Due to the smaller size of our company we don't really have a specific security team. Our infrastructure team (network, windows, linux, storage, etc) are all responsible for security. Our engineers create designs with as much or as little security as is necessary and we build and support it at that level. Because of this we all use the same tools. Years ago the company had a project to consolidate all technical teams to using the same set of tools; this was to remove the focus from arguing over which tools were accurate and put more focus on the actual problems.
↧