I'm currently reading
The CISM (Certified Information Security Manager) 2011 Review Manual. I'm taking the exam in a week and I'm just getting around to reading and finishing the book. Now to start taking practice exams. This is either going to go really well or very poorly.
I recently just finished Made to Stick. I think it's something that all IT people should read especially if they have to engage with stakeholders. I've noticed IT and specifically Security has a hard time justifying what they do and why it's important.