Implementing a Vulnerability Management Lifecycle

Implementing a Vulnerability Management Lifecycle

42mIntermediate2020-06-18

Authors

Kip Boyle

Kip Boyle

Founder and CEO of Cyber Risk Opportunities

Course details

In the past several years, a series of devastating cyberattacks have periodically dominated headlines. While each attack affected different industries and governments, they shared the same root cause: unfixed—but publicly known—vulnerabilities. In this course, get a step-by-step process for finding, prioritizing, and mitigating the vulnerabilities in your own computing environment, no matter what technology stack you're running. Instructor Kip Boyle shows how to prepare for and create a robust vulnerability management program, explaining how to set program goals and secure funding by creating a compelling business case. Kip also covers how to conduct weekly vulnerability scans, as well as mitigate any vulnerabilities that crop up. Along the way, Kip shares case studies that illustrate how a real-world organization would approach each step in this process.

Skills covered

Vulnerability ManagementCybersecurityOne-Off

Concepts

Introduction

  • Everyone needs a vulnerability management program
  • What you should know

Prepare for Vulnerability Management

  • Defining vulnerability management
  • The benefits of vulnerability management

Create the Vulnerability Management Program

  • Succeed by setting program goals
  • Make a great business case
  • Assign qualified people
  • Step 1 case study

Conduct Weekly Vulnerability Scans

  • Creating the right core process
  • How to discover known vulnerabilities
  • Generating actionable vulnerability reports
  • Validate reported vulnerabilities
  • Step 2 case study

Mitigate Found Vulnerabilities

  • How to design effective mitigations
  • How to fix vulnerabilities
  • How to verify mitigation success
  • Step 3 case study

Conclusion

  • Next steps
40,000 Toman