Hacker News new | ask | show | jobs
by adamckay 1329 days ago
What do you expect banks and other regulated industries do? YOLO patch whatever and whenever?

I don't work in a regulated industry where it's required, but we do similar with a proper change control process and there's not a single individual that's authorised to perform changes without oversight, (even if that oversight from senior leadership comes retrospectively).

1 comments

What did banks do with heartbleed, shellshock, spectre, etc?