
Creating a Security Plan
■
You should have a security plan within your organization that covers
security at a network, application, and workstation level. Security is the
responsibility of everyone, not just network administrators or developers.
■
Security needs to be considered from the beginning of a project, not mid-
project or as an afterthought. Building in security is much easier and cost-
effective from the beginning.
Q: I am a developer for a small firm, and because we have so little staff, I always
review my own code. Will this create a problem if I am always careful in my
review and my applications work the way they’re supposed to without an