There are some bigwigs in corporate-land that could learn alot from the Apache infrastructure team.
FX said it best "From XSS to root, an incident documentation by the Apache infrastructure team:"
More Here...
Security in a Wide Open Environment