Rule of thumb - no process should be responsible for defending itself.
I am an (ex) security researcher, and currently manage several security teams at Facebook
Rule of thumb - no process should be responsible for defending itself.