Vulnerability Lifecycle Management

Securing IT starts by managing IT

Challenges

Managing vulnerabilities requires a well thought-out process that aligns to business needs and provides a solid framework for the IT department. The goal of Vulnerability Management is to have a system that helps to reduce the time and money invested in dealing with vulnerabilities and reduces the risk of vulnerability exposure.

- The number of vulnerabilities is growing
- The timeframe between vulnerability disclosure and exploit has shortened
- The urgency to mitigate network vulnerabilities has become more crucial than ever

Vulnerability Lifecycle Management

Criston Solutions

Precision Vulnerability Management is a fully-integrated solution designed to manage the vulnerability lifecycle within organisations. With a centralized database, distributed scanners, role based administration, secure communications, and a comprehensive set of reports, Precision Vulnerability Management is the ideal solution to conduct automated security audits.

Criston Vulnerability Process

Distributed scanners

Patch Management
Vulnerability Management

- Multiple scanners can be easily deployed and scan agent or agent-less devices for vulnerabilities
- Easy to deploy centralized vulnerability management on complex multi-sites networks
- All data generated by the scanner is consolidated in a database that stays on-site
- All communications between the console and the scanner(s) are encrypted so that no data leaves your company

Non-Intrusive scans

- No intrusive tests are performed to detect vulnerabilities
- Scans will not simulate attacks that risk systems downtime
- The scanner will inform if advanced analysis is required to detect a vulnerability

Advanced Scheduling Capabilities

- Facility to schedule scans on an hourly, daily, weekly, or monthly basis to periodically check for vulnerabilities.
- Schedule your scans without the risk of unplanned network downtime

Multi-Platform

- Built within the Precision agent, scanners be installed and run on both Windows & Linux (RedHat & Debian) operating systems
- Freedom to allocate machines based on availability in a resource-constrained, heterogeneous environment

CVSS v2 Scoring System

Common Vulnerability Scoring System is available for every vulnerability – it establish a measure of how critical a vulnerability is in order to evaluate and prioritise remediation (Score from 1 to 10)

- Solves the problem of multiple, incompatible scoring systems
- Easily understandable
- Remediation efforts can be prioritized

CVE Standard

CVE reference is available for all vulnerabilities on top of the vendor vulnerability name. CVE standardises identifiers for all publicly known vulnerabilities and security exposures.

- Easier to share data across separate vulnerability databases and security tools
- Easier to search for information in other databases