EN ISO/IEC 30111:2020 PDF
Information technology - Security techniques - Vulnerability handling processes (ISO/IEC 30111:2019)
Information technology - Security techniques - Vulnerability handling processes (ISO/IEC 30111:2019)
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 21
- Дата публикации:
- 27 мая 2020 г.
- Издание:
- CEN/CENELEC EN 30111 edition 1 version 1
- ICS:
- 35.030
This document provides requirements and recommendations for how to process and remediate reported potential vulnerabilities in a product or service. This document is applicable to vendors involved in handling vulnerabilities.
Abstract
Overview
specifies requirements and recommendations for processing and remediating reported potential vulnerabilities in products and services. Intended primarily for vendors, it defines a structured vulnerability handling process and an organizational framework to receive, verify, remediate and disclose vulnerability information. The standard is designed to be used together with and supports vendor accountability, secure product lifecycle practices, and responsible vulnerability management.
Похожие стандарты
Стандарты, упомянутые в описании