# Just Culture and Information Security

DevFeed: [Just Culture and Information Security](<https://devfeed.tech/articles/just-culture-and-information-security-36859.md>)

Original publisher: [Read original article](<https://shostack.org/blog/just-culture-and-information-security/>)

Author: Adam

Published: 2018-05-09T00:00:00Z

Content type: opinion

Language: en

Sources: [Shostack & Friends Blog](<https://devfeed.tech/sources/shostack-friends-blog.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [passwords](<https://devfeed.tech/topics/passwords.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>), [Availability](<https://devfeed.tech/topics/availability.md>)

Tags: [information-security](<https://devfeed.tech/tags/information-security.md>), [password](<https://devfeed.tech/tags/password.md>), [password-manager](<https://devfeed.tech/tags/password-manager.md>), [passwords](<https://devfeed.tech/tags/passwords.md>), [patterns](<https://devfeed.tech/tags/patterns.md>), [security](<https://devfeed.tech/tags/security.md>)

## AI overview

The article reflects on just culture in information security after Twitter disclosed that plain-text passwords had been stored in log files without evidence of access or a known breach. It revisits criticism of password-management systems with centralized storage, arguing that locally distributed storage may avoid more catastrophic failure modes while acknowledging tradeoffs in monitoring, response, upgrades, and availability.

## Source excerpt

[no description provided]