This course covers vulnerability management from an Executive Leadership level, and to help Executive Leadership understand the challenges of implementing a vulnerability management program, including implications if it is not set up properly.
Individuals who take this course should be familiar with Information
Technology and Security best practices. They should also be familiar with vulnerability
management and the patch management lifecycle, but do not need to be experts or even
proficient in these subjects. They should also be in a leadership role in their organization,
whether private or public sector. Examples of job roles would be Director of IT or Security,
CISO, CIO, CTO, CEO, or other Executive Leadership roles. These individuals should be
decision-makers in the vulnerability management arena, from patch management to
technology and software purchases in the organization, from a strategic management
perspective.
By the end of this course, students should be able to:
- Define processes within a Vulnerability Management Program
- Identify who should be involved with Vulnerability Management
- Determine best practices for Vulnerability Management
- Understand how to improve vulnerability management using new software / tools
- Be able to create a Plan of Action to improve vulnerability management
The materials within this course focus on the NICE Framework Task, Knowledge, and Skill statements identified within the indicated NICE Framework component(s):
If you would like to provide feedback on this course, please e-mail the NICCS team at NICCS@mail.cisa.dhs.gov. Please keep in mind that NICCS does not own this course or accept payment for course entry. If you have questions related to the details of this course, such as cost, prerequisites, how to register, etc., please contact the course training provider directly. You can find course training provider contact information by following the link that says “Visit course page for more information...” on this page.