Comment by felmos

3 hours ago

If the execs and board of a password manager company need to experience a breach to take security seriously, I don't really know what to say.

Weirdly being a security company actually can have the opposite affect. A small portion of potential customers or investors assume the company is more secure because they are a security company after all (and should be); therefore, the customer's security review are less stringent so exec can get away with smaller internal security budgets. Of course good security companys with good leadership doesn't do that... but those aren't the big companies.