Broker Check

Vulnerability Management

January 10, 2024

Martin Seeger has posted about vulnerability management tools on the cybernality website. The full post is at https://cybernality.com/en/back-to-the-future-rethinking-vulnerability-management-tools.

According to Seeger, too much money is invested in expensive vulnerability management tools instead of improving their effectiveness. Detecting and fixing the most critical vulnerabilities is far more important than detecting all vulnerabilities.

Using AI and algorithms, prioritize the weak points that need to be closed most urgently. By updating software regularly and promptly you eliminate outdated software that can be exploited.  Focus on current threats and patch them ASAP. Focus on critical assets (there is a list in the post) and monitor them in groups rather than individually.

Many cybersecurity tools include vulnerability management functions, but using too many tools can make it harder to see the overall picture. Not all risks can be mitigated by technical means; those that can't must be monitored. Above all, managers must have the time and expertise to do their work.