This is my pragmatic books list for product security engineers.

Software Architecture

  • Engineering secure devices (no starch press)

Threat Modeling

  • Threat modeling - designing for security (wiley)
  • Threat modeling (O'reilly)

Cryptography

  • Serious cryptography (no starch press)
  • Real-World cryptography (manning)
  • Secret key cryptography (manning)