SIST EN ISO/IEC 30111:2020 PDF
Information technology - Security techniques - Vulnerability handling processes (ISO/IEC 30111:2019)
Information technology - Security techniques - Vulnerability handling processes (ISO/IEC 30111:2019)
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 21
- Дата публикации:
- 29 июля 2020 г.
- Издание:
- ISO/IEC 30111:2019
- ICS:
- 35.030
This document provides requirements and recommendations for how to process and remediate reported potential vulnerabilities in a product or service. This document is applicable to vendors involved in handling vulnerabilities.
Abstract
Overview
EN :2020 () specifies requirements and recommendations for processing and remediating reported potential vulnerabilities in products and services. Intended primarily for vendors, it defines a structured vulnerability handling process and an organizational framework to receive, verify, remediate and disclose vulnerability information. The standard is designed to be used together with and supports vendor accountability, secure product lifecycle practices, and responsible vulnerability management.
Похожие стандарты
Упомянутые в описании и другие стандарты SIST