The GRC Podcast cover image

Demystifying Vulnerability Management with Ariel Shin

The GRC Podcast

00:00

Exploring the Relationship between Vulnerability and Risk

This chapter explores the relationship between vulnerability and risk, emphasizing the importance of recognizing that a vulnerability does not always equate to an actual risk. It introduces the EPSS as a potential tool for prioritizing vulnerabilities, but notes that the current focus is on using the CWSS. The chapter also discusses the balance between improving the developer experience and prioritizing alerts in the vulnerability management program.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app