Overview

Security Requirements for 03.11.03 Vulnerability Remediation

Vulnerabilities discovered, for example, via the scanning conducted in response to 03.11.02, are remediated with consideration of the related assessment of risk. The consideration of risk influences the prioritization of remediation efforts and the level of effort to be expended in the remediation for specific vulnerabilities.

Evidence

  1. 03.11.03.a

    Vulnerabilities are identified

  1. 03.11.03.b

    Vulnerabilities are remediated in accordance with risk assessments