Skip to content

Commit 19e4e32

Browse files
committed
Added new book details
1 parent 24b4620 commit 19e4e32

File tree

142 files changed

+73979
-2407
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

142 files changed

+73979
-2407
lines changed

docs/ai/Practices/AI-As-Judge.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -18,6 +18,8 @@ practice:
1818
reason: "Can prevent harmful misinformation, disinformation, and deepfakes from spreading by having a second user-owned AI fact-check or block misleading content."
1919
- tag: Loss Of Human Control
2020
reason: "Can enforce alignment principles by rejecting responses that optimise for harmful proxy goals."
21+
- tag: Unintended Cascading failures
22+
reason: "Introduces a level of redundancy around AI systems, allowing them to sound the alarm when operational parameters are breached."
2123
---
2224

2325
<PracticeIntro details={frontMatter} />

docs/ai/Practices/Human-In-The-Loop.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -13,6 +13,8 @@ practice:
1313
reason: "Maintaining consistent human oversight in critical AI systems, ensuring that final decisions or interventions rest with human operators rather than the AI."
1414
- tag: Synthetic Intelligence With Malicious Intent
1515
reason: See Example of "Centaur" War Teams
16+
- tag: Unintended Cascading failures
17+
reason: "Human oversight of automated systems can help shortcut cascading failure."
1618
---
1719

1820
<PracticeIntro details={frontMatter} />

docs/ai/Practices/Multi-Stakeholder-Oversight.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -9,6 +9,8 @@ tags:
99
- AI Practice
1010
practice:
1111
mitigates:
12+
- tag: Synthetic Intelligence Rivalry
13+
reason: "By involving multiple stakeholders, concentration of the gains from AI can be shared across civilisation, mitigating economic disruption."
1214
- tag: Loss Of Diversity
1315
reason: "Ensuring that AI governance involves multiple institutions, including governments, researchers, and civil society, to prevent monopolisation."
1416
efficacy: Medium

docs/ai/Threats/Unintended-Cascading-Failures.md

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -27,7 +27,7 @@ Unintended cascading effects are a dangerous aspect of AI deployment at scale.
2727

2828
- **When Bots Teach Themselves to Trade** [Johnson et al., 2013](https://www.nature.com/articles/s41599-019-0224-3): Examines AI-driven financial crashes caused by autonomous trading systems responding unpredictably to market conditions.
2929

30-
- **Supply Chain Resilience in AI Era** [Sheffi, 2020](https://doi.org/10.1080/00207543.2020.1813767): Explores how automated logistics and AI-based supply chain management can inadvertently amplify disruptions.
30+
- **Supply Chain Resilience in AI Era** [Sheffi, 2020](https://www.youtube.com/live/BkBuNFjLgFg?si=xvNL4hBkT4GCQMYQ): Explores how automated logistics and AI-based supply chain management can inadvertently amplify disruptions.
3131

3232
- **AI and Workforce Displacement** [Brynjolfsson & McAfee, 2014](https://doi.org/10.7551/mitpress/9780262029470.001.0001): Investigates the macroeconomic impact of AI-induced job automation and its cascading social consequences.
3333

@@ -55,6 +55,8 @@ Unintended cascading effects are a dangerous aspect of AI deployment at scale.
5555

5656
- **Real-Life Example:** During the [COVID-19 pandemic](https://doi.org/10.1038/s41599-021-00729-4), automated supply chain optimizations led to stock shortages in essential goods as demand spikes outpaced rigid AI-driven distribution models.
5757

58+
- **The Open Source Software Supply Chain:** Vulnerabilities have led to large-scale cybersecurity incidents. Attacks on widely-used packages (e.g. Log4j, SolarWinds) propagated rapidly through automated update systems, revealing how technical interdependence can cascade into systemic digital risk.
59+
5860
## Mitigations
5961

6062
### AI System Redundancy
Lines changed: 37 additions & 23 deletions
Original file line numberDiff line numberDiff line change
@@ -1,47 +1,61 @@
11
---
2-
title: 'Book: Risk-First Second Edition'
3-
description: "Risk-First Software Development Second Edition Coming Soon!"
2+
title: "Risk-First Software Development Second Edition"
3+
description: "Now available in digital format"
44
slug: /Risk-First-Second-Edition
5-
featured:
5+
featured:
66
class: bg1
7-
element: '<big-image imgsrc="/public/templates/risk-first/posts/book-grey.png" />'
8-
tags:
9-
- Books
10-
sidebar_position: 2
7+
element: '<big-image imgsrc="/public/templates/risk-first/posts/Cover_Image_Second_Edition.jpg" />'
8+
tags:
9+
- Books
10+
sidebar_position: 1
1111
---
1212

