Section 20.193 Patch Management Flashcards

Objectives 2.5 Explain the purpose of mitigation techniques used to secure the enterprise. Objectives 4.1 Given a scenario, you must be able to apply common security techniques to computing resources. Objectives 4.5 Given a scenario, you must be able to modify enterprise capabilities to enhance security.

1
Q

Patch Management

A

Planning, testing, implementing, and auditing of software patches

Important for compliance and up time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Patch Management: Four Step Process

Planning

A

Creating policies, procedures, and systems to track and verify patch compatibility

● A good patch management tool confirms patch deployment, installation, and functional verification on servers or clients

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Patch Management: Four Step Process

Testing

A

Do this to prevent the patch from causing additional problems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Patch Management: Four Step Process

Implementing

A

● Deploy to all devices that need it

● Can be done manually or automated

● Large organisations should use a central update server instead of Windows Update or other tool

● Mobile devices can be patched using an MDM

● Patch Rings: Implement patches one group (or ring) at a time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Patch Management: Four Step Process

Auditing

A

● Scan network to ensure the patch was installed correctly

● Determine if there are any unexpected problems as a result of the patch

○ Firmware versions should also be monitored and patched: Companies will have centralized resources to help keep firmware patched

How well did you know this?
1
Not at all
2
3
4
5
Perfectly