CERTCC / SSVC

Stakeholder-Specific Vulnerability Categorization
https://certcc.github.io/SSVC/
Other
116 stars 32 forks source link

Incorporate NIST 800-40 #546

Open ahouseholder opened 3 months ago

ahouseholder commented 3 months ago

Describe the solution you'd like

NIST SP 800-40 Rev. 4 Guide to Enterprise Patch Management Planning: Preventive Maintenance for Technology seems highly relevant to the Deployer stakeholder. We should at least review it for opportunities to align SSVC with it.