ISM-1755

A vulnerability disclosure policy is developed, implemented and maintained.

Topic
Vulnerability disclosure program
Applicable to
all

History

Dec 2022
A vulnerability disclosure policy is developed, implemented and maintained.
Existing controls relating to the development and implementation of cyber security documentation were amended to ensure documentation is maintained throughout its lifetime.
Mar 2022
A vulnerability disclosure policy is developed and implemented.
In support of the existing recommendation to implement a vulnerability disclosure program, two new recommendations have been introduced to cover the development and implementation of a vulnerability disclosure policy, and the development and implementation of vulnerability disclosure processes and procedures.