TOP
💡 邁向小一的第一步!給孩子一本「查得到自信」的專屬辭典,輕鬆跨越閱讀關卡!🚀
Securing Ai-Driven Development: Principles and Practice for the Ai-Assisted Engineer
滿額折

Securing Ai-Driven Development: Principles and Practice for the Ai-Assisted Engineer

商品資訊

定價
:NT$ 3769 元
領券後再享88折起
預購中
下單可得紅利積點 :113 點
商品簡介

商品簡介

Software development has undergone a fundamental transformation as AI coding assistants redefine how software is built. Tasks that once required days now take hours, and complex systems are increasingly created by individuals rather than teams. This acceleration has introduced a hidden cost: security risks that accumulate quietly beneath polished, functional code. AI-generated outputs often appear correct and secure on the surface, yet frequently contain structural flaws such as outdated cryptographic practices, weak authorization controls, and overly permissive infrastructure. The common instinct to simply request 'secure' code from an AI misses a critical reality. Security is not an added feature but the result of deliberate architectural thinking and informed design choices.

This book builds this mindset from the ground up. It begins by challenging the illusion that security can be appended through prompts, reframing it instead as a continuous balance of risk, cost, and usability. It introduces practical threat modeling and emphasizes the importance of strict trust boundaries to defend against adversarial inputs. The discussion then moves into core engineering practices, covering least privilege, compartmentalization, secrets management, and the prevention of context leakage in modern workflows. It addresses common cryptographic mistakes generated by AI systems and explains how to select and apply secure primitives correctly. The book then expands to real-world systems, focusing on APIs, middleware, and distributed architectures where authorization flaws and verification gaps often arise. It establishes disciplined validation processes that combine automated analysis with human judgment. Finally, it explores the emerging risks of autonomous AI agents, presenting strategies such as minimal agency, sandboxing, and structured prompt design, alongside practical patterns for building secure AI-assisted workflows and end-to-end system hardening through realistic case studies.

By the end of this book, you will have developed a rigorous and practical security mindset for the AI-driven era, enabling you to critically evaluate generated code, design systems with structural resilience, and guide AI tools toward outcomes that are not only efficient but fundamentally secure.

What You Will Learn:

  • Why AI coding assistants fail at security and precisely where to intervene
  • How to apply the core principles of security engineering to AI-generated code
  • How to audit, test, and verify code generated by an AI tool
  • How to work securely at the frontier of agentic development

Who It Is For:

This book is for modern software developers who use AI coding assistants in their daily workflow and want to build secure systems without a formal background in security. It is designed for engineers at all levels, as well as data scientists, ML practitioners, and technical founders who are creating real-world applications with AI tools. No prior security expertise is required; only basic programming knowledge and experience working with AI-assisted development.

購物須知

外文書商品之書封,為出版社提供之樣本。實際出貨商品,以出版社所提供之現有版本為主。部份書籍,因出版社供應狀況特殊,匯率將依實際狀況做調整。

無庫存之商品,在您完成訂單程序之後,將以空運的方式為你下單調貨。為了縮短等待的時間,建議您將外文書與其他商品分開下單,以獲得最快的取貨速度,平均調貨時間為1~2個月。

為了保護您的權益,「三民網路書店」提供會員七日商品鑑賞期(收到商品為起始日)。

若要辦理退貨,請在商品鑑賞期內寄回,且商品必須是全新狀態與完整包裝(商品、附件、發票、隨貨贈品等)否則恕不接受退貨。

定價:100 3769
預購中

暢銷榜

客服中心

收藏

會員專區