Get the latest tech news
"Security is our top priority" is meaningless
A couple of years ago I was asked to give a conference talk about software security. Well, actually I wasn't really asked, my company bought...
In fact the safest way a bank can operate is to shut down their online presence, buy a big vault and put a small army outside the door. It sounds nice, but does this in practice mean that whenever anyone has an idea to improve security, at the expense of UX, consumer prices, etc, you still implement it? We give UX issues 20%, security 25%, tech debt 10%, new features 20%, etc.. As you can see risk is the number 1 priority because 25% is higher than 20%."
Or read this on Hacker News