Information on discovered cybersecurity vulnerabilities is shared with organization-defined stakeholders
As cybersecurity vulnerabilities are discovered through vulnerability information sources and assessments, information about vulnerabilities that would be important to relevant stakeholders should be shared with them.
Related Practices · Information Sharing: This practice is part of a group of cross-domain practices that enable information sharing with organizational stakeholders. These include: THREAT-1i, THREAT-2h, THREAT-2k, RISK-1c1d, SITUATION-3a, SITUATION-3c, SITUATION-3d, SITUATION-3e, RESPONSE-2g, RESPONSE-3c, RESPONSE-3f. · Progression: This practice is part of a practice progression. Practice progressions are groups of related practices that represent increasingly complete or more advanced implementations of an activity. The practices in this progression include: THREAT-1b, THREAT-1i, THREAT-1m.