Vulnerability Management looks different from business to business. What qualifies a risk as acceptable or not? When should confirmed vulns be fixed by? Perhaps most distressingly, how do we know when vulnerability has actually been remediated? Luis Guzmán talks about the different aspects of vulnerability and its most common musts:

  • a workflow framework that security & dev agree on
  • live critical finding notifications
  • active remediation monitoring
  • visibility throughout ticket lifecycles "from soup to nuts"

About ArmorCode

We develop, sell, and deliver the world’s first and leading AppSecOps platform to our customers, along with the expertise, support and community they need to ship secure software and ship it fast. The ArmorCode platform brings together powerful AppSec Posture, Vulnerability, and Compliance Management with DevSecOps workflow automation.

_____________________________________________________

Follow us

www.armorcode.com

LinkedIn: https://www.linkedin.com/armorcode

Twitter: https://twitter.com/code_armor

_____________________________________________________

About AppSecOps

What is AppSecOps? https://www.armorcode.com/what-is-appsecops

The State of AppSecOps Report: https://www.armorcode.com/state-of-appsecops-2022

AppSecOps Research from Enterprise Strategy Group: https://www.armorcode.com/esg-appsecops-showcase