Showing posts with label book review. Show all posts
Showing posts with label book review. Show all posts

Continuous Integration: High-impact Strategies - What You Need to Know: Definitions, Adoptions, Impact, Benefits, Maturity, Vendors Review

Continuous Integration: High-impact Strategies - What You Need to Know: Definitions, Adoptions, Impact, Benefits, Maturity, Vendors
Average Reviews:

(More customer reviews)
Are you looking to buy Continuous Integration: High-impact Strategies - What You Need to Know: Definitions, Adoptions, Impact, Benefits, Maturity, Vendors? Here is the right place to find the great deals. we can offer discounts of up to 90% on Continuous Integration: High-impact Strategies - What You Need to Know: Definitions, Adoptions, Impact, Benefits, Maturity, Vendors. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

Continuous Integration: High-impact Strategies - What You Need to Know: Definitions, Adoptions, Impact, Benefits, Maturity, Vendors ReviewIf you click the "Look Inside" button, you'll see that all this book contains is the text of a few dozen Wikipedia articles.Continuous Integration: High-impact Strategies - What You Need to Know: Definitions, Adoptions, Impact, Benefits, Maturity, Vendors OverviewIn software engineering, continuous integration (Ci) implements continuous processes of applying quality control - small pieces of effort, applied frequently. Continuous integration aims to improve the quality of software, and to reduce the time taken to deliver it, by replacing the traditional practice of applying quality control after completing all development.
This book is your ultimate resource for Continuous Integration. Here you will find the most up-to-date information, analysis, background and everything you need to know.
In easy to read chapters, with extensive references and links to get you to know all there is to know about Continuous Integration right away, covering: Continuous integration, AnthillPro, Apache Continuum, Apache Gump, Bamboo (software), BuildBot, BuildMaster, Cabie, Cascade (software), Comparison of Continuous Integration Software, CruiseControl, CruiseControl.rb, Go (release management), Hudson (software), Jenkins (software), Multi-stage continuous integration, Serenity Code Coverage, TeamCity, ThoughtWorks Studios, Tinderbox (software), Extreme Programming, Dave Astels, Kent Beck, Chrysler Comprehensive Compensation System, Class-responsibility-collaboration card, Code refactoring, Mike Cohn, Concutest, CppUnit, CsUnit, Ward Cunningham, Daily build, Database refactoring, Dunit, Extreme programming practices, Extreme project management, FireBenchmarks, Martin Fowler, Funit, Google Guice, Itch-scratchware, Ron Jeffries, Jripples, Jtest, Junit, Mauve (test suite), Mock object, Mstest, Nmock, Nunit, NunitAsp, Pair programming, Phpunit, PyUnit, Regression testing, Ken Schwaber, Sunit, Jeff Sutherland, Test-driven development, Test-Driven Development by Example, TestDox, Unit testing, Unit++, UquoniTest, User story, Visual Studio Unit Testing Framework.
This book explains in-depth the real drivers and workings of Continuous Integration.

Want to learn more information about Continuous Integration: High-impact Strategies - What You Need to Know: Definitions, Adoptions, Impact, Benefits, Maturity, Vendors?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...

3ds Max 9 Bible Review

3ds Max 9 Bible
Average Reviews:

(More customer reviews)
Are you looking to buy 3ds Max 9 Bible? Here is the right place to find the great deals. we can offer discounts of up to 90% on 3ds Max 9 Bible. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

3ds Max 9 Bible ReviewThis is an excellent and highly detailed reference for the program 3ds Max 9. As near as I can tell it mentioned every button and command that 3ds Max has available. My main criticism is that it is highly under-illustrated. While every function and button is mentioned, as a beginner to 3ds Max, I found that I often could not find the command being referred to in the text, whereas a screen shot would have quickly, and clearly shown what I should look for. In addition, since 3ds Max is such a sophisticated and detailed program which is great, it is often not readily apparent how all the various settings and parameters that can be entered for a given effect should be used. This book mentions most, if not all of the parameters, but examples as to how they are used in an actual project would have been good. There are short tutorials on the main features of the program, but these are generally restricted to singe effects. This book is probably for a more advanced user who is familiar with all the commands and knows how to use them to create a 3d scene, but would like a more detailed explanation of various functions in 3ds Max. Definitely well written though, and the DVD with the material and software described in the examples is great.3ds Max 9 Bible Overview"An excellent book for beginners as well as advanced 3ds Max users. A valuable reference that covers everything you'd want to know."--Andre Surya, Award-winning Digital ArtistA favorite of 3ds Max artists from beginners to pros!Why is 3ds Max Bible a perennial bestselling favorite? Because whether you're a beginner looking for a tutorial to get you up to speed your first day or an expert needing a reference to Max's advanced features, it's all here. Loaded with advice, professional tips, and more than 150 step-by-step lessons, this is the most comprehensive reference-tutorial on 3ds Max on the market, and the one you'll turn to again and again.* Organize and blend sequences with the new Animation Layers feature* Explore Sun and Sky, Car Paint, and other new mental ray shaders* Combine and divide objects with ProBoolean and ProCutter* Create more accurate dynamic animations with updated reactor tools* Add greater realism with enhanced and integrated hair and fur tools* Reference objects, materials, and controllers with XRefAnimate a dancing cartoon mooseIsolate mapping surfaces with the Quick Planar map buttonAdd realistic motion to your model's hairstyleWhat's on the DVD?You'll find before-and-after example files for every tutorial in the book. The DVD also includes:* Models and textures to customize for your own designs* Rendered AVI files of animations used in the tutorials* All the Max files for every tutorial* Adobe tryout versions of After Effects(r), Photoshop(r) CS2, Illustrator(r) CS2, and Premiere ProSystem Requirements: See the DVD appendix for details and complete system requirements.

