Books › Phoenix Rewritten

Cover of Phoenix Rewritten: The Rise of Policy-Driven Security

Phoenix Rewritten

The Rise of Policy-Driven Security

Cybersecurity business novel · about 235 pages

You did everything right. The breach still happened.

Zenith Health had firewalls, MFA, IAM, pen tests and a clean audit only months earlier. Then a catastrophic breach tore through its patient portal and exposed a gap nobody had named out loud: identity is not authorization.

Phoenix Rewritten follows CISO Lauren Reyes through the worst quarter of her career and the rebuild that follows. It is part fast-moving narrative and part practitioner playbook. The story shows how a battered security organization moves access logic out of application code and into externalized, policy-driven authorization: policy-as-code, central decision points (PDP) with distributed enforcement (PEP), attribute- and relationship-based access (ABAC/ReBAC), Zero Trust done properly, and governance that holds up with auditors and boards.

Written for CISOs, security architects, AppSec and IAM leads, and engineering leaders. It is not a vendor pitch.

For readers who like: The Phoenix Project-style business novels, Zero Trust, OPA and policy-as-code

📚 Read free with Kindle Unlimited (Kindle edition)

Written under the author's real name, Mark O. Rogge.

More standalone books