Web security because I'm a web developer who definitely builds unsecure applications. Unfortunately (and incorrectly, IMO) the full stack dev market doesn't really value security too much as it pertains to marketable job skills. For instance, I spend my time improving my Javascript skillset which has a greater impact on my bottom line at the moment.