Hacker News new | past | comments | ask | show | jobs | submit login

I would argue, security needs to be a part of planning day 1 rather than looked at as a bolt on prior to involving upper management. It needs to be treated as a core functionality rather than an external concept. The biggest issue I see is we are patching and finding fixes for something that could easily be remedied if address before engineering takes place. Most firms i've worked with put it on the back burner or are stuck with the notion of i'm an engineer i'm smart so deal with it.



> I would argue, security needs to be a part of planning day 1 rather than looked at as a bolt on prior to involving upper management.

Nothing I said implied bolting anything on prior to involving upper management.

ANY decision at any time during the process can be overruled by any MBA. That needs to change.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: