{"id":2514,"date":"2018-01-23T22:36:13","date_gmt":"2018-01-23T14:36:13","guid":{"rendered":"https:\/\/www.argentra.com\/?p=2514"},"modified":"2018-02-26T10:53:06","modified_gmt":"2018-02-26T02:53:06","slug":"patch-management-in-the-post-meltdown-era","status":"publish","type":"post","link":"https:\/\/www.argentra.com\/uat\/patch-management-in-the-post-meltdown-era\/","title":{"rendered":"Patch Management in the Post &#8220;Meltdown&#8221; Era"},"content":{"rendered":"<p align=\"justify\">If there\u2019s one guarantee in cybersecurity, it\u2019s that all software has bugs or compromises. As part of a cybersecurity strategy, patch management is an easy way to create a robust defense against possible attacks and secure end-to-end coverage of your devices. Patches help businesses like yours avoid or address very critical issues -- like Meltdown and Spectre vulnerability -- and can help you maintain operational efficiency where it counts.<\/p>\n<p align=\"justify\">However, if you\u2019re new to or behind on your patching, patch management can easily become tedious or confusing. This may prompt inconsistencies in how and when you patch, which can sink even more of your time and resources. The quality or age of your patches can also affect how effective they are: for example, some patches can break existing applications, cause disruptions, or expose you to more vulnerabilities. Even big name corporations like Microsoft can feel the effects, as evidenced <a href=\"http:\/\/www.pcgamer.com\/microsoft-points-finger-at-amd-for-spectre-and-meltdown-patches-bricking-some-pcs\/\" target='_blank'>earlier this month<\/a> when some of their PCs fell victim to poor software patch deployment.<\/p>\n<p align=\"justify\">Whether you\u2019re a tech giant or small business, patches are a crucial element of your network\u2019s healthy infrastructure. You can easily add patch management to your cybersecurity strategy by trying these three steps:<\/p>\n<p><b><font color=\"black\">Step #1: Invest in a Patch Management System<\/font><\/b><\/p>\n<p align=\"justify\">Whether you already have a patch management strategy in place or aren\u2019t sure where to start, a patch management solution like IBM\u2019s BigFix, MAAS 360, or Symantec\u2019s Altiris makes it even easier to execute a patching strategy that meets your business\u2019 security needs and covers your software and devices.<\/p>\n<p align=\"justify\">Keeping track of a security patch or similar critical updates across your company\u2019s infrastructure can easily become overwhelming without a dedicated patch management solution. Systems like IBM\u2019s BigFix or MAAS360 make patching effective with features that can schedule patches or test patch cycles before they\u2019re deployed. By contrast, basic automated updates are much harder to manage or test, and can often conflict with other updates or patches.<\/p>\n<p align=\"justify\">When shopping for a patch management system, consider products that can help you set patch priorities, manage assets, and control specific user access.<\/p>\n<p><b><font color=\"black\">Step #2: Develop a Patch Management Policy<\/font><\/b><\/p>\n<p align=\"justify\">Many businesses consider patch management to be an afterthought and, as a result, may not dedicate the time or resources their patch management process requires. By creating a patch management policy, businesses can clearly specify the details of their own patch management processes by designating and defining responsibilities, time requirements, and strategy.<\/p>\n<p align=\"justify\">One way to start developing your own patch management is policy is to analyze and take note of your specific security needs and current IT resources. This can help you build a schedule, prioritize your patches, and determine your best patch management practices.<\/p>\n<p align=\"justify\">Remember: the most successful patch management strategy is a relevant one! As your security needs change, so should your patch management policy. Make a commitment to review your patch management strategy every six months to a year.<\/p>\n<p><b><font color=\"black\">Step #3: Improve Patch Education<\/font><\/b><\/p>\n<p align=\"justify\">Once you have your patch management system and policy, it\u2019s time to update your users! Your IT team should be informed of all changes to patch management strategy to ensure that the best policies are being enforced.