Access Millions of academic & study documents

Screenshot 20211204 132600 drive

Content type
User Generated
School
University of Nairobi
Showing Page:
1/1

Sign up to view the full document!

lock_open Sign Up
Unformatted Attachment Preview
Another flaw identified in the 2015 audit that had not been fully addressed by 2017 was that Equifax's approach to patching was reactive rather than proactive. This meant that rather than installing every software patch released for programs it used, Equifax only installed those software patches that were shown to be necessary to address specific vulnerabilities. Per the 2015 audit, this created a lag in the installation of critical patches - they were only installed after it had already become clear that failing to install them jeopardized the security of company systems, leaving those systems exposed in the interim. Moreover, the audit found that Equifax had no system in place to verify that identified vulnerabilities had, in fact, been successfully patched. Though the company ran regular scans to identify vulnerabilities, those scans were imperfect, and they were generally not subjected to scrutiny. Accordingly, if a vulnerability stopped turning up in scan results, Equifax assumed it had been adequately addressed, it had not In addition Fauifav'e natch management process failed to even though in some cases ...
Purchase document to see full attachment
User generated content is uploaded by users for the purposes of learning and should be used following Studypool's honor code & terms of service.
Studypool
4.7
Indeed
4.5
Sitejabber
4.4