Security Baseline19 controls·
Vulnerability & Patch Management Baseline
A comprehensive set of foundational controls required for a continuous vulnerability and patch management program: full asset coverage, credentialed scanning, internet-facing surface scanning, risk-based prioritization (CVSS + EPSS + CISA KEV), severity-based patch SLAs, exception process, and remediation verification. Framework: SANS CIS Controls v8 Control 7; actively exploited vulnerabilities (CISA KEV) are prioritized.
Beta
This section is not open yet
Titles and summaries are free. The detail of this section is not published yet. You can request the offline comparison tool for the open environments with a company email.
If you have access, sign in to unlock.
Sign in →