13-
# Coming in 2024
13+
I'm pleased to announce that the second edition of Risk-First Software Development is [now available in Beta](https://pragprog.com/titles/rmrfsd/risk-first-software-development-second-edition)!
1414

15-
I'm pleased to announce that the Pragmatic Bookshelf will be publishing a fully-revised and updated second edition of Risk-First Software Development!
15+
[![Risk-First Software Development Second Edition](/img/Cover_Image_Second_Edition.jpg)](https://pragprog.com/titles/rmrfsd/risk-first-software-development-second-edition)
1616

17-
[![Pragmatic Bookshelf](https://media.pragprog.com/images/cms/logos/Bookshelf_4in.png)](https://pragprog.com)
18-
19-
## Risk-First Software Development Second Edition
17+
## About Risk-First Software Development - Second Edition
2018

2119
**Over 20 years ago an "Agile" revolution occurred** in the software development field.  But 20 years later, the very same proponents of the revolution are turning their backs on what they created, arguing that their ideals have been corrupted by zealotry, proscriptive norms, cargo-culting and an "Agile-Industrial Complex" focused on evangelism and certification.
2220

23-
**Risk-First attempts something new:**   to "peel back the onion" and provide a language for understanding and evaluating not just Agile practices but *all practices* in software development.  Unlike the Agile of today, Risk-First is not a methodology telling you what to do, but a toolbox and a pattern language to help you figure out what you should do, and help you communicate with others to make your case.
21+
**Risk-First attempts something new:**   to "peel back the onion" and provide a language for understanding and evaluating not just Agile practices but _all practices_ in software development.  Unlike the Agile of today, Risk-First is not a methodology telling you what to do, but a toolbox and a pattern language to help you figure out what you should do, and help you communicate with others to make your case.
22+
23+
**Understand How Projects Really Work:** Not all software projects go according to plan: many fail due to overlooked problems, misaligned stakeholders, or rigid methodologies. This book offers a groundbreaking framework for thinking differently by identifying risk at the center of every decision. You’ll gain the vocabulary, tools, and confidence to identify, evaluate, and mitigate risks before they derail your project.
24+
25+
**All Scales Welcome:** Whether you’re managing a startup product, steering an enterprise system, or trying to incorporate new technologies such as AI, Risk-First helps you get your team aligned, spot trouble before it hits, and build software that delivers.
2426

2527
The book aims to develop a **Pattern Language for understanding software risk**, and develop a practical framework for discussing how the activities we take on a project change the balance of the risks we are exposed to.
2628

27-
## How Can I Get Involved?
29+
**Take Control!** Whether you’re a developer, team lead, or CTO, and irrespective of your tech stack or process preference, this book furnishes you with new tools to guide projects to better outcomes. Don’t let risk control you—make it your competitive edge.
2830

29-
### Get Updates
31+
## What's Changed
3032

31-
<BoxOut title="Join The Risk-First GitHub Organisation">
33+
This is a hugely updated and revised edition, containing a more thorough catalog of software development risks and a more in depth look at the entire risk process, from the smallest pet project up to the whole enterprise.
3234

33-
If you [Add Your Star on GitHub](https://github.com/risk-first/website) you'll be sent an email invite to join the [Risk-First GitHub Organisation](https://github.com/risk-first/website/discussions) and the associated discussion group!
35+
It contains a fully-revised taxonomy of risks, breaking down each one systematically, giving worked examples of each, a list of common threats and best practices for dealing with each, as well as high-profile examples of where these risks have caused major headaches in real-life.
3436

35-
This is where I will be adding blog materials discussing the content of the new book as it comes together, as well as providing access for beta testers.
37+
It also contains two entirely new chapters dealing with technological change, responding not just to AI but the increasing pace of innovation we see globally.
3638

37-
[![GitHub Star](/img/github_star.png) <br /> ☝️ Click This On GitHub ](https://github.com/risk-first/website)
39+
In essence, this is the post-agile, AI-aware manual for understanding and harnessing the forces of innovation in play when developing software systems.
40+
41+
## Getting Involved
42+
43+
<BoxOut title="What's A Beta For A Book, Anyway?">
44+
45+
While the book is in beta form, you can purchase it from the link below and read it digitally. Over the course of the beta period, the book will be updated many times with suggestions and improvements - just as with a software beta.
46+
47+
Once the book is declared "finished", it'll get published proper and you'll get the finalized digital version to keep.
48+
49+
[Access the Beta Here](https://pragprog.com/titles/rmrfsd/risk-first-software-development-second-edition)
3850

