Hacker News new | past | comments | ask | show | jobs | submit login

As a CTO of a resource constrained small startup I totally empathize with you.

I thought security checklists were long until I ran into ISO.

Edit: Typo (and coffee).




I can empathize as well. And it gives me a greater appreciation of how most developers must feel about accessibility, which is my own specialty and passion.


I have to work with both constraints and I find accessibility standards to be easier to align with as they can become part of the SDLC pipeline (like code level testing). Securities' scope is far more all encompassing. The hard part for accessibility generally comes down to ensuring that people don't forget they need to think about it when they are designing features and especially changes.


Another thing that comes to mind is the list of NIST Cybersecurity Framework’s controls. The length of these lists is a reflection of the real complexity that are inherent to computer networks.


Empathize? :)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: