Clara’s Verdict
Cybersecurity risk management is one of those subjects that most project professionals know they should understand better and very few have the time or appetite to investigate in depth. The result is a significant skills gap between technical security teams and the project managers, developers, and executives who need to make decisions based on their output. Resilience by Design by Clement Pereira takes aim at this gap directly: rather than treating cyber risk as the exclusive domain of specialists with acronyms after their names, it insists that all project stakeholders need a shared vocabulary and a functional understanding of the risks they carry. Rachel Olsen Sivan’s crisp narration carries the content clearly across the four-hour runtime. This is a compact, logically structured guide that delivers on its promise.
About the Audiobook
Pereira’s structure is itself a demonstration of his method: he builds from foundations before adding complexity, which is a pedagogical principle as much as an organisational one. The first section addresses the basics – risk identification, threat analysis, the vocabulary of cybersecurity in a project context. For listeners with no prior background, this section provides the grounding needed for everything that follows. The middle sections move into more technically demanding territory: vulnerability assessments, DevSecOps integration, Bayesian modelling of risk probability, attack graph analysis. The final sections address regulatory compliance and the specific challenge of continuous monitoring and incident response in live environments.
What distinguishes this from more purely academic treatments of the subject is the consistent emphasis on project delivery. Pereira is not writing for security researchers; he is writing for people who need to manage cyber risk as part of delivering projects on time and within scope. The real-world case studies are doing important work here – they translate abstract frameworks into recognisable project scenarios, making the methodology immediately applicable. The CPD/PDU eligibility for continuing professional development points is a practical bonus for project managers and security professionals managing their accreditation requirements. At just over four hours, this is an efficient listen that covers substantial ground.
A note on the target audience that the book itself is clear about: this is not a substitute for professional security training. What it offers is a shared conceptual framework that allows non-specialists to participate meaningfully in security conversations, to ask informed questions, and to make resource allocation decisions based on an understanding of what they are being asked to protect against. That is a genuinely different and genuinely useful thing. Project managers who can speak credibly to their CISO are more effective than those who cannot; this book is designed to close that gap efficiently.
The supplemental Advanced Track is a thoughtful addition, allowing listeners who want greater depth in particular areas to continue beyond the main text without making the primary content feel incomplete.
The Narration
Rachel Olsen Sivan handles technical material with commendable clarity. Narrating non-fiction that requires precise terminology without tipping into monotony or sacrificing comprehension is a genuine skill, and Sivan manages it well throughout. The pacing is measured without being sluggish, and complex concepts are given sufficient breath to land properly before the next idea arrives. The self-published Clement Pereira production is clean and professionally executed – this is not a rough independent recording but a polished listen from start to finish.
What Readers Say
Released in March 2026, Resilience by Design is newly available and carries no listener reviews at the time of writing. The CPD/PDU eligibility and the specificity of the stated learning outcomes – from threat analysis and regulatory navigation to advanced Bayesian modelling and incident response – suggest a text designed to deliver genuine professional value rather than general-audience interest. The learning outcomes framework is refreshingly concrete, moving from “master cybersecurity risk identification” through “translate cyber risk into actionable project decisions” in a progression that reflects how practitioners actually develop expertise.
Who Should Listen?
The book’s publication timing – March 2026 – reflects an industry in which cybersecurity incidents are increasingly treated as project governance failures as much as technical ones. High-profile breaches in recent years have been attributed not only to security vulnerabilities but to project teams that failed to integrate security considerations into delivery decisions. Resilience by Design is aimed squarely at closing that accountability gap.
Project managers working in digital environments who need to engage credibly with security stakeholders and understand the risk landscape of their own delivery work. IT professionals seeking a structured overview of risk management frameworks rather than deep technical implementation guides. Executives who need to understand cyber risk as a project and business governance issue, not merely a technical one. Those studying for project management certifications – PMP, PRINCE2, APM – who need CPD-eligible content in the cybersecurity domain. This is professional development that respects your time by going directly to what is useful. Find Resilience by Design on Audible UK.
