Reblogged by slightlyoff@toot.cafe ("Alex Russell"):
ktemkin@chaos.social ("Kate Temkin") wrote:
security budget:
- $1 looking into languages that don’t trivially buffer overflow
- 50¢ looking into enabling exploit mitigation features
- 1¢ research into things like compile-time diversity
- $10M hiring a disgraced CISO from a FAANG company
- $100 hiring a red team to ignore feedback fromsomeone who is good at the economy please help me. my enterprise platform is dying