“Ten laws for security approaches security standards using a framework of ten fundamental principles. … an information security team could use these laws to establish a common vision for the goals of an information security program within an organization. Finally, through its use of cases, practical analysis, takeaways, and a detailed bibliography, this book could easily be adopted as a textbook for an upper-division or graduate class in information security management and policy.” (Computing Reviews, June, 2017)