design

 
Find IT training and SDLC training by State
 

click the map, enter a zip,
or course keyword to find
our current public sessions
    About ASPE Technology  |   Get Credit  |   Contact Us  |   Testimonials  |   Client List

For real-time information or assistance with classes, call us toll-free at
877-800-5221 or email us at customerservice@aspetech.com.



Course HomeCourse DatesCourse DetailsCourse OutlineCourse FacultyCourse Pricing
 

COURSE 1240 | 2-DAY SESSION
Hands-On Patch Management

Course Outline

I. The Dilemma - Enterprise Software and Patch Management

  1. Security Incidents on the Rise - CERT Reporting
  2. Software Has Bugs
  3. End User Licensing Agreements (EULA) - Software Licensing Agreements
  4. The Vulnerability Window
  5. Domains of Security Responsibility Within the Enterprise
  6. Scope of Enterprise Vulnerabilities
  7. The Bleeding Wound of Software and Patch Management Throughout the Enterprise


II. Computer Vulnerabilities & Exposures (CVEs)

  1. US - Computer Emergency Response Team
  2. What is a CVE?
  3. Why CVE?
  4. The CVE Editorial Board
  5. What Does it Mean to be CVE Compatible?
  6. The CVE Naming Process
  7. Vendor Security Vulnerability Bulletins
    • http://www.microsoft.com/security
    • http://sunsolve.sun.com
    • http://www.hp.com
    • http://www.ibm.com
    • http://www.linuxsecurity.com/


III. Software and Patch Management Responsibility

  1. Where in the Enterprise IT Infrastructure are Software and Patch Updates Required?
  2. What Kinds of Software Require Updates and Patches?
  3. Who is Responsible for Software and Patch Management Updates?
  4. Configuration Management
  5. Software and Patch Management - Manual versus Automated Process
  6. Software and Patch Management - Manual Process
    • Best Practices
  7. Software and Patch Management - Automated Process
    • Best Practices


IV. Software and Patch Management Functional Requirements

  1. Complete Library of Patches of your IT Infrastructure Assets
  2. Rapid Access to Software Patches Needed
  3. Rapid Determination That You Need a Patch
  4. Support Internal Testing
  5. Patch Deployment Schedule
  6. Support Vulnerability Scanner Inputs
  7. Monitor and Validate Patch Update Integrity
  8. Comprehensive Software and Patch Update Reporting
  9. Support Enterprise Scalability, Security, and Performance

V. Enterprise Patch Management Architectures

  1. A. Scanning Based Systems
    • Characteristics
    • Architecture Overview
    • Pros and Cons
  2. B. Agent Based Systems
    • Characteristics
    • Architecture Overview
    • Pros and Cons
  3. C. Patch Management Point Solutions
    • Independent Software Vendors (ISVs)
    • Acquiring and Deploying Patches from ISVs
    • Patch Management Distribution






ASPE logo