It is ultimately cheaper to design, code, sell, and support a more secure software product than a more insecure software product. Achieving this goal requires recognizing this advantage, investing in developers and processes that work, and dealing with exceptions (defects) as soon as possible. Cheap IT is ultimately expensive — more expensive than proper investment in IT in the first place. The faster asset owners realize this and be held responsible for the security of their systems, the less intrusion debt will mount and the greater the chance that enterprise assets will survive digital earthquakes.”]
Source: https://taosecurity.blogspot.com/2009/05/cheap-it-is-ultimately-expensive.html

