Skip to Content
Effective Vulnerability Management
book

Effective Vulnerability Management

by Chris Hughes, Nikki Robinson
April 2024
Intermediate to advanced
288 pages
7h 33m
English
Wiley
Content preview from Effective Vulnerability Management

10The Human Element in Vulnerability Management

It should be evident by this point in the book that vulnerability   management is quite complex. Several tools, techniques, and processes can be used to reduce complexity and automate where possible. However, the same difficulties still exist, and organizations with a massive backlog of vulnerabilities must consider alternatives. In the cybersecurity space, the human element has come to the forefront as the way forward to enhance cyber programs and reduce risks in enterprise.

This chapter discusses the psychological components that should be incorporated into a modern vulnerability management program (VMP). This program includes the discipline of human factors, security engineering methods, as well as cognition and perception. Each piece of the human experience impacts how vulnerabilities are identified, prioritized, and ultimately resolved.

Many legacy vulnerability management documents and guidance, however, don't speak to the human aspect of vulnerability management programs. Each person, whether they are a system owner, an IT professional, systems engineer, security analyst, or technical manager, has a unique experience to bring to the table. Incorporating the human element in vulnerability management includes the way that individuals process information, make decisions, and ultimately are responsible for aspects of the VMP.

This chapter covers how organizations can build better VMPs by understanding how their users as well ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

Practical Vulnerability Management

Practical Vulnerability Management

Andrew Magnusson

Publisher Resources

ISBN: 9781394221202Purchase Link