Security threats Toolkit
Story: Staff 'need reasons' to believe in security
The problem is that what gets selled (or purchased) usually isn't that what works security wise. Because those that purchase or decide usually can't be really bothered with security (it's not what they get tapped on the fingers for if they get it wrong).
So perhaps security experts need to get a grip on the (internal) purchasing and decision making processes first.
After all , security is also about keeping bad things out and getting good things in.
Full Talkback thread




