how to handle security consultants

i really am suprised at some developer's attitudes towards security consultants. I've seen developers (and management) treat blackhats as the absolute enemy, when hired to review a system. People clam up and become un-cooperative, give blank stares and generally freak out. snap out of it! they're on your side. If they find a whacked out valnerability that you barely understand thank her/him, ask for further explanation if necesary, and maybe even hire her/him to help patch your app. 'nuff said.

