Hacker News new | ask | show | jobs
by hiatus 996 days ago
There's no thought given to if the cost to secure the thing outweighs the risk of exposure?
1 comments

I’m not privy to those discussions, but it certainly doesn’t feel like they’re happening. We implement every security “best practice,” for every project, no matter how big or small. We have committees to review, but not to assess scope, only to make sure everything is applied to everything. Also, we have multiple overlapping security products on the corporate desktop image. It feels EXACTLY like no one has ever tried to gauge what a compromise might cost.