DEV Community

Discussion on: Is open-sourcing server-side code a security threat?

Collapse
 
lexlohr profile image
Alex Lohr

The first line of defense is your developers. You should pay for their security training and have that regularly. The second line is hired experts who do security reviews, threat modellings, attack scenarios and so on. The last line is encryption of sensible data. No, that's a joke. The last line is management, who needs to remain vigilant and employ the other lines of defense a lot.