maintaining SystemsHeather AdkinsPaperbackFREE Shipping by AmazonGet it as soon as Monday, Oct 12Only 13 left in stock (more on the way).
- The Phoenix Project: A Novel About IT, DevOps, and Helping Your Business WinPaperbackFREE Shipping on orders over $35 shipped by AmazonGet it as soon as Monday, Oct 12
Customers also bought or read
- Cybersecurity First Principles: A Reboot of Strategy and Tactics
Paperback$22.47$22.47Delivery Mon, Oct 12 - Project Zero Trust: A Story about a Strategy for Aligning Security and the Business
Paperback$17.33$17.33Delivery Mon, Oct 12 - Security Engineering: A Guide to Building Dependable Distributed Systems
Hardcover$47.23$47.23FREE delivery Mon, Oct 12 - Container Security: Fundamental Technology Concepts that Protect Containerized Applications
Paperback$43.31$43.31FREE delivery Mon, Oct 12 - Adversarial AI Attacks, Mitigations, and Defense Strategies: A cybersecurity professional's guide to AI attacks, threat modeling, and securing AI with MLSecOps
Paperback$25.56$25.56Delivery Mon, Oct 12 - Site Reliability Engineering: How Google Runs Production Systems
Paperback$39.97$39.97FREE delivery Oct 25 - 29 - The Cuckoo's Egg: Tracking a Spy Through the Maze of Computer Espionage
Paperback$16.82$16.82Delivery Mon, Oct 12 - Container Security: Fundamental Technology Concepts That Protect Cloud Native Applications
Paperback$52.18$52.18FREE delivery Mon, Oct 12 - Sandworm: A New Era of Cyberwar and the Hunt for the Kremlin's Most Dangerous Hackers#1 Best SellerRussian & Soviet Politics
Paperback$11.98$11.98Delivery Mon, Oct 12 - Practical Malware Analysis: The Hands-On Guide to Dissecting Malicious Software
Paperback$46.15$46.15FREE delivery Fri, Oct 16 - Cyber Defense Matrix: The Essential Guide to Navigating the Cybersecurity Landscape
Paperback$21.60$21.60Delivery Mon, Oct 12 - The Art & Science of Metawar: How to Coexist With AI-Driven Reality Distortion, Disinformation, & Addiction in the Metaverse
Paperback$17.29$17.29Delivery Mon, Oct 12 - A CISO Guide to Cyber Resilience: A how-to guide for every CISO to build a resilient security program
Paperback$31.99$31.99Delivery Mon, Oct 12 - Cybersecurity's Dirty Secret: Why Most Budgets Go to Waste (CISO Tradecraft®)
Paperback$22.96$22.96Delivery Mon, Oct 12 - Building Secure and Reliable Systems: Best Practices for Designing, Implementing, and Maintaining Systems
Paperback$45.26$45.26FREE delivery Mon, Oct 12 - The Phoenix Project: A Novel About IT, DevOps, and Helping Your Business Win
Paperback$21.30$21.30Delivery Mon, Oct 12 - Zero Trust Networks: Building Secure Systems in Untrusted Networks
Paperback$37.31$37.31FREE delivery Oct 17 - 29 - GRC ENGINEERING FOR AWS: A Hands-On Guide to Governance, Risk and Compliance Engineering
Paperback$24.45$24.45Delivery Mon, Oct 12 - Artificial Intelligence for Cybersecurity: Develop AI approaches to solve cybersecurity problems in your organization
Paperback$25.95$25.95Delivery Mon, Oct 12 - Threat Modeling: A Practical Guide for Development Teams
Paperback$36.49$36.49FREE delivery Mon, Oct 12 - Cyber Recon: My Life in Cyber Espionage and Ransomware Negotiation
Hardcover$14.99$14.99Delivery Mon, Oct 12 - Cybersecurity Architect's Handbook: An end-to-end guide to implementing and maintaining robust security architecture
Paperback$44.99$44.99FREE delivery Mon, Oct 12 - AI Engineering: Building Applications with Foundation Models#1 Best SellerEnterprise Applications
Paperback$52.40$52.40FREE delivery Mon, Oct 12 - The Code Book: The Science of Secrecy from Ancient Egypt to Quantum Cryptography
Paperback$10.83$10.83Delivery Mon, Oct 12 - Data Science for Business: What You Need to Know about Data Mining and Data-Analytic Thinking
Paperback$21.55$21.55Delivery Oct 19 - 21
From the brand
-
Explore security resources
-
More From O'Reilly
-
Sharing the knowledge of experts
O'Reilly's mission is to change the world by sharing the knowledge of innovators. For over 40 years, we've inspired companies and individuals to do new things (and do them better) by providing the skills and understanding that are necessary for success.
Our customers are hungry to build the innovations that propel the world forward. And we help them do just that.
