Complexity kills security

We have to understand the system to secure it. Complex systems, especially ones that evolve, need complicated and evolving security solutions. These security solutions become even harder to understand and maintain. Security diminishes and eventually dies in this cycle.

An answer could be to invest in system simplification as the first step in security. Same would apply to the security processes and tools used for security. An even better answer is to design the system for easier definition and security.