Vulnerability Management in Cybersecurity: The Basics

Vulnerability Management in Cybersecurity: The Basics

54mBeginner2025-07-08

Authors

Lora Vaughn

Lora Vaughn

Cybersecurity Executive in Financial Services

Course details

Some people think that vulnerability management just means patching OS systems, but it's so much more than that. Vulnerability management is something every organization needs to address; however, many don't understand the mechanics and breadth of the challenge. This course provides those without prior experience in the area an overview of why vulnerabilities exist, as well as an explanation of the process of managing them from start to finish. Instructor Lora Vaughn McIntosh covers the three key components of vulnerability management and the tools needed to establish a program of your own. Get an introduction to vulnerability scanning and reporting, learn how to identify which vulnerabilities to address first, discover how to vet false positives, and more.

Skills covered

Vulnerability ManagementCybersecurityLearning

Concepts

Introduction

  • Managing vulnerabilities
  • The key elements of VM - DARC

Detect

  • What is a vulnerability
  • Why do vulnerabilities exist
  • Vulnerability sources
  • Introduction to vulnerability scanning
  • Reporting

Assess the Risk

  • Handling all those vulnerabilities
  • CVSS - Industry standard severity algorithm
  • CVSS - Modifying factors
  • Concern - Regulatory requirements
  • Concern - Exposure
  • Risk and compensating controls

Resolve and Confirm

  • Introduction to patch and config management tools
  • Vetting false positives
  • Confirm remediation

Putting It Together

  • Review DARC
  • Building a program

Conclusion

  • A constant effort
40,000 Toman