Intelligent CIO North America Issue 47 | Page 44

CIO OPINION
Those that are responsible for patching and fixing software vulnerabilities are rarely involved in the technology selection process .
Chris Jacob , Global Vice President , Threat Intelligence
Engineers , ThreatQuotient

How threat intelligence can improve vulnerability management outcomes

Chris Jacob , Global Vice President , Threat Intelligence Engineers , ThreatQuotient , says an ever-evolving threat landscape needs a structured and efficient risk-based process for managing vulnerabilities .

It might surprise you to know that more than 70 new vulnerabilities are published every day . And , despite their risk-reducing value in helping SOC teams address these , vulnerability management solutions have drawbacks . an uphill battle with fragmented tools and data silos . This creates major challenges around alert fatigue and overloaded SOC teams who , despite all the tools available to them , end up undertaking manual investigations to determine the best response .

Often , they only provide a snapshot of an organization ’ s vulnerabilities at a point in time . In fact , owing to their nature , vulnerabilities identified today may not exist tomorrow or they may appear and disappear intermittently – leaving security teams scrambling to understand not only what the risk is but how it affects them and where they should start first with any remediation .
Often vulnerability management solutions struggle to support SOC teams effectively , meaning they face
The problems with vulnerability management are complex and wide ranging , from technology to policy and governance . With the modern enterprise evolving to become more technologically distributed and cloudaligned , the challenge is becoming even more complex .
End-to-end visibility into an organization ’ s technology stack is becoming harder to achieve , with shadow-IT only exacerbating issues . Limited resources result in cybersecurity maintenance tasks that are never completed .
44 INTELLIGENTCIO NORTH AMERICA www . intelligentcio . com