|
COURSE 1240 | 2-DAY SESSION
Hands-On Patch Management
Course Outline
I. The Dilemma - Enterprise Software and Patch Management
- Security Incidents on the Rise - CERT Reporting
- Software Has Bugs
- End User Licensing Agreements (EULA) - Software Licensing Agreements
- The Vulnerability Window
- Domains of Security Responsibility Within the Enterprise
- Scope of Enterprise Vulnerabilities
- The Bleeding Wound of Software and Patch Management Throughout the Enterprise
II. Computer Vulnerabilities & Exposures (CVEs)
- US - Computer Emergency Response Team
- What is a CVE?
- Why CVE?
- The CVE Editorial Board
- What Does it Mean to be CVE Compatible?
- The CVE Naming Process
- Vendor Security Vulnerability Bulletins
- http://www.microsoft.com/security
- http://sunsolve.sun.com
- http://www.hp.com
- http://www.ibm.com
- http://www.linuxsecurity.com/
III. Software and Patch Management Responsibility
- Where in the Enterprise IT Infrastructure are Software and Patch Updates Required?
- What Kinds of Software Require Updates and Patches?
- Who is Responsible for Software and Patch Management Updates?
- Configuration Management
- Software and Patch Management - Manual versus Automated Process
- Software and Patch Management - Manual Process
- Software and Patch Management - Automated Process
IV. Software and Patch Management Functional Requirements
- Complete Library of Patches of your IT Infrastructure Assets
- Rapid Access to Software Patches Needed
- Rapid Determination That You Need a Patch
- Support Internal Testing
- Patch Deployment Schedule
- Support Vulnerability Scanner Inputs
- Monitor and Validate Patch Update Integrity
- Comprehensive Software and Patch Update Reporting
- Support Enterprise Scalability, Security, and Performance
V. Enterprise Patch Management Architectures
- A. Scanning Based Systems
- Characteristics
- Architecture Overview
- Pros and Cons
- B. Agent Based Systems
- Characteristics
- Architecture Overview
- Pros and Cons
- C. Patch Management Point Solutions
- Independent Software Vendors (ISVs)
- Acquiring and Deploying Patches from ISVs
- Patch Management Distribution
|