workflow
Vulnerability & Patch Management Cycle
Recurring vulnerability & patch management lifecycle covering NIST SP 800-53 RA-5 (vulnerability scanning) and SI-2 (flaw remediation) and NIST CSF 2.0 ID.RA and PR.PS. Each cycle runs as one recurring instance anchored to the EXISTING vulnerability & patch management Control item (a Control with domains = vulnerability_patch_management — e.g. the UC-VULN-01 scanning control, control_owner = cycle owner); the instance enriches that Control's evidence trail rather than creating a new subject, and the instance itself is the cycle record. In scope: authenticated scanning of the confirmed asset inventory, severity-based triage against the SLA matrix, standard and emergency remediation, rescan verification, time-bound risk acceptance of residuals, metrics reporting, and cycle closure. Named deliverables: the deduplicated, enriched finding register (one vulnerability_scan Issue per finding, linked to the Control), rescan closure evidence, time-bound compensating-control-backed risk-acceptance exceptions (policy_exception Issues), and the cycle KPI & trend report. Consumed as inputs, not produced: the authoritative asset inventory / CMDB and the enterprise change-approval policy (a Policy item). The workflow is self-triggered by its own scheduled scan window (or an actively-exploited advisory) with no upstream or downstream workflow — its carry-forward package feeds the next iteration of this same cycle at intake.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- controls
- department
- it
- lineOfDefense
- operate
Details
- teams
- it
- domains
- controls
- standards
- nist-800-53
- nist-csf-2
- sourceTemplateId
- workflow-library:controls-vulnerability-patch-management
- releaseId
- sha256:9774074d4b29f254001fafd22efa7e724864084b0d28613d5fb5bbb8791a8dc4
- canonicalUrl
- https://workflow-library.com/all/?w=controls-vulnerability-patch-management
- capabilities
- mappingStatus
- mapped
- lineOfDefense
- operate
- controls
- UC-VULN-01
- UC-VULN-03
- UC-ASSET-10
- UC-ASSET-09
- roleIntegrity
- activityCount
- 0
- ermPhases
- lineRoles
- serviceModes
- warnings
Source
No record-specific source URL is provided.
Download workflow template · Release: sha256:9774074d4b29f254001fafd22efa7e724864084b0d28613d5fb5bbb8791a8dc4
Connections
- Vulnerability & Patch Management Cycle operates UC-ASSET-10 — Assess and track changes and exceptions for risk impact
- Vulnerability & Patch Management Cycle operates UC-VULN-01 — Scan for vulnerabilities and track advisories on a defined cadence
- Vulnerability & Patch Management Cycle operates UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence
- Vulnerability & Patch Management Cycle operates UC-VULN-03 — Remediate identified flaws within defined timeframes