FortiSOAR Discussions
Anonymous
Not applicable

Advanced Vulnerability Management Suite (v2.1.0) Aligned with NIST and CISA Standards

We are excited to unveil the latest upgrades to our Vulnerability Management solution, meticulously crafted to address the distinctive requirements of organizations aligning with NIST and CISA cybersecurity standards.

Playbook Enhancements:

Ingest Exploited Vulnerabilities (KEV) CVEs: Stay vigilant against known exploited vulnerabilities with our enhanced playbook. By sourcing data directly from CISA, it generates daily records of common vulnerabilities and exposures (CVE), ensuring compliance with CISA's cybersecurity guidelines.

Get Latest Report of CVE: Access real-time CVE reports from NIST's National Vulnerability Database using our playbook. This feature empowers organizations to stay in sync with NIST standards, facilitating proactive vulnerability management.

Get EPSS Score: Thoroughly assess CVEs using our playbook, which provides the EPSS score to enhance and enrich your vulnerability assessment procedures.

Module Enhancements:

CVEs Module: Experience an enriched view within the CVEs module, now featuring critical details such as Severity, EPSS Score, EPSS Percentile, EPSS Date, Exploited Year, and Ransomware Campaign status.

Picklist Enhancements:

KEV Tag Source: Enhance organizational clarity by incorporating the new value 'CISA' into the KEV tag source.

Schedule Enhancements:

Ingest KEV CVEs Schedule: Set your preferred time and frequency for seamless KEV CVE ingestion, ensuring timely updates and adherence to NIST and CISA schedules.

Reference: https://fortisoar.contenthub.fortinet.com//detail.html?entity=vulnerabilityManagement&version=2.1.0&...

0 REPLIES 0