Jump to ratings and reviews
Rate this book

Blue Team Field Manual (BTFM)

Rate this book
Blue Team Field Manual (BTFM) is a Cyber Security Incident Response Guide that aligns with the NIST Cybersecurity Framework consisting of the five core functions of Identify, Protect, Detect, Respond, and Recover by providing the tactical steps to follow and commands to use when preparing for, working through and recovering from a Cyber Security Incident.

135 pages, Kindle Edition

Published December 1, 2017

507 people are currently reading
759 people want to read

About the author

Alan J. White

3 books7 followers

Ratings & Reviews

What do you think?
Rate this book

Friends & Following

Create a free account to discover what your friends think of this book!

Community Reviews

5 stars
160 (44%)
4 stars
132 (36%)
3 stars
45 (12%)
2 stars
18 (5%)
1 star
3 (<1%)
Displaying 1 - 21 of 21 reviews
4 reviews1 follower
March 8, 2018
Good for what it's worth

Good start for first timers in DFIR, seasoned vets might also get a couple new tricks. Advanced techniques are missing, they couod have worked harder on that book. Have no idea why tools such as Redline are missing, rekall and volatility too...
Profile Image for Sean Gaines.
38 reviews
October 8, 2018
Blue Team Field Manual, don't leave your network alone without giving this to your BOFH lazy lacky number 2 in command.

When you are being attacked, want to guard from an attack, or bed reminders of where that one log file you need for post mortem forensic mining is... The BTFM is the cheat sheet you want on your desk. I use it all the time.

Seriously though, Cybersecurity command line and GUI primary tools for Windows, Unix, Linux. All with explanations and basic to deep examples of use.
Profile Image for Katrina Payne.
116 reviews
January 6, 2025
Pretty much entirely something to use as refrance material--in the way that you should definitely read up on the topics presented here in other materials that go much further indepth on the topic

A starting point for learning this stuff--and far from sufficient on its own

That being said--there is a large amount of material to further read and get a better understanding

If you want to be all edgy, you will need this as well as the Red Team counterpart
1 review
Read
September 11, 2021
Informative

At first I was unsure as to whether this was a red/blue team book, but after a few chapters many good insights and guides had been introduced that shifted my original thought pattern. Small/brief explanations followed by commands would best describe the context of this book. Will buy a tangible copy as well.
Profile Image for Scott Holstad.
Author 132 books100 followers
March 4, 2020
Naturally I also have the Red Team Field Manual. I happen to think they're both crucial and I would hope any interested parties and/or teamers would familiarize themselves with both resources. Recommended!
Profile Image for Chris.
21 reviews1 follower
December 26, 2022
awesome reference cheat sheet

It’s like having a bunch of cheat sheets on pen testing commands on multiple operating systems. It’s one of the items you keep in your backpack or work device for later reference.
62 reviews
July 17, 2025
ɪ ᴀꜱᴋᴇᴅ ᴛʜɪꜱ ᴛᴇᴀᴍ ᴛᴏ ᴜɴʟᴏᴄᴋ 2 ꜰɪʟᴇꜱ ᴀɴᴅ ᴛʜᴇʏ ᴅɪᴅ ɪᴛ ɪɴ 24 ʜᴏᴜʀꜱ. ᴛʜᴇ ᴏɴʟʏ ɪꜱꜱᴜᴇ ɪ ꜰᴀᴄᴇᴅ ᴡᴀꜱ ᴛʜᴀᴛ ᴛʜᴇʏ ᴅɪᴅ ɴᴏᴛ ᴀᴄᴄᴇᴘᴛ ᴄʜᴇᴄᴋ ᴘᴀʏᴍᴇɴᴛ. ʏᴏᴜ ᴄᴀɴ ꜱᴇɴᴅ ᴊʙᴇᴇ ꜱᴘʏ ᴛᴇᴀᴍ ᴀ ᴅᴍ ᴏɴ ᴇᴍᴀɪʟ ᴄᴏɴʟᴇʏᴊʙᴇᴇꜱᴘʏ606@ɢᴍᴀɪʟ.ᴄᴏᴍ
Profile Image for Michael.
2 reviews2 followers
August 24, 2017
This book lives in my back pack, next to the RTFM.
Profile Image for Chris.
403 reviews1 follower
May 1, 2019
Definitiv kein Buch zum durchlesen, eher zum nachschlagen gedachte Kommando Sammlung ohne große Hintergrund Beschreibung.
16 reviews
November 28, 2020
This is a reference manual to help spur your thoughts, and remind yourself of useful commands and switches. Not a how-to guide.
Profile Image for J.J Flores.
242 reviews
August 11, 2023
Great and straight to the point. This is pretty much a cheat sheet for blue teamers, separated by different type of situations, also OS's are treated by separate, so it is a plus.
7 reviews
April 16, 2024
I forgot what the word manual meant, I just read 144 pages of commands. It is a good manual though
Profile Image for Pawan.
55 reviews
May 12, 2025
Reference manual for defenders. Preinstall utilities and programs for matches and practise frequently.
Profile Image for Tanny.
5 reviews1 follower
January 26, 2018
Straight a to the point

I love this command reference style book. Excellent reference for all levels of keeping your environment protected, logged, and playbook start framework for incident response. I hope to see more books like this covering other aspects of
Profile Image for Elwin Kline.
Author 1 book11 followers
April 9, 2020
Unimpressed.

This is just a list of consolidated syntax that someone in an information security/analyst/cyber/aka... "Blue Team" may find useful.

I really didn't get much value out of this book.

If you're reading this review and you are trying to come to a decision point for purchase, if you have an "above average knowledge base" such as a few years experience, a degree, or more than one professional IT certification... I would not recommend this book. You would be better off using free and more accessible online resources, or... you already know the material.
Displaying 1 - 21 of 21 reviews

Can't find what you're looking for?

Get help and learn more about the design.