// THREAT DETECTION AND DATA PRIVACY TERM

Patch Management

Patch management is the systematic process of identifying, acquiring, testing, and applying software updates, known as patches, to computers and other IT assets. These updates are crucial for fixing security vulnerabilities, resolving bugs, and improving system performance.

Patch Management — illustration from Wikipedia
Image via Wikipedia

TECHNICAL DEFINITION

Patch management is the cybersecurity lifecycle process for systematically identifying, acquiring, testing, and deploying software patches and updates across all IT assets, including operating systems, applications, and network devices, to mitigate security vulnerabilities, resolve software bugs, ensure compliance, and maintain optimal system functionality.

BACKGROUND

Computer security is a subdiscipline within the field of information security. It focuses on protecting computer software, systems, and networks from threats that can lead to unauthorized information disclosure, theft, or damage to hardware, software, or data, as well as to the disruption or misdirection of the services they provide.

READ MORE ON WIKIPEDIA

SYNONYMS & ALIASES

  • Software patching
  • Update management
  • Vulnerability patching
  • System updating
  • Security patching

USAGE NOTE

Effective patch management is a critical component of an organization's security posture and compliance strategy, aiming to reduce the attack surface and prevent exploits.

DEVELOPERS

Organizations developing technology related to Patch Management.

  • Ivanti

    Develops comprehensive patch management solutions for diverse operating systems and third-party applications, crucial for cybersecurity hygiene and defense.

  • Qualys

    Provides cloud-based IT security and compliance solutions, including an integrated patch management module that automates patching for vulnerabilities across global IT assets.

  • Tenable

    Offers vulnerability management platforms like Tenable.io and Nessus that identify security weaknesses and integrate with patch management processes for remediation.

  • Microsoft

    Develops and maintains patch management capabilities within Windows Update, Microsoft Endpoint Configuration Manager (MECM), and Microsoft Intune for its operating systems and enterprise applications.

  • ManageEngine (by Zoho Corp.)

    Offers Desktop Central, an endpoint management solution that includes automated patch management for Windows, macOS, Linux, and third-party applications.

  • Automox

    Provides a cloud-native endpoint hardening platform with automated patch management, configuration management, and vulnerability remediation across all endpoints.

  • HCL Technologies (BigFix)

    Develops HCL BigFix, a unified endpoint management platform that includes robust capabilities for patching and software distribution across millions of endpoints.

  • VMware

    Integrates patch management functionalities within its Workspace ONE and Carbon Black security solutions to ensure endpoints and virtual environments are up-to-date and secure.

RELATED TERMS IN DEFENSE & ARCHITECTURE