Chapter 2

The Vulnerability Experience

Vulnerability management (VM) is a subject that fits nicely into all of the other management disciplines found in frameworks such as the Information Technology Infrastructure Library (ITIL), and the international standards ISO 17799 and ISO 27001. These disciplines are generally created for the purpose of dealing with the persistent industrial stream of some phenomena that is a direct consequence of business activities. Taking the ITIL framework as an example, incident management, a set of processes supported by people and technology, addresses faults in IT infrastructure. Those faults are not part of the normal operation of the infrastructure and underlying services.

Similarly, VM pertains ...

Get Vulnerability Management, 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.