Friday, August 29, 2008


Do IBM employees understand web application security?

Has anyone noticed that the largest IT employer on the planet almost never talks about web application security? There employees never blog about it, they never do seminars on this topic and their employees almost never attend user groups such as OWASP at a ratio of smaller organizations.

On the surface, one could simply say that IBM has a vast internal community but according to many IBM insiders when challenged to identify which IBM community takes on this topic, none have been able to provide an answer. Should the marketplace expect more leadership from IBM in this regard or are we content by having Microsoft and Oracle lead the way...

