Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • Home
  • SEARCH
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 110593
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: May 11, 20262026-05-11T02:15:05+00:00 2026-05-11T02:15:05+00:00

Suppose the app you are working on is specially designed for a customer to

  • 0

Suppose the app you are working on is specially designed for a customer to meet a particular ‘in-house’ need, such as data processing of payroll information. This application will not be distributed publicly and will reside on internal networks only. (Theoretically the internal network should remain 100% secure.) How much effort should a developer spend on IA in this case? Lets say the database is SQL, would you worry about preventing an SQL injection attack in this situation?

I would love to hear some feedback from developers who work on none web-centric (I can’t think of a better term right now, though none web-centric is not completely right. Its more like none distributed or none public or something along those lines.) type programs and how much effort do they put into security.

As an addendum, how would you justify this need to a manager type?

I am currently doing a case study of the necessity of IA for ‘in house’ software development so any answer would be greatly appreciated.

  • 1 1 Answer
  • 1 View
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. 2026-05-11T02:15:05+00:00Added an answer on May 11, 2026 at 2:15 am

    I tend to take the perspective that no matter what the final use of the product might be, as the application developer I am responsible for ensuring the integrity of the application and its security. This provides two definite benefits:

    1. Prevents bugs that you might not / will not foresee. For example the same code that escapes inputs before database queries also ensures that names like O’Leary won’t break the application’s normal execution.
    2. Prevents malicious exploitation of #1.

    Regarding #2, if you are working for the company as their developer and information is leaked by an employee using the system then they likely bear liability in that the software is their product. If you are working for a third party that is developing the software to be used by this company then if information is leaked from the company through security holes in your software, any guesses where they’ll turn for answers? Either way, it all comes back to you as the application architect and someone with questions about why the application wasn’t more secure to begin with.

    I would suggest that you implement the most rigorous security possible given your constraints and the sensitivity of the data that you’ll be safeguarding. If its high scores for WoW then I’d worry less than if I were designing an internal application for a bank.

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

Assumption: live/production web app suppresses errors being shown to end-users. Suppose your tech support
i am working on one app and in that i have to open the
I have a situation with my app. Suppose I have 6 users, each user
I'm writing an app that supposed to copy a bunch of files from one
In a web-app I'm writing, the user is supposed to enter the path in
Suppose your git history looks like this: 1 2 3 4 5 1–5 are
Suppose you have 2 different ASP.NET applications in IIS. Also, you have some ASCX
Suppose I have a stringbuilder in C# that does this: StringBuilder sb = new
Suppose we have a table A: itemid mark 1 5 2 3 and table
Suppose I have the following CSS rule in my page: body { font-family: Calibri,

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.