|
|
|
|
|
by ogennadi
639 days ago
|
|
At a government job, new contractors had to watch a video of a serious man telling us the jailtime and monetary penalties for accessing Personally Identifiable Information (PII) inappropriately. I never even tried to get the PROD credentials. |
|
That, and don't let anyone get stressed (for whatever reason) to the point that their judgment goes bad.
I'm still wondering about low-hanging fruit tactics to avoid unintentional exposure to user data in the course of moving fast with too little resources.
(Say, prod is down, and normally debugging would include looking at tables, but you haven't built a fleet of privacy-protecting ways to rapidly get the same diagnostic information and intuition about the database that you can just by looking at it.)