Sattrix Information Security Incorporation
Dec 07, 2021
No image
Completed
Electronic Component Manufacturer Managed Vulnerabilities and Patching
$50,000+
4-6 months
India
10+
Service categories
Service Lines
IT Services
Domain focus
Banking & Financial Services
Other
Challenge
- Lack of operationalization on vulnerability
management process.
- Because of the unavailability of the skilled
resources most of the time audit, scanning &
reactive patching action were getting delay.
- Unavailability of proactive monitoring of
complete Infrastructure for vulnerabilities.
- Increase of compliance issues because of the
unpatched systems
- Lack of timely patching of internal and critical
external applications which may develop
breach in the security posture.
- Lack of automation and process driven
approach to carry out vulnerability & patching
as part of IT operations
- Lack of operationalization on vulnerability
management process.
- Because of the unavailability of the skilled
resources most of the time audit, scanning &
reactive patching action were getting delay.
- Unavailability of proactive monitoring of
complete Infrastructure for vulnerabilities.
- Increase of compliance issues because of the
unpatched systems
- Lack of timely patching of internal and critical
external applications which may develop
breach in the security posture.
- Lack of automation and process driven
approach to carry out vulnerability & patching
as part of IT operations
Solution
- Ongoing quarterly Vulnerability Assessment
and Penetration Testing (VAPT) activity.
- Deployment of dedicated team for the patching
activity for the identified issues as a result of
VAPT activity.
- SLA driven patching activity rolled out and
operationalized.
- Tagging and identification of the vulnerability
based on the severity to plan & patch the
systems.
- Standards based process driven changes and
upgrades are planed.
- Management & Operational reports to
understand the overall status of the patching of
IT infrastructure
- Ongoing quarterly Vulnerability Assessment
and Penetration Testing (VAPT) activity.
- Deployment of dedicated team for the patching
activity for the identified issues as a result of
VAPT activity.
- SLA driven patching activity rolled out and
operationalized.
- Tagging and identification of the vulnerability
based on the severity to plan & patch the
systems.
- Standards based process driven changes and
upgrades are planed.
- Management & Operational reports to
understand the overall status of the patching of
IT infrastructure
Results
- Reduced overall vulnerabilities score by 65%.
- Reduced critical vulnerabilities by 38%.
- Enhanced customer experience and end user
satisfaction.
- Improving the security posture of the
organization by reducing the risk.
- Change management and approval driven
approach helping in overall audit and
compliance.
- Change management and approval driven
approach helping in overall audit and
compliance
- Reduced overall vulnerabilities score by 65%.
- Reduced critical vulnerabilities by 38%.
- Enhanced customer experience and end user
satisfaction.
- Improving the security posture of the
organization by reducing the risk.
- Change management and approval driven
approach helping in overall audit and
compliance.
- Change management and approval driven
approach helping in overall audit and
compliance
No image
No image