3951
</BoxOut>
4052

41-
### Pre-Order
53+
<BoxOut title="Join The Risk-First GitHub Organisation">
54+
55+
If you [Add Your Star on GitHub](https://github.com/risk-first/website) you'll be sent an email invite to join the [Risk-First GitHub Organisation](https://github.com/risk-first/website/discussions) and the associated discussion group!
4256

43-
**Coming Soon!**
57+
This is where I will be adding blog materials discussing the content of the new book as it comes together.
4458

45-
### Tell Us What You Think!
59+
[![GitHub Star](/img/github_star.png) <br /> ☝️ Click This On GitHub ](https://github.com/risk-first/website)
4660

47-
Most of the material in the second edition book is published here on this website, so you can simply [start reading](overview/Start). If you have any feedback, please get in touch. What's missing? What doesn't make sense? What should be left out? Knowing this will be super-helpful and **you will be credited in the book along with all the other [Contributors](/overview/Contributors).**
61+
</BoxOut>

docs/books/The-Menagerie.md

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -1,23 +1,23 @@
11
---
2-
title: 'Book: The Menagerie'
2+
title: "The Menagerie"
33
description: "Risk-First Software Development Volume 1: The Menagerie. Available to read online, on Kindle and to buy at Amazon"
44
slug: /The-Menagerie
5-
tags:
6-
- Books
5+
tags:
6+
- Books
77

8-
featured:
8+
featured:
99
class: bg1
1010
element: '<big-image imgsrc="/public/templates/risk-first/posts/book-grey.png" />'
11-
sidebar_position: 1
11+
sidebar_position: 2
1212
---
1313

1414
# The Menagerie
1515

16-
[Second Edition Coming Soon!](Risk-First-Second-Edition)
16+
[Second Edition Now Available!](Risk-First-Second-Edition)
1717

18-
The software development world is crowded with different practices, metrics, methodologies, tools and techniques. But what unites them all?
18+
The software development world is crowded with different practices, metrics, methodologies, tools and techniques. But what unites them all?
1919

20-
Volume one of the Risk-First series argues the case for viewing _all_ of the activities on a software project through the lens of _managing risk_. It introduces the menagerie of different risks you're likely to meet on a software project, naming and classifying them so that we can try to understand them better.
20+
Volume one of the Risk-First series argues the case for viewing _all_ of the activities on a software project through the lens of _managing risk_. It introduces the menagerie of different risks you're likely to meet on a software project, naming and classifying them so that we can try to understand them better.
2121

2222
![Risk-First Software Development: Volume 1, The Menagerie](/img/Cover_Book_image.jpg)
2323

@@ -28,7 +28,7 @@ The book aims to develop a _Pattern Language_ for understanding software risk, a
2828
- [Download a Sample](/the-menagerie-sample.pdf)
2929
- [Kindle Edition](https://a.co/d/hmpmYl2) (From Amazon)
3030
- [Print Edition](https://www.amazon.com/Risk-First-Software-Development-1-Menagerie/dp/1717491855) (From Amazon.com
31-
) or [Amazon UK](https://amzn.eu/d/2i8sZH9)
31+
) or [Amazon UK](https://amzn.eu/d/2i8sZH9)
3232

3333
## Read It Here
3434

Lines changed: 39 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,39 @@
1+
<?xml version="1.0"?>
2+
<diagram
3+
xslt:template="/public/templates/risk-first/risk-first-template.xsl"
4+
xmlns="http://www.kite9.org/schema/adl"
5+
xmlns:xslt="http://www.kite9.org/schema/xslt" id="dia"
6+
style="--kite9-layout: down; ">
7+
8+
<table k9-texture="none" style="--kite9-grid-size: 2 3; ">
9+
10+
<cell>
11+
<description class="bold">COSO Action</description>
12+
</cell>
13+
14+
<cell style="--kite9-layout: down; ">
15+
<action>Informing and Communicating</action>
16+
</cell>
17+
18+
19+
<cell>
20+
<description class="bold">Software Development</description>
21+
</cell>
22+
23+
<cell style="--kite9-layout: right;">
24+
<group style="--kite9-layout: down; --kite9-vertical-align: top; ">
25+
<action>Marketing</action>
26+
<action>Stakeholder Management</action>
27+
</group>
28+
<group style="--kite9-layout: down; --kite9-vertical-align: top; ">
29+
<action>Issue Management</action>
30+
<action>Meetings</action>
31+
</group>
32+
<group style="--kite9-layout: down; --kite9-vertical-align: top; ">
33+
<action>Documentation</action>
34+
<action>Demos</action>
35+
</group>
36+
</cell>
37+
</table>
38+
39+
</diagram>
Lines changed: 38 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,38 @@
1+
<?xml version="1.0"?>
2+
<diagram
3+
xslt:template="/public/templates/risk-first/risk-first-template.xsl"
4+
xmlns="http://www.kite9.org/schema/adl"
5+
xmlns:xslt="http://www.kite9.org/schema/xslt" id="dia"
6+
style="--kite9-layout: down; ">
7+
8+
<table k9-texture="none" style="--kite9-grid-size: 2 3; ">
9+
10+
<cell>
11+
<description class="bold">COSO Action</description>
12+
</cell>
13+
14+
<cell style="--kite9-layout: down; ">
15+
<action>Control Activities</action>
16+
<description>Policies and procedures are established and implemented to help ensure that
17+
risk responses are carried out effectively.</description>
18+
</cell>
19+
20+
21+
<cell>
22+
<description class="bold">Software Development</description>
23+
</cell>
24+
25+
<cell style="--kite9-layout: right;">
26+
<group style="--kite9-layout: down; --kite9-vertical-align: top; ">
27+
<action>Releases</action>
28+
</group>
29+
<group style="--kite9-layout: down; --kite9-vertical-align: top; ">
30+
<action>Coding</action>
31+
</group>
32+
<group style="--kite9-layout: down; --kite9-vertical-align: top; ">
33+
<action>Testing</action>
34+
</group>
35+
</cell>
36+
</table>
37+
38+
</diagram>