From the Publisher
Scope of This Book
This book does not prescribe specific technologies nor does it detail instructions on how to implement the opportunities described in code. We encourage you to peruse relevant documentation for such details and to exercise the unique skills you bring to your organization. Our goal is to discuss the principles, practices, and trade-offs that matter when we consider systems resilience, offering you a cornucopia of opportunities across your software activities from which you can pluck the patterns you feel will most likely bear fruit for your organization.
Who Should Read This Book?
If your responsibility is to design, develop, build, deploy, deliver, operate, recover, manage, protect, or secure systems that include software, then this book is for you. This book is for humans involved in software and systems engineering across titles and focal areas—software engineers, software architects, security engineers, and security architects; site reliability engineers; platform engineering teams and their leaders; infrastructure, cloud, or DevOps engineers and the directors and VPs of those teams; CTOs, CIOs, and CISOs; and, of course, students who aspire to leave an indelible mark through their work, making the software footprint of humanity better in any way they can.
This book is especially relevant if your software, services, and systems are complex—which is most software, services, and systems that are internet-connected and the byproduct of many minds over many years. No matter where you sit in the software delivery lifecycle—or outside of it, as an administrator, manager, or defender—this book offers you wisdom on how to support your systems’ resilience to attack and other adverse conditions from your sphere of influence.
You should have a basic understanding of what software is and how organizations use it. Some practical experience either designing, delivering, or operating software systems or else implementing a security program is helpful—but we recognize that few people possess experience in both. This book is explicitly designed to teach software people about security and security people about software while extending and enriching existing experts’ knowledge too.
If any of the following outcomes compel you, then you’ll find this book valuable:
- Learn how to design a modern security program.
- Make informed decisions at each phase of software delivery to nurture resilience and adaptive capacity.
- Understand the complex systems dynamics upon which resilience outcomes depend.
- Navigate technical and organizational trade-offs that distort decision making in systems.
- Explore chaos experimentation to verify critical assumptions about software quality and security.
Learn how major enterprises leverage security chaos engineering.As we’ll emphasize, and reemphasize, your strategy for nourishing your systems’ resilience to attack depends on your specific context. Every organization, no matter the size, age, or industry, can benefit from investing in resilience via the SCE transformation we’ll describe in these pages. This book is explicitly not written only for hyperscalers and Fortune 100 organizations; the content is simply too valuable.
Editorial Reviews
About the Author
Kelly Shortridge is a senior principal engineer at Fastly in the office of the CTO. Shortridge is best known for their work on resilience in complex software systems, the application of behavioral economics to cybersecurity, and bringing security out of the dark ages. Shortridge has been a successful enterprise product leader as well as a startup founder (with an exit to CrowdStrike) and investment banker. Shortridge frequently advises Fortune 500s, investors, startups, and federal agencies and has spoken at major technology conferences internationally, including Black Hat USA, Oâ??Reilly's Velocity Conference, and SREcon. Shortridge's research has been featured in ACM, IEEE, and USENIX, spanning behavioral science in cybersecurity, deception strategies, and the ROI of software resilience. They also serve on ACM Queue's magazine editorial board.
Product details
- Publisher : O'Reilly Media
- Publication date : May 9, 2023
- Edition : 1st
- Language : English
- Print length : 428 pages
- ISBN-10 : 1098113829
- ISBN-13 : 978-1098113827
- Item Weight : 2.31 pounds
- Dimensions : 7 x 1 x 9 inches
- Best Sellers Rank: #1,186,319 in Books (See Top 100 in Books)
- #79 in Software Design Tools
- #127 in Computer Systems Analysis & Design (Books)
- #224 in Cloud Computing (Books)
- Customer Reviews:
About the authors

Discover more of the author’s books, see similar authors, read book recommendations and more.

Kelly Shortridge is a Senior Principal in the Office of the CTO at Fastly. Shortridge is lead author of Security Chaos Engineering: Sustaining Resilience in Software and Systems (O'Reilly Media) and is best known as an expert work on resilience in complex software systems, the application of behavioral economics to cybersecurity, and bringing security out of the dark ages. Shortridge has been a successful enterprise product leader as well as a startup founder (with an exit to CrowdStrike) and investment banker. Shortridge frequently advises Fortune 500s, investors, startups, and federal agencies and has spoken at major technology conferences internationally, including Black Hat USA, O'Reilly Velocity Conference, and SREcon. Shortridge’s research has been featured in ACM, IEEE, and USENIX, spanning behavioral science in cybersecurity, deception strategies, and the ROI of software resilience. Shortridge also serves on the editorial board of ACM Queue.
Customer reviews
Customer Reviews, including Product Star Ratings help customers to learn more about the product and decide whether it is the right product for them.
To calculate the overall star rating and percentage breakdown by star, we don’t use a simple average. Instead, our system considers things like how recent a review is and if the reviewer bought the item on Amazon. It also analyzed reviews to verify trustworthiness.
Learn more how customers reviews work on Amazon

















