Security code management

The actual process of doing the project will encounter various difficulties and obstruction, every time a new experience. We heard before the old code management security, and such a company code leak then the programmer to court, etc. example, when it is really happening around themselves, come so suddenly.
One afternoon, a message of a sudden in the R & D group, the scraper is submerged in the chat, few people noticed. But soon, the leadership called me to ask, and ordered for processing. Information security department detected a party of some sensitive information leakage related links their company and projects on GitHub, after understanding, but also aware of the seriousness of the matter, the first time for the parties to upload to complete Demo on GitHub delete, and whether the investigation related to the blog and other relevant colleagues leakage behavior. It led to the need to replace some of the data of the original replaced with a new way to access sensitive information and, at the same time be assessed against the dangers of this behavior among. The day began for the matter an internal review and the development of related penalties, but also for the partners give a reasonable explanation and description, then that is all aspects of RBI / apology. Fortunately, no less bad influence, not go into the legal liability.
Although this matter is just a unconscious act, only the mind for learning. But in the workplace, on the field are indeed regarded as the most basic professional ethics, confidentiality is always the first place. Lack of personal security awareness, can also be one-sided description sector companies is weak, not been a strong emphasis on and explanation in this regard in this regard. Increase personal awareness, improve management practices, it has become an important step needs to go in the future.

Published 51 original articles · won praise 11 · views 30000 +

Guess you like

Origin blog.csdn.net/jacksinrow/article/details/104709757