Question

What kind of features should a programmer build into systems for your company in order to...

What kind of features should a programmer build into systems for your company in order to design for security? Think about the products that your company produces. Are there products that you feel did a good job of ensuring security during setup? Are there products you use that have demonstrated bad security design? How?

0 0
Add a comment Improve this question Transcribed image text
Answer #1

With our modern dependence on technology and security, nobody would dare to make this statement. Everyone knows how crucial security is and how it must be embedded into everything an organization does.

A strong security culture not only interacts with the day-to-day procedures, but also defines how security influences the things that your organization provides to others. Those offerings may be products, services, or solutions, but they must have security applied to all parts and pieces. A sustainable security culture is persistent. It is not a once-a-year event, but embedded in everything you do.

1. Instill the concept that security belongs to everyone.

2. Focus on awareness and beyond.

3. If you do not have a secure development lifecycle, get one now.

4. Build security community.

This things should be done by a programmer.

  • White list when you can
  • Black list when you can't whitelist
  • Keep your contract as restrictive as possible
  • Make sure you alert about the possible attack
  • Avoid reflecting input back to a user
  • Reject the web content before it gets deeper into application logic to minimize ways to mishandle untrusted data or, even better, use your web framework to whitelist input

Although this section focused on using input validation as a mechanism for protecting your form handling code, any code that handles input from an untrusted source can be validated in much the same way, whether the message is JSON, XML, or any other format, and regardless of whether it's a cookie, a header, or URL parameter string. Remember: if you don't control it, you can't trust it. If it violates the contract, reject it!

Add a comment
Know the answer?
Add Answer to:
What kind of features should a programmer build into systems for your company in order to...
Your Answer:

Post as a guest

Your Name:

What's your source?

Earn Coins

Coins can be redeemed for fabulous gifts.

Not the answer you're looking for? Ask your own homework help question. Our experts will answer your question WITHIN MINUTES for Free.
Similar Homework Help Questions
  • What are the major differences between job-order costing and process costing systems? Give an example of...

    What are the major differences between job-order costing and process costing systems? Give an example of a well-known company that might use job-order costing and an example of a well-known company that might use process costing. Explain why you have chosen the companies that you did, specifically why job order costing or process costing are used. *** You are also required to name a company that uses both costing methods, including providing an explanation of your choice. A great place...

  • You are a systems manager for a large company. In your work, you have found that...

    You are a systems manager for a large company. In your work, you have found that about 5% of all CDs you order are bad. You need to give one of the executives at your company 5 good CDs. Conduct a simulation to estimate how many CDs you will have to check to get five good CDs for the executive. Be sure to include ALL 7 parts of the simulation for full credit! Trial #1 03242 50692 18977 28370 Trial...

  • You are to keep a journal throughout units 1-6 of this course. Journal entries should document...

    You are to keep a journal throughout units 1-6 of this course. Journal entries should document observations of interpersonal communication interactions throughout each week. You will post a minimum of two journal entries per week. Each entry should be labeled separately. Each entry should provide an analysis of your communication. Each journal entry should answer one of the questions below (you will answer two questions each week). Entries should identify a relationship to a course concept or term and finally...

  • think about the four different patterns of decline (trajectory) and place them in order of your...

    think about the four different patterns of decline (trajectory) and place them in order of your preferred (good death) to least preferred (bad death )wayof dying. Draw and names each pattern on the ""flip chart "provided. on the right hand side of the chart ,write two why you placed in order you did.

  • What are the major differences between job-order costing and process costing systems? Give an example of...

    What are the major differences between job-order costing and process costing systems? Give an example of a well-known company that might use job-order costing and an example of a well-known company that might use process costing. Explain why you have chosen the companies that you did, specifically why job order costing or process costing are used. Do not choose companies that your classmates have already commented upon. Participate in follow-up discussion by critiquing your classmates' choices of companies.

  • Please think about a real life manufacturing or service company (big or small) that would be...

    Please think about a real life manufacturing or service company (big or small) that would be a good fit for the Job Order Costing method. Explain why you feel that your company would be a good candidate for job order costing (hint: look at the criteria). Also, give at least one example each for direct labor, direct material and manufacturing overhead cost in your company. Finally, explain what allocation base you would suggest for the calculation of the predetermined overhead...

  • In the lecture video I used Boeing and an imaginary company (Pear Co.) as examples to...

    In the lecture video I used Boeing and an imaginary company (Pear Co.) as examples to explain Job Order Costing. Please think about a real life manufacturing or service company (big or small) that would be a good fit for the Job Order Costing method. Explain why you feel that your company would be a good candidate for job order costing (hint: look at the criteria). Also, give at least one example each for direct labor, direct material and manufacturing...

  • The previous report is the only supporting document a contracting company has provided for getting a...

    The previous report is the only supporting document a contracting company has provided for getting a new database design. As the company’s owner is very busy, he has requested you to generate a set of suitable relations with the report above. The process you will follow is itemized below, be brief but provide a good explanation when asked: 1. Considering Employee 112, in how many projects do you find him? What does it tell you in relation to employees? (7...

  • Q1. What methods/facilities are available to secure data in today's systems? Have these methods proved to...

    Q1. What methods/facilities are available to secure data in today's systems? Have these methods proved to be adequate? If not, what changes would you recommend to make these methods more secure? Q 2. You are asked to design a security system for a company to ensure data protection according to the CIA triad. Discuss how you would go about beginning such an assignment and then explain what your final design should accomplish. Keep in mind cost as an issue

  • Case Study 2 Conner Leonard worked for Purges Manufacturing for 32 years. Along with four other...

    Case Study 2 Conner Leonard worked for Purges Manufacturing for 32 years. Along with four other men, he helped to start the company that designed and built products sold around the world. Purges Manufacturing grew and did very well, so well, in fact, that other companies wanted to buy it out. The com- pany was sold three times in 12 years. Each time, Conner held onto his job. He was no longer helping in the design process, and had a...

ADVERTISEMENT
Free Homework Help App
Download From Google Play
Scan Your Homework
to Get Instant Free Answers
Need Online Homework Help?
Ask a Question
Get Answers For Free
Most questions answered within 3 hours.
ADVERTISEMENT
ADVERTISEMENT