This is more of a small business scenario question for me. Just wanted to make sure I am doing everything within my capability and control to protect the data.
I understand on the big budgets from big companies for securing the data, which we never be able to match.
But I am also not keen on locking my data with a particular product as if (and when) it get changed or discontinued I don't want to spend time in converting to something else - reason for the opensource products and self hosting. At least I can still run it in parallel until I can change over to a newer system.