Teams routinely say 'we'll do a quick and dirty solution now and fix it when we grow / pass an audit later.' The talk's case study shows this is not true: inherited PII-laden data and a HIPAA requirement forced expensive obfuscation work after the fact. Treat compliance and security as first-class from the start.