src/images/generated/coso/coso.adl

Lines changed: 39 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,39 @@
1+
<?xml version="1.0"?>
2+
<diagram
3+
xslt:template="/public/templates/risk-first/risk-first-template.xsl"
4+
xmlns="http://www.kite9.org/schema/adl"
5+
xmlns:xslt="http://www.kite9.org/schema/xslt" id="dia"
6+
style="--kite9-layout: down; ">
7+
8+
<table k9-texture="none" style="--kite9-grid-size: 2 2; ">
9+
10+
11+
<cell><action style="--kite9-horizontal-align: left; ">Internal Environment</action></cell>
12+
<celltext>What is the internal philosophy
13+
and culture?</celltext>
14+
15+
<cell><action style="--kite9-horizontal-align: left; ">Objective Setting</action></cell>
16+
<celltext> What are we trying to
17+
accomplish?</celltext>
18+
19+
<cell><action style="--kite9-horizontal-align: left; ">Event Identification</action></cell>
20+
<celltext>What could stop us from accomplishing it?</celltext>
21+
22+
<cell><action style="--kite9-horizontal-align: left; ">Risk Assessment</action></cell>
23+
<celltext>How bad are these events? Will they really happen?</celltext>
24+
25+
<cell><action style="--kite9-horizontal-align: left; ">Risk Answer</action></cell>
26+
<celltext>What are our options to stop those things from happening?</celltext>
27+
28+
<cell><action style="--kite9-horizontal-align: left; ">Control Activities</action></cell>
29+
<celltext>Let's create something to make sure they don't happen.</celltext>
30+
31+
<cell><action style="--kite9-horizontal-align: left; "> Information and Communication</action></cell>
32+
<celltext>With whom will will we obtain information and communicate?</celltext>
33+
34+
<cell><action style="--kite9-horizontal-align: left; ">Monitoring</action></cell>
35+
<celltext>How will we know that we've achieved what we wanted to accomplish?</celltext>
36+
37+
</table>
38+
39+
</diagram>
Lines changed: 37 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,37 @@
1+
<?xml version="1.0"?>
2+
<diagram
3+
xslt:template="/public/templates/risk-first/risk-first-template.xsl"
4+
xmlns="http://www.kite9.org/schema/adl"
5+
xmlns:xslt="http://www.kite9.org/schema/xslt" id="dia"
6+
style="--kite9-layout: down; ">
7+
8+
<table k9-texture="none" style="--kite9-grid-size: 2 3; ">
9+
10+
<cell>
11+
<description class="bold">COSO Action</description>
12+
</cell>
13+
14+
<cell style="--kite9-layout: down; ">
15+
<action>Event Identification</action>
16+
<description>Identifying what could stop the organisation from accomplishing its goals.</description>
17+
</cell>
18+
19+
20+
<cell>
21+
<description class="bold">Software Development</description>
22+
</cell>
23+
24+
<cell style="--kite9-layout: right;">
25+
<group style="--kite9-layout: down; --kite9-vertical-align: top; ">
26+
<action>Measurement</action>
27+
<description>Working out what to track to monitor risks to our project.</description>
28+
</group>
29+
<group style="--kite9-layout: down; --kite9-vertical-align: top; ">
30+
<action>Analysis</action>
31+
<description>Ascertaining what risks exist within the environment you’re operating in, or
32+
what risks you’re addressing in the project.</description>
33+
</group>
34+
</cell>
35+
</table>
36+
37+
</diagram>

0 commit comments

Comments
 (0)