Abstract The goals behind implementing a security patch management process cover many elements of a sound security program. Security patch management positions the security management process within the larger problem space: vulnerability management. It improves the way the organization is protected from current threats and copes with growing threats. Another goal is to improve the dissemination of information to the user community, the people responsible for the systems, and the people responsible for ensuring that the affected systems are patched properly. It formalizes record keeping, in the form of tracking and reporting. It introduces a discipline: an automated discipline that can be easily adapted once the process is in place. It also can allow a company to deal with security vulnerabilities as they are released with a small amount of resources, and prior- itize effectively. It improves accountability within the organization for the roles directly responsible for security and systems. With this in m...
{{comment.content}}