Want to learn more information about 3ds Max 9 Bible?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...

Security Metrics: Replacing Fear, Uncertainty, and Doubt Review

Security Metrics: Replacing Fear, Uncertainty, and Doubt
Average Reviews:

(More customer reviews)
Are you looking to buy Security Metrics: Replacing Fear, Uncertainty, and Doubt? Here is the right place to find the great deals. we can offer discounts of up to 90% on Security Metrics: Replacing Fear, Uncertainty, and Doubt. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

Security Metrics: Replacing Fear, Uncertainty, and Doubt ReviewI read Security Metrics right after finishing Managing Cybersecurity Resources, a book by economists arguing that security decisions should be made using cost-benefit analysis. On the face of it, cost-benefit analysis makes perfect sense, especially given the authors' analysis. However, Security Metrics author Andy Jaquith quickly demolishes that approach (confirming the problem I had with the MCR plan). While attacking the implementation (but not the idea) of Annual Loss Expectancy for security events, Jaquith writes on p 33 "[P]ractitioners of ALE suffer from a near-complete inability to reliably estimate probabilities [of occurrence] or losses." Bingo, game over for ALE and cost-benefit analysis. It turns out the reason security managers "herd" (as mentioned in MCR) is that they have no clue what else to do; they seek safety in numbers by emulating peers and then claim that as a defense when they are breached.
Fortunately, Security Metrics offers another solution. The book gives readers three sets of information: theory, metrics, and tools (concepts, not programs). The theory chapters (1 and 2) were so concise yet insightful I was tempted to underline every sentence. (I am not kidding.) Even the Preface made me glad to be reading the book when it associated "security ROI" with "the Macarena" and called it a "needless distraction." I laughed in agreement when I saw Andy call "security enablement" the "Abominable Snowman: it is rarely spotted, but legions of people swear it exists. After all, as my friend Dan geer puts it, 'You don't usually see airlines advertising how their planes fall out of the sky less often than their competitors.'" Why is that? My answer is simple: security is assumed and expected. Advertising anything else has no effect or makes people suspicious. I knew this book would be good.
The metrics chapters probably list hundreds of metrics you can extract verbatim and apply to your own environment. To the reviewer who wanted to reprint them in an appendix: they're called chapters 3 and 4. My main concern with the metrics was the focus on input-centric measurements instead of results. I would have liked to read more metrics on measuring whether security programs are working, rather than what techniques and tools are applied up front.
The tools chapters were helpful to anyone needing a statistics refresher. The visualization sections were especially helpful. (Feel free to dismiss yet another ignorant review from WB, who thinks a "review" means writing a few paragraphs after flipping through the pages of five books a day.) Andy's examples of turning lousy graphs and charts into information visualization vehicles should be followed by all managers.
Security Metrics is strengthened by the many stories from the author's consulting experience. I sensed that his techniques work and are not the product of the thought laboratory alone. I found his "Balanced Scorecard" approach to be interesting, especially to the degree it ties real metrics to business operations.
I had a few issues with terminology, such as using the term "threats" on p 231 when "attacks" is more accurate. (The football analogy is correct, however.) I semi-agreed with the author's suggestion to abandon "risk management" in favor of metrics-based approaches, but I didn't think two pages (4-5) were really enough to make the case. On p 264, threats are not risks, but they help instantiate risks. On pp 78-7, "risk of exploit" should be "ease of exploitation."
These are minor concerns, given the overwhelming concentration of practical and implementation-worthy pieces of information in Security Metrics. You must read this book if you care to measure security progress. Now we need Dan Geer to extend beyond writing wise forewords and articles into the world of his own book!Security Metrics: Replacing Fear, Uncertainty, and Doubt OverviewThe Definitive Guide to Quantifying, Classifying, and Measuring Enterprise IT Security Operations


Security Metrics is the first comprehensive best-practice guide to defining, creating, and utilizing security metrics in the enterprise.

Usingsample charts, graphics, case studies, and war stories, Yankee GroupSecurity Expert Andrew Jaquith demonstrates exactly how to establisheffective metrics based on your organization's unique requirements.You'll discover how to quantify hard-to-measure security activities,compile and analyze all relevant data, identify strengths andweaknesses, set cost-effective priorities for improvement, and craftcompelling messages for senior management.