<\/p>\n<p align=\"justify\">Education can include:<\/p>\n<p>\u25cf\ttraining your team to use your patch management solution<br \/>\n\u25cf\tmaking sure your team understands the importance of patching<br \/>\n\u25cf\texplaining your patching schedule and why certain patches may be prioritized over others<br \/>\n\u25cf\texplaining the consequences of not patching, and why unpatched software is a major vulnerability<br \/>\n\u25cf\tteaching how systems are patched<br \/>\n\u25cf\thow to recognize and avoid authorizing fake or malicious patches <\/p>\n<p align=\"justify\">A team that is more informed about the benefits of patching (or the consequences of not patching often or properly) can make better decisions around patch management policy and can alert you or your IT department head of any incoming issues.<\/p>\n<p align=\"justify\">Patching doesn\u2019t have to be a weak link in your security defense. With a few steps, you can build a simple patch management strategy that benefits your business and supports your overall cybersecurity strategy.<\/p>\n<p><b><font color=\"black\">Sources:<\/font><\/b><br \/>\n<a href=\"https:\/\/www-01.ibm.com\/marketing\/iwm\/dre\/signup?source=mrs-form-1941&S_\u2026\" target='_blank'>https:\/\/www-01.ibm.com\/marketing\/iwm\/dre\/signup?source=mrs-form-1941&S_\u2026<\/a><br \/>\n<a href=\"https:\/\/www.championsg.com\/10-simple-steps-help-improve-patch-management\" target='_blank'>https:\/\/www.championsg.com\/10-simple-steps-help-improve-patch-management<\/a><br \/>\n<a href=\"https:\/\/www.csoonline.com\/article\/3025807\/data-protection\/why-patching-is-still-a-problem-and-how-to-fix-it.html\" target='_blank'>https:\/\/www.csoonline.com\/article\/3025807\/data-protection\/why-patching-is-still-a-problem-and-how-to-fix-it.html<\/a><br \/>\n<a href=\"https:\/\/www.solarwindsmsp.com\/blog\/create-good-patch-management-strategy#\" target='_blank'>https:\/\/www.solarwindsmsp.com\/blog\/create-good-patch-management-strategy#<\/a><br \/>\n<a href=\"https:\/\/www.solarwindsmsp.com\/blog\/five-steps-easier-patch-management-process\" target='_blank'>https:\/\/www.solarwindsmsp.com\/blog\/five-steps-easier-patch-management-process<\/a><br \/>\n<a href=\"https:\/\/www.theverge.com\/2018\/1\/3\/16846784\/microsoft-processor-bug-windows-10-fix\" target='_blank'>https:\/\/www.theverge.com\/2018\/1\/3\/16846784\/microsoft-processor-bug-windows-10-fix<\/a><br \/>\n<a href=\"http:\/\/www.symantec.com\/content\/en\/us\/enterprise\/fact_sheets\/b-altiris_patch_management_solution_21215280.en-us.pdf\" target='_blank'>http:\/\/www.symantec.com\/content\/en\/us\/enterprise\/fact_sheets\/b-altiris_patch_management_solution_21215280.en-us.pdf<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"If there\u2019s one guarantee in cybersecurity, it\u2019s that all software has bugs or compromises. As part of a cybersecurity strategy, patch management is an easy way to create a robust defense against possible attacks and secure end-to-end coverage of your devices. Patches help businesses like yours avoid or address very critical issues -- like Meltdown and Spectre vulnerability -- and&nbsp;<a href=\"https:\/\/www.argentra.com\/uat\/patch-management-in-the-post-meltdown-era\/\" class=\"read-more\">Continue Reading<\/a>","protected":false},"author":4,"featured_media":2515,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[34],"tags":[],"_links":{"self":[{"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/posts\/2514"}],"collection":[{"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/comments?post=2514"}],"version-history":[{"count":5,"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/posts\/2514\/revisions"}],"predecessor-version":[{"id":2518,"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/posts\/2514\/revisions\/2518"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/media\/2515"}],"wp:attachment":[{"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/media?parent=2514"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/categories?post=2514"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.argentra.com\/uat\/wp-json\/wp\/v2\/tags?post=2514"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}