Question: Enterprise Security Infrastructure Controls and Regulatory Compliance DRAFT VULNERABILITY SCANNING STANDARD Investigate Nessus or similar Scanning tool. Standards are technology specific Each standard must include
Enterprise Security Infrastructure Controls and Regulatory Compliance
DRAFT VULNERABILITY SCANNING STANDARD
Investigate Nessus or similar Scanning tool.
Standards are technology specific
Each standard must include the following:
Brief description of the tool
At a high level paragraph what does this technology do and how you are going to use it
Implementation
How will you implement it what are the systems you will scan?
What systems is it applied to Scope
How will you categorize vulnerabilities?
What are the rules on how long to fix vulnerabilities?
What are the exceptions rules and approvals if you cannot fix an issue for example say you
have a system that only runs on Windows XP how do you handle that or other exceptions
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
