Security Think
Steven M. Bellovin · IEEE Security & Privacy · 2011
The author discusses the problem of how a security specialist should think. In particular, such a person should know how to evaluate complex systems and look for vulnerabilities created by interactions. It's hard to do, and even harder to teach.