Vulnerability Management
Enterprise Network 101 Workshop
What is a Vulnerability?
• A vulnerability is a weakness in an information system
that can be exploited by an attacker
• When we talk about Vulnerability Management, the primary vulnerability being addressed is an exploitable software flaw – either because a system wasn’t patched or it was a ‘zero-day’ (a vulnerability that was disclosed before a patch was made available)
What is Vulnerability Management?
Why It Matters in Enterprise
Key Components of Vulnerability Management
Vulnerability Management Lifecycle
Common Tools Used
Nessus, OpenVAS, Qualys
WSUS, SCCM, Ansible
Splunk, IBM QRadar, ELK Stack
Risk-Based Prioritization
Challenges in Vulnerability Management
Best Practices
Compliance & Reporting
Case Study / Real-World Example
Equifax breach (2017)
Questions?