Skip to main content

ER-30 Pre-Kickoff - Patching and Vulnerability Management and System Monitoring Policy

C
Written by Claudio Morsella
Updated over a month ago

Patching and Vulnerability Management Policy and Procedures

Provide your Vulnerability Management and Patch Management Policies.

Ensure that the policies include:

  • How often you perform vulnerability scans

  • What types of vulnerability scans you perform

  • How you apply patches

  • Timelines for remediating vulnerabilities based on their criticality

  • A requirement that your policy be reviewed annually

Associated Unified Control ID

Associated Framework Control

CTRL-652

LCL-26

Did this answer your question?