The newest threat to security has been categorized as the Advanced Persistent Threat or APT. The APT bypasses most of an organization’s current security devices, and is typically carried out by an organized group, such as a foreign nation state or rogue group with both the capability and the intent to persistently and effectively target a specific entity and wreak havoc. Most organizations do not understand how to deal with it and what is needed to protect their network from compromise. In Advanced Persistent Understanding the Danger and How to Protect your Organization Eric Cole discusses the critical information that readers need to know about APT and how to avoid being a victim. Advanced Persistent Threat is the first comprehensive manual that discusses how attackers are breaking into systems and what to do to protect and defend against these intrusions.
I was really hoping to learn some TTPs that APTs are using so I could look for them in our shop. That's not what you're going to get with this book. This book was more about building a general security program. The ideas Eric Cole is proposing are really just best practices for running a security program with a bent on how an attacker would target you specifically. There's a few gems in there, but if you're a security practitioner you probably already know this stuff.
The book could've been half the size. There's a lot of repetition that I just started scanning over at some point because he'd already beat the horse dead.