The set of Web services standards seems to grow by the day. But if a Web services implementation supports all of these standards, is it necessarily secure?
Just as you can't test quality into software, you can't bolt security features onto code and expect it to become hack-proof. Security must be built in throughout the application development lifecycle.