Hacker News new | ask | show | jobs
by com 692 days ago
Security should not, in general, have anything but awooga-awooga red lights and sirens break-glass write/change/delete/shutdown access to prod infrastructure or systems, or indeed anything that could compromise them. I’d argue that access to read or copy sensitive data is almost, but not quite as dangerous without extensive controls and internal monitoring too…

IMO there are no legit reasons except politics, empire building, NIH and toxic relationships for such a such a crazy state of affairs.