The Secret to Vulnerability Management

2024 ж. 20 Мам.
16 687 Рет қаралды

Vulnerability management can at times seem like a problem with no solution. While there is no simple solution to vulnerability management and our work will never be done, there are solutions, and we can successfully reduce the vulnerabilities in our environment to a much more manageable level. Every week will bring new vulnerabilities, but with the right processes and procedures, out technology and development organizations will know how to respond. The biggest secret to vulnerability management is recognizing that vulnerability management isn’t the problem. Join us to discover the secret to vulnerability management.
About the Speaker
David Hazar is a security consultant based in Salt Lake City, Utah focused on vulnerability management, application security, cloud security, and DevOps. David has 20+ years of broad, deep technical experience gained from a wide variety of IT functions held throughout his career, including: Developer, Server Admin, Network Admin, Domain Admin, Telephony Admin, Database Admin/Developer, Security Engineer, Risk Manager, and AppSec Engineer. David is a co-author and instructor for MGT516: Managing Security Vulnerabilities: Enterprise and Cloud, an instructor for and contributor to SEC540: Cloud Security and DevOps Automation, and has also developed and led technical security training initiatives at many of the companies for which he has worked. Read more about David at www.sans.org/profiles/david-h...
MGT516: Building and Leading Vulnerability Management Programs
www.sans.org/cyber-security-c...
Learn more about SANS Cybersecurity Leadership Curriculum at www.sans.org/cybersercurity-leadership
Connect with us on social:
LinkedIn - SANS Security Leadership
Twitter - @secleadership
KZhead - SANS Institute - Cybersecurity Leadership playlist
Discord - www.sansurl.com/leadership-discord
SANS is the most trusted and by far the largest source for information security training and security certification in the world. It also develops, maintains, and makes available at no cost, the largest collection of research documents about various aspects of information security, and it operates the Internet's early warning system - the Internet Storm Center.

Пікірлер
  • Great presentation! Thank you

    @galsengemini1004@galsengemini10049 ай бұрын
  • Great structure to the topic. Will need to digest the content thoroughly but debunking some myths of the domain is amazingly effective at reaching the "secret".

    @cloudnsec@cloudnsec Жыл бұрын
  • Thank you

    @bisolabello3641@bisolabello36417 ай бұрын
  • Great lecture.

    @umoorjani@umoorjani Жыл бұрын
    • I dont think so. Way too much talking without good examples.

      @sberentz@sberentz10 ай бұрын
    • @@sberentz iykyk

      @maurice2014@maurice20146 ай бұрын
    • @@sberentz TikTok generation saying a LECTURE has too much talking, lmao

      @1joaootavio@1joaootavio2 ай бұрын
    • @@1joaootavio tiktok my ass I’m just saying that it has way too less practical examples.

      @sberentz@sberentz2 ай бұрын
  • First

    @gaeldilamh2572@gaeldilamh2572 Жыл бұрын
KZhead