Enterprise Vulnerability Management Essay

Improved Essays
After the vulnerabilities are identified, the enterprise can then decide what steps they need to take to mitigate the vulnerabilities. They take steps in such a way that it not only helps to get rid of the vulnerabilities but also removes the cause and hence enhance the security.
In all the cases, every single enterprise has two options
1) Endure the risk and see what dangers it can cause so as to improve the security in future. This is called retention.
2) The other thing is mitigation. In this, the enterprise works on a method to resolve the fault.

Figure1: vulnerability management key steps (5)

Mitigation is the widely used option in the world now a days and hence is explained under.
To mitigate any kind of vulnerability, one should have two kinds of approaches:
a) Qualitative:
…show more content…
Figure 2: key components of vulnerability management (6)

Now we will be studying about the key components of the Enterprise Vulnerability Management.
a) Pre assessment:

At first, make sure that you have information about the system you will be dealing with. Collect the information about the fault as well because then only you will be able to solve it.

b) Assessment:
This further can be divided into different steps:
1. Documented Policy:
There need to be a documented policy which will lead you to solving the vulnerability.
2. Management Support:
You need to have the required support so as to have full control over system to mitigate fault. 3. The Right Application for Your Environment:
You can find many application plans in the market. The main task is to find which of these available applications will best suit your enterprise’s environment.
4. Coverage for operating systems, applications, and network

Related Documents

  • Superior Essays

    Introduction The current information technology (IT) infrastructure consists of a mix of 2008 and 2008 R2 servers, with two legacy Windows 2000 servers, and four Windows Server 2012. In addition to the Windows server environment, the network consists of routers, switches, and security appliances, such as firewalls. The environment also consists of important services to ensure the security, and stability of the network.…

    • 922 Words
    • 4 Pages
    Superior Essays
  • Improved Essays

    Operations Plan Location TJ Maxx is located in one of the busiest locations in Boston – 350 Washington Street, Boston, MA 02108. This is an excellent location to have our warehouse in as it helps us to serve our target in a more effective way as it is centrally located and it enables us to reach customers much more easily anywhere in the metropolitan area. A warehouse will be needed so that we can stock all clothing items customers return once they have tried it on. We will require an office which can accommodate at least 8-10 employees where they can operate from. Whereas, the office will be situated on the outskirts of Boston, since we only need it for operations, where rent is much lower which in turn will help us keep costs low.…

    • 782 Words
    • 4 Pages
    Improved Essays
  • Decent Essays

    Issue: An error happened in giving a medication dosage to a trial participant/ subject. The error happened due to a mistake by the pharmacy research technician in dispensing the correct dose of the investigational product. The pharmacy technician dispensed a dose that was for another patient who is not involved in the study. The research nurse gave the medication to the patient enrolled in the study, unaware of the pharmacy technician mistake.…

    • 196 Words
    • 1 Pages
    Decent Essays
  • Improved Essays

    P1 – The impacts that different types of threats have on an organisation Technical Failure A technical failure can be caused for many different situations. Most devices will fail at some point because of some kind of error. There are certain measures that can be put into place to avoid these errors from occurring more often. Such as the training of staff of the device they are using so these issues will become less common and then they will also be to most likely solve the problem also.…

    • 1227 Words
    • 5 Pages
    Improved Essays
  • Improved Essays

    Evaluate the risk and create policies and procedures to negate or reduce them. Educate and communicate with management and staff about risk factors. Rank risks according to likelihood of occurrences for each dept. Periodically review and update risks, and risks management programs. (Rubbens, 2007)…

    • 819 Words
    • 4 Pages
    Improved Essays
  • Improved Essays

    PROMULGATION STATEMENT/LETTER To All Recipients: This letter is written to convey the Emergency Operations Plan for the County of Okaloosa in the northwest region of Florida. It will provide a foundation for the use in performing emergency functions during a major disaster or an emergency in the county. This Emergency Operations Plan includes the four phases of emergency management.…

    • 554 Words
    • 3 Pages
    Improved Essays
  • Decent Essays

    S.2. and s. 38 clarify as to whether the supervisor’s intervention applies to the case study referring to the children’s exposure to pornography with the parents failing to take necessary steps to prevent it and lack of nutrition in their diets. However, the Act does not clearly state at what point the parents’ failing to meet the child's basic needs puts them at danger in regards to frequency and duration, this leaves interpretation of when to apply the Act open to SW subjectivity. It is clear from s.2.3 (a) that action must be taken to terminate the risk to security and development; however, it does not state what these actions should or could be.…

