Hi Teisha,
You make a strong case for Defense in Depth as an important OWASP principle, especially with how quickly threats can change. The idea of using several layers of protection: like technology, processes, and people, shows that relying on just one method isn’t enough. Your company’s use of ethical hackers is a smart way to stay ahead of problems by finding and fixing weaknesses before they’re used against you. When combined with regular staff training, it helps build a culture where everyone plays a part in keeping systems secure.