12.07.2015 Views

CERT Resilience Management Model, Version 1.0

CERT Resilience Management Model, Version 1.0

CERT Resilience Management Model, Version 1.0

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

VAR:SG2 Identify and Analyze VulnerabilitiesEstablish and maintain a process for identifying and analyzing vulnerabilities.VAR:SG2.SP1 Identify Sources of Vulnerability InformationThe sources of vulnerability information are identified.VAR:SG2.SP2 Discover VulnerabilitiesA process is established to actively discover vulnerabilities.VAR:SG2.SP3 Analyze VulnerabilitiesVAR:SG3 Manage Exposure to VulnerabilitiesVulnerabilities are analyzed to determine whether they need to bereduced or eliminated.Strategies are developed to manage exposure to identified vulnerabilities.VAR:SG3.SP1 Manage Exposure to VulnerabilitiesVAR:SG4 Identify Root CausesStrategies are developed and implemented to manage exposure toidentified vulnerabilities.The root causes of vulnerabilities are examined to improve vulnerabilityanalysis and resolution and reduce organizational exposure.VAR:SG4.SP1 Perform Root-Cause AnalysisPerform review of identified vulnerabilities to determine andaddress underlying causes.194 | CMU/SEI-2010-TR-012

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!