Skip to main content

Vulnerability Management

  • Chapter
  • First Online:
Designing a HIPAA-Compliant Security Operations Center

Abstract

Breaches occur because vulnerabilities are exploited. It does not mean attackers used complex, undetectable zero-day exploits to compromise a system and exfiltrate data. It does mean that a weakness existed, an attacker took advantage of it, and the activities went undetected. A successful breach against an organization also does not always mean incompetence or negligence was the root cause. Sometimes organizations with mature processes and talented staff suffer breaches. Sometimes there are just too many variables and too much noise.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

eBook
USD 16.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 16.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Notes

  1. 1.

    https://community.greenbone.net/t/about-greenbone-community-feed-gcf/1224

  2. 2.

    http://openvas.org/#about

  3. 3.

    www.cisecurity.org/cis-benchmarks/

  4. 4.

    https://nvd.nist.gov/

  5. 5.

    www.exploit-db.com,

  6. 6.

    https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator

  7. 7.

    www.exploit-db.com

  8. 8.

    www.metasploit.com

Author information

Authors and Affiliations

Authors

Rights and permissions

Reprints and permissions

Copyright information

© 2020 Eric C. Thompson

About this chapter

Check for updates. Verify currency and authenticity via CrossMark

Cite this chapter

Thompson, E.C. (2020). Vulnerability Management. In: Designing a HIPAA-Compliant Security Operations Center. Apress, Berkeley, CA. https://doi.org/10.1007/978-1-4842-5608-4_4

Download citation

Publish with us

Policies and ethics