Ignoring threat assessments... interesting approach to information security
...flippant disregard for third party threat reports/assessments. What other information is ignored because the person in charge believes that what was good enough 6 months ago is still good enough today? Further, how many other organizations approach security control design, implementation, and management in the same way





