I totally second the comments from Joost.

In terms of getting yourself taken seriously, if you feel that your immediate line manager is not listening, it may be time to get political, and go to his boss with your concerns. At the same time, you need to pitch your argument in business terms - somebody could ruin our site! How much would the legal fees cost us? It is worth laying on the paranoia with a trowel.

Also, this is one of the rare instances when the auditor is your friend. Suggest an external security audit of the site. By the way, this work can be quite fun - I know of a few Perlmonks who do this kind of work.

Update:

It seems that iza is following a piece of advice that I decided not to put on my original reply, and gone to look for another job. Good on you iza++.

Your present employers sound a bad outfit to work for, and will probably go out of business when someone trashes their database, or when their clients sue the pants off them. However, I would advise against doing any damage to their system before you leave - they seem quite capable of doing this for themselves!

Good luck with the job hunting. And if you find yourself out of work, you could always try freelancing as a security consultant ;-).


In reply to Re: how could i make "them" understand that security IS important ? by rinceWind
in thread how could i make "them" understand that security IS important ? by iza

Title:
Use:  <p> text here (a paragraph) </p>
and:  <code> code here </code>
to format your post, it's "PerlMonks-approved HTML":



  • Posts are HTML formatted. Put <p> </p> tags around your paragraphs. Put <code> </code> tags around your code and data!
  • Titles consisting of a single word are discouraged, and in most cases are disallowed outright.
  • Read Where should I post X? if you're not absolutely sure you're posting in the right place.
  • Please read these before you post! —
  • Posts may use any of the Perl Monks Approved HTML tags:
    a, abbr, b, big, blockquote, br, caption, center, col, colgroup, dd, del, details, div, dl, dt, em, font, h1, h2, h3, h4, h5, h6, hr, i, ins, li, ol, p, pre, readmore, small, span, spoiler, strike, strong, sub, summary, sup, table, tbody, td, tfoot, th, thead, tr, tt, u, ul, wbr
  • You may need to use entities for some characters, as follows. (Exception: Within code tags, you can put the characters literally.)
            For:     Use:
    & &amp;
    < &lt;
    > &gt;
    [ &#91;
    ] &#93;
  • Link using PerlMonks shortcuts! What shortcuts can I use for linking?
  • See Writeup Formatting Tips and other pages linked from there for more info.