Rewriting the Playbook - Smarter Vulnerability Management with EPSSv3, CVSSv4, SSVC and VEX Frameworks
-
29
-
- Write review
The Fastest Way to Become a Backend Developer Online
Learn EDR Internals: Research & Development From The Masters
Overview
AI, Data Science & Cloud Certificates from Google, IBM & Meta — 40% Off
One plan covers every Professional Certificate on Coursera. 40% off Coursera Plus Annual.
Unlock All Certificates
Explore a comprehensive conference talk that critiques traditional CVSS-based vulnerability prioritization models and introduces modern frameworks for more effective security management. Learn how EPSSv3 (Exploit Prediction Scoring System), CVSSv4 (Common Vulnerability Scoring System version 4), SSVC (Stakeholder-Specific Vulnerability Categorization), and VEX (Vulnerability Exploitability eXchange) frameworks can be combined to significantly reduce security workload while improving vulnerability triage processes. Discover practical guidance for implementing these frameworks in regulated sectors where organizations must balance risk assessment, compliance requirements, and remediation efforts. Gain insights into how this integrated approach transforms vulnerability management from reactive patching to strategic risk-based decision making, enabling security teams to focus resources on the most critical threats while maintaining regulatory compliance.
Syllabus
- Date/Time: Tuesday, 11:00–11:20
Taught by
BSidesLV