Hack Proofing your E-commerce Site: The Only Way to Stop a Hacker Is to Think Like One

The basics of secure site design begin before the Web server is ever installed and configured. Establishing and maintaining security of an e-commerce site requires careful planning and forethought. All too often, deadlines can make you rush through the preliminary stages and cause you to spend even more time putting out fires and fixing problems that you could have previously avoided. In establishing a plan, you will need to consider protecting your site from a variety of problems and possible attacks.
When developing a site, you should also create a security plan. This should include the following steps, which should be completed and revisited after the Web server is in place. As more data and services are added to the site, holes in security may develop, so you must reevaluate the security of your site as your needs change. The steps that follow will help in focusing your efforts so that important factors aren't missed:
Identify what needs to be secure By identifying what data, software, services, and media will need to be protected, you will be able to implement proper security.
Identify the value of what's being protected Some content on your site will require more protection than other files, due to its value. In the same way, you should determine the value of hardware used to keep your site operating. By determining the value of data, hardware, services, and software, you will be able to make...