|
|
|
|
|
by happyopossum
1469 days ago
|
|
Happy to hear you've made some positive changes! That said, as a cybersecurity practitioner, this: >a lot of compliance and security related tasks which added zero benefit to our service scares the bejeezus out of me. Security is never of zero benefit. |
|
There are plenty of security-related tasks that have zero, or even negative, benefit.
- Obtaining EV certificates for your websites.
- Enforcing password rotation every 90 days.
- Adding a webapp firewall in front of your static file hosting (e.g. S3).