Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
ethbro
on Oct 21, 2016
|
parent
|
context
|
favorite
| on:
CA Comodo used broken OCR and issued certificates ...
Or more specifically, do security auditors have red teams authorized as part of their audit?
thenewwazoo
on Oct 21, 2016
[–]
In my limited experience (infosec for a big 4 firm), the answer is no. The audits are done as cheaply and as quickly as possible. I worked alone, in fact, and essentially did process testing (read: document review).
Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: