Vulnerability Triage Overriding Risk Rating
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-07-2023 03:40 AM
Hi,
I am looking for advice and guidance on the risk scoring best practices for vulnerability response when using a vulnerability triage process.
I am looking at automatically classifying / risk scoring the vulnerabilities based on metrics such as CVSS, Environments etc in an automated way but having the ability to override scoring if one of our vulnerability analysts has triaged the vulnerability and defined the risk to be lower than the automated rating or higher.
Thanks
0 REPLIES 0