How long does it typically take your organization to patch a non-critical vulnerability?

< 1 Week29%

< 1 Month49%

< 3 Months17%

< 6 Months2%

1 Year+3%


219 PARTICIPANTS

2k views1 Upvote3 Comments

ISSO and Director of the IRU in Healthcare and Biotech, 10,001+ employees
It’s also dependent on what level below on critical we have a remediation framework for critical, highs, medium and lows.
Senior IT Manager in Government, 10,001+ employees
Impossible to give a single answer, because it depends upon the nature of the vulnerability and the specific business/infrastructure.  Some non-criticals are critical for us. Others are mitigated by means other than patching.
2
Director, Information Security in Education, 1,001 - 5,000 employees
Patches pushed by Microsoft or included in a Linux package manager are applied monthly. Third party solutions may take longer depending on various dependencies or business needs
2

Content you might like

Not at all15%

Experimenting67%

A fair amount16%

Extensively3%


224 PARTICIPANTS

879 views

Production45%

Backup64%

Replication33%

Non-production DBs (Dev, Training, QA, etc.)31%


208 PARTICIPANTS

1.2k views1 Upvote

Community User in Software, 11 - 50 employees

organized a virtual escape room via https://www.puzzlebreak.us/ - even though his team lost it was a fun subtitue for just a "virtual happy hour"
10
Read More Comments
9.9k views26 Upvotes63 Comments

Founder, Self-employed
Work travel is a privilege. Embracing your experience to meet new people, and see the beauty of nature and culture wherever you go.
Read More Comments
73k views71 Upvotes42 Comments