4 ms·
I worked with 100s of companies from small to giant conglomerates over my time in advertising and 90% have what HN would consider bad security.
by desindol 4y ago
I worked with 100s of companies from small to giant conglomerates over my time in advertising and 90% have what HN would consider bad security.
- pclmulqdq 4y agoSecurity engineers have a tendency to see a hole and tell you to fill it, independent of the threat model that is required to exploit it. Security is a business decision. That being said, Twitter's stance on insider risk was a little too lax for my taste: my colleagues at a big tech were often asked by governments for their work passwords at country borders if the border patrols noticed they worked for the company, and had no choice but to comply. Preventing insider access to systems mitigates this risk to your employees.
- prvit 4y ago90%? That seems awfully optimistic.