I'm troubled by how many friends and colleagues in #ProductSecurity and related spaces have shared how little our industry's entry-level and mid-level entry processes emphasize security basics. From people being thrown into vuln management with missing information about what CVSS is and how to use it, to #ApplicationSecurity hires that aren't being given a path to learn about how software is developed and deployed.