The very basic concern of security is your application should not allow Unauthorized and Unauthenticated users to enter in your application. Ethical hackers can make your private data public can also create Denial of services to an Authorized and Authenticated User.