《【行业报告】Gartner-解码漏洞管理-独立工具与端点保护技术(英)-2023_市场营销策划_20.docx》由会员分享,可在线阅读,更多相关《【行业报告】Gartner-解码漏洞管理-独立工具与端点保护技术(英)-2023_市场营销策划_20.docx(15页珍藏版)》请在第一文库网上搜索。
1、DecodingVu1nerabi1ityManagement:AStand-A1oneToo1vs.aTechniqueinEndpointProtectionPub1ished24March2023-IDG00782165-13minreadByAna1yst(s):JonAmatoInitiatives:SecurityOperationsforTechnica1Professiona1s;MeetDai1yCybersecurityNeedsVu1nerabi1itymanagementcapabi1itiesareprovidedbothbystanda1oneVMp1atforms
2、andasafeaturebysomeprominentEPPp1atforms.Securityandriskmanagementtechnica1professiona1scanusethisresearchtose1ectandusetherightvu1nerabi1itymanagementtoo1tosatisfytheirownneeds.Additiona1PerspectivesInvestImp1ications:DecodingVu1nerabi1ityManagement:AStand-A1oneToo1vs.aTechniqueinEndpointProtection
3、(29March2023)OverviewKeyFindingsAnincreasingnumberofendpointprotectionp1atform(EPP)too1sarematuringtoreportonthevu1nerabi1itiesoftheassets.Thevu1nerabi1itiesreportedarethenprioritizedandscoredusingrisk-basedprioritizationtechniques.Stand-a1onevu1nerabi1itymanagement(VM)too1sandEPPtoo1swithaVMtechniq
4、ueusedifferentscanningmethodo1ogiestodiscovervu1nerabi1ities-standa1onetoo1sre1yonperiodicscans,whi1eEPPt1susethecontinuousscanningorscan1essmethodo1ogy.Endpointdetectionandresponse(EDR)too1swithVMcapabi1itiescanpotentia11yusevu1nerabi1itydatatoprioritizea1ertsandprovideadditiona1riskcontexttodetect
5、ionandresponse.Thesepossibi1itiesdrivetheinc1usionofvu1nerabi1itymanagementcapabi1ities.Page1of12GartneG00782165Rf由隹附喻寸油而益MSecurityandriskmanaoernenttechnica1txofessioa1sfocusedoneva1uatingandsetectiQvu1nerabi1ityEanaQementtoo1sshou1d:ComoarecoreCaDabiIitieSsuchasassetcoverage,vu1nerabi1itySianature
6、CoVerasandsuppoedintegrationfeatures-thatis.workf1owtoo1s,remediationtoo1sorthird-partyPdon1iZa1Iontechno1ogy-WbSse1ectingavu1nerabi1itymanagementDroductinordertosatisfytheirVMneedsImo1ementvu1nerabi1itymaaementinaSinQIetoo1wheneverpossib1e,toreduceComo1exitvandooerationaoverhead.Usetheinshtsprovide
7、dbvtheVU1naabI1itYaraeettooShimarcontextua1izeandprioritizeEPREDRorXDR(extendeddetectionandresponse)a1vtftAna1ysis,:门%mrk:%FJrH.;后.叩W十I、代曲Jj七:莫,晚徊逛二汇R飞.shcHowever,aooroachestoVMhaveevo1vedoverI1meOVerthemorethan20-vear1ifecdeofthistechnue.wehaveseenashiftfromSinWIVscanninandassessingthestateofVuInef
8、abiIities.tomanaiandprictzntheirremediation-OnekeyChanOethathasbeenobservedinrecentyearsstheinc1usionofthevu1nerabi1itymanagementfunctiona1ityinenterprisetoo1setswhereithasnottraditiona11yhAApresentmostDrOminentiyinendpointprotectionp1atforms(EPPs).Thereare.however,somesignificantdifferencesbetweent
9、hewayvu1nerabi1itymanagementisdoneinthetraditiona1vu1nerabi1itymanagementtoo1setandthewayItIsimoementedinendD0intDrotectiontook($ecTab1e1).RBOt2M12IMfnrI71W1SMb1:High-1eve1ComparisonofVuInefabiRtyMaMMmefttTOokFeaturesStaMAIOneVMToo1FPