2012
DOI: 10.1007/978-3-642-30436-1_35
|View full text |Cite
|
Sign up to set email alerts
|

Optimizing Network Patching Policy Decisions

Abstract: Abstract. Patch management of networks is essential to mitigate the risks from the exploitation of vulnerabilities through malware and other attacks, but by setting too rigorous a patching policy for network devices the IT security team can also create burdens for IT operations or disruptions to the business. Different patch deployment timelines could be adopted with the aim of reducing this operational cost, but care must be taken not to substantially increase the risk of emergency disruption from potential e… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
4
1

Citation Types

0
10
0

Year Published

2015
2015
2024
2024

Publication Types

Select...
4
1

Relationship

0
5

Authors

Journals

citations
Cited by 6 publications
(10 citation statements)
references
References 3 publications
(4 reference statements)
0
10
0
Order By: Relevance
“…We assume that vulnerabilities are identified according to a Poisson process with rate . This has been a standard assumption in prior literature (e.g., Beres and Griffin 2012, Cavusoglu et al 2008, Dalal and Mallows 1988, Ioannidis et al 2012, Rescorla 2005.…”
Section: Vulnerability and Patch Parametersmentioning
confidence: 95%
See 4 more Smart Citations
“…We assume that vulnerabilities are identified according to a Poisson process with rate . This has been a standard assumption in prior literature (e.g., Beres and Griffin 2012, Cavusoglu et al 2008, Dalal and Mallows 1988, Ioannidis et al 2012, Rescorla 2005.…”
Section: Vulnerability and Patch Parametersmentioning
confidence: 95%
“…A patch deployment usually involves a significant setup cost, such as the costs associated with system configuration checking, patch searching and documentation, and patch testing and installation (August et al 2014, August and Tunca 2011, Brandon 2005. Furthermore, unplanned patching activities are bound to cause some business disruption, interrupting the normal system workflow and inflicting downtimes on critical business functions, among others (Beres andGriffin 2012, Mastroleon et al 2006). In fact, this is the primary reason why organizations often postpone applying available patches-it is indeed tempting to take advantage of the economy of scale by patching in batches (Beres and Griffin 2012).…”
Section: Introductionmentioning
confidence: 97%
See 3 more Smart Citations