Security Metrics successfullybridges management's quantitative viewpoint with the nuts-and-boltsapproach typically taken by security professionals. It brings togetherexpert solutions drawn from Jaquith's extensive consulting work in thesoftware, aerospace, and financial services industries, including newmetrics presented nowhere else. You'll learn how to:

• Replace nonstop crisis response with a systematic approach to security improvement
• Understand the differences between "good" and "bad" metrics
•Measure coverage and control, vulnerability management, passwordquality, patch latency, benchmark scoring, and business-adjusted risk
• Quantify the effectiveness of security acquisition, implementation, and other program activities
• Organize, aggregate, and analyze your data to bring out key insights
• Use visualization to understand and communicate security issues more clearly
• Capture valuable data from firewalls and antivirus logs, third-party auditor reports, and other resources
• Implement balanced scorecards that present compact, holistic views of organizational security effectiveness

Whetheryou're an engineer or consultant responsible for security and reportingto management–or an executive who needs better information fordecision-making–Security Metrics is the resource you have been searching for.

Andrew Jaquith, programmanager for Yankee Group's Security Solutions and Services DecisionService, advises enterprise clients on prioritizing and managingsecurity resources. He also helps security vendors develop product,service, and go-to-market strategies for reaching enterprise customers.He co-founded @stake, Inc., a security consulting pioneer acquired bySymantec Corporation in 2004. His application security and metricsresearch has been featured in CIO, CSO, InformationWeek, IEEE Security and Privacy, and The Economist.

Foreword
Preface
Acknowledgments
About the Author
Chapter1 Introduction:Escaping the Hamster Wheel ofPain
Chapter2 Defining SecurityMetrics
Chapter 3 Diagnosing Problems and Measuring Technical Security
Chapter4 Measuring ProgramEffectiveness
Chapter 5 Analysis Techniques
Chapter 6 Visualization
Chapter 7 Automating Metrics Calculations
Chapter 8 Designing Security Scorecards
Index




Want to learn more information about Security Metrics: Replacing Fear, Uncertainty, and Doubt?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...

Continuous Integration in .NET Review

Continuous Integration in .NET
Average Reviews:

(More customer reviews)
Are you looking to buy Continuous Integration in .NET? Here is the right place to find the great deals. we can offer discounts of up to 90% on Continuous Integration in .NET. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

Continuous Integration in .NET ReviewAre you a .NET developer who finds yourself in projects where releasing software is painful and takes forever? Then Continuous Integration in .NET is the book for you. I've been there over and over and thus started researching Continuous Integration tools for .NET about a year ago and found many of which are covered in great detail in the book by Marcin Kawalerowicz and Craig Berntson. The authors are both developers, bloggers, and have vast knowledge and experience with Continuous Integration.
The book is extremely rich when it comes to tools and in under three hundred pages these are some of the tools that are covered; Version control tools like SVN and TFS, unit testing and mocking tools like NUnit and Rhino Mocks, automation tools like NAnt and MSBuild, CI servers like Team City and TFS 2010, UI testing tools, acceptance testing tools, code analysis tools, document generation tools, deployment and delivery tools, and database automation tools. Flavor samples of all the tools you need to automate anything you can think of, and beyond.
In my experience starting with version control, a CI server and Unit testing goes a long way when you're first starting out on the journey towards Continuous Integration. This is also the message [Kawalerowicz and Berntson] sends throughout the book. However, there are quite a bit of content for experienced CI teams as well, e.g. how to take the process even further with automated deployment, database rollouts or how to deal with speed and scalability issues in your build.
In my mind Continuous Integration is so much more than just the tooling and process automation, it is a complete development practice that dictates some of the team's behavior. For instance, to get the rapid and repeated feedback that we strive after all team members need to commit working and tested source code at least daily. I was a bit disappointed that the book didn't cover any of this aspect. In the early chapters the CI concept is redefined by the authors for the scope of the book to exclude the development practice parts.
Continuous Integration in .NET is a very good and well-worked book and I can recommend it to anyone wanting to get started with CI in .NET but don't know how, as well as more experienced CI developers looking to extend and fine tune their process. If you're interested in the development practice side of CI I recommend you read Martin Fowler's article as well as the ground breaking book Continuous Integration: Improving Software Quality and Reducing Risk by Paul Duvall.
Disclosure: Manning Publications contacted me because of my experience and asked for my thoughts on this book. I've received a free copy of the book for this review.Continuous Integration in .NET Overview
Continuous integration is a software engineering process designed to minimize "integration hell." It's a coordinated development approach that blends the best practices in software delivery. For .NET developers, especially, adopting these new approaches and the tools that support them can require rethinking the development process altogether.

Continuous Integration in .NET is a tutorial for developers and team leads that teaches readers how to re-imagine their development strategy by creating a consistent continuous integration process. This book shows how to build on the tools they already know - .NET Framework and Visual Studio - and to use powerful software like MSBuild, Subversion, TFS 2010, Team City, CruiseControl.NET, NUnit, and Selenium.


Want to learn more information about Continuous Integration in .NET?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...