A recent example of application security misinformation comes from XML security gateway vendors that say companies must have a separate XML security layer to keep application developers out of security. It is the right idea to keep developers out of security, but you can do this without a separate, disconnected security layer. Besides, a separate security layer presents numerous challenges for consistent enforcement of security policy. The right strategic answer is to integrate security for XML and other access channels with the security of the underlying application platform. A practical implementation strategy will start with unified identity and proceed in stages from there.
This is an excerpt
Buy Risk-Free
Price: US $499
Our Service Guarantee: If you are not completely satisfied with this document, notify Forrester within 24 hours of purchase for a full refund.
Already a Forrester Client? Log in to read this document.