This Issue's Dilemma:

 

Security leadership vacuum

Our company has a limited software security team embedded in the developers group, a desktop security group within the network team and physical security within building security. However, we have no overall security policy to tie all our security experts together.

Is it important that they work together in the same department, or should we just establish good lines of communications between them so they don't just point fingers at each other when a security breach happens?

-- Michael G., Security Analyst

1. Can you help? What's your best advice?

2. Would you like advice from your peers? Enter your question below. It may be chosen for a future issue.
3. To enter the drawing for a copy of Secure Programming with Static Analysis, by Brian Chess and Jacob West, a $49.95 value, please enter your contact information.

With your permission, responses may appear in a future issue, and may be edited for length and clarity

*
4. Please indicate your choice about using your answer, name and company in an upcoming issue.