    • 114 Words
    • 1 Pages
    Decent Essays
  • Improved Essays

    Hazard Identification Nvq

    • 299 Words
    • 2 Pages

    First is hazard identification. This is the process of examining each work area and work task for the purpose of identifying all the hazards which are “inherent in the job”. Work areas include but are not limited to machine workshops, laboratories, office areas, agricultural and horticultural environments, stores and transport, maintenance and grounds. Second is risk identification, once a hazard to health and safety has been identified, the risk associated with that hazard must be examined. As a prelude to Risk Assessment, it is useful to identify factors that may be contributing to the risk.…

    • 299 Words
    • 2 Pages
    Improved Essays
  • Improved Essays

    Target Breach Case Study

    • 740 Words
    • 3 Pages

    Exposure management stakeholders have the responsibility to detect and manage risks and liabilities to an adequate level based on the tolerances expressed by the fiduciary stakeholders. In addition, they bear the responsibility of make sure in the event of a breach that exposure and damage levels are not increased as a result of an unprepared and unsuccessful reaction. Operational stakeholders have the responsibility to architect, set up and operate an…

    • 740 Words
    • 3 Pages
    Improved Essays
  • Improved Essays

    Here I have identified three situations that I feel that needs to be addressed concerning some questionable practices by Joe Smith. My first concerning is that The CEO of Peninsula Hotel gave Joe Smith a case of some very expensive wine he happens to mention that his wife likes. Or how Joe was invited to go sailing with Bill and how he would hold business meeting at the Peninsula Hotel.…

    • 768 Words
    • 4 Pages
    Improved Essays
  • Decent Essays

    A Risk Assessment Plan plays a big role in any company, whether it is big or small company. The risk assessment will help identify the vulnerabilities and threats to the Wells Fargo IT resources. Which will help determine the impact of those vulnerabilities, threats, and unauthorized access. Having some knowledge of what type of risks expect will help mitigate them faster. There are a several steps needed for a good risk assessment plan, which will essentially help the company be in compliance with FISMA and other federal laws.…

    • 720 Words
    • 3 Pages
    Decent Essays
  • Improved Essays

    Team 3: Vadde Aditya, Bishal Bk, Fang Fang, Suraj Karki, Varshini Paladugu, Raghuveerreddy Suram Week 7 Group Assignment • Discuss what can happen if the framework you choose as a foundation does not fit your organization’s business objectives. If the framework the organization choose as a foundation does not fit the business objectives, it may face several problems as following. 1.…

    • 723 Words
    • 3 Pages
    Improved Essays
  • Superior Essays

    Essay On 1980 Heat Waves

    • 2096 Words
    • 9 Pages

    The 1980 Heat Wave in the United States Disasters, as the word suggests, is a phenomenon that actually tends to spell a doom on the regular routine of an entire society and depending upon its size and effects it can even cause a change in the working process of an entire country. Basically, when something big happens that we cannot stop or cannot change is known as a disaster. Every year, millions of people are affected by the natural disasters and man-made disasters (Georgian Med News, 2011). In this paper, we will discuss about a natural disaster that took place in the United States and the studies in Disasters preparedness.…

    • 2096 Words
    • 9 Pages
    Superior Essays
  • Improved Essays

    Hr Audit Paper

    • 1056 Words
    • 5 Pages

    HR Audit Strategic Management of Human Capital Jasmine Flores [Date Submitted] HR Audit Introduction Any organization faces an essential requirement to follow a certain number of rules, regulations, practices and other detailed procedures for staying on the path of success. For an organization to be successful, some of the most significant aspects which can assist it in relation to this include different instances of HR metrics. By following and monitoring significant HR metrics, a company can deal with issues effectively and raise the standards of its operations and outcomes in an informed manner.…

    • 1056 Words
    • 5 Pages
    Improved Essays
  • Improved Essays

    Boeing is an Amercian multinational cooperation that offers aircraft and product support services (Boeing: The Boeing company, no date). Being in the aircraft business involves a lot of risk unless someone is not careful and decisions are not made through careful and accurate analysis. They need to be on top of their game at all times ensuring safety of passengers and to uphold a good reputation to be able to be successful in the industry, in the long run. Risk comes in a number of different ways and are often unexpected. Risk management is fundamental to all business activities.…

    • 862 Words
    • 4 Pages
    Improved Essays