January 21, 2010 9:57 PM
Posted by: Troy Tate
attack,
Aurora,
fixes,
Internet Explorer,
malicious software,
malware,
Microsoft,
patch,
patch management,
threat,
update,
vulnerabilityMaybe you have heard about the recent
July 28, 2009 3:11 PM
Posted by: Troy Tate
asset management,
framework,
lifecycle management,
maturity model,
Metrics,
Microsoft,
patch management,
patch management framework,
researchSecurosis and Microsoft have teamed up and released an Open Patch Management Metrics Model. The purpose of this model is to "provide organizations with a tool to better understand their patching costs." The model also has ten steps with multiple substeps to help guide an organization through a...
May 22, 2009 3:24 PM
Posted by: Troy Tate
application security,
Center for internet security,
change management,
CIS,
incident management,
information security,
information security metrics,
Metrics,
patch management,
Security,
security metrics,
vulnerability managementAs an information security manager I am always struggling with how to measure the security posture of my organization. As they say, you can't manage what you can't measure. There's lots of talk out there about ROI (Return on Investment) or ROSI (Return on Security Investment). These may be business...