A quick handbook that I am able to finish it in one sitting. The content of the book is quite outdated for .Net developers. The book consists of two parts. The first and the most important part covers the overview of key security engineering practices that should be an integral part of your application development lifecycle. While the second part mostly covers the checklist and questions list mainly oriented towards .Net applications but these security checklists are a great resource that you can use as job aids while developing software.