Wednesday, October 12, 2022

Vulnerability Management - Importance

We all know importance of an effective and working VM program but do you know there are some compliance standards which make VM program mandatory. Yes .. You heard it right !! If a company wants to get certified in these standards then it has to demonstrate a working VM program to auditors.

The two commonly known standards are:

1. ISO 27001 ISMS (Control A.12.6.1)

2. PCI DSS (Requirement 11.2)

Let us know in comments about other standards which make having a VM program mandatory.

Happy Learning !!

No comments:

Post a Comment

Vulnerability Management - Understanding vulnerability posture

Understanding the vulnerability posture of an organisation at a basic level helps you drive remediation efforts. So, I don't know what t...