Table of contents: Part I: development techniques: encryption, role-based authorization, code-access security, ASP.NET authentication, securing web applications - Part II: ensuring hack-resistant code: application attacks and how to avoid them, validating input, handling exceptions, testing for attack-resistant code - Part III: deployment and configuration: securing your application for deployment, locking down windows, internet information services, and .NET, securing databases - Part IV: enterprise-level security: ten steps to designing a secure enterprise system, threats-analyze, prevent, detect, and respond, threat analysis exercise, future trends.
