Basically, I'm wondering if it's ever possible to get Windows servers secure enough to hold sensitive information. For example, if I had a firewall, web server, and MSSQL database server (used to serve up and store data entered through the website) - could i ever secure the system enough to host sensitive information?
Or would it have to be a UNIX/Oracle box?
Sorry for the terrible vagueness of the question, coffee hasn't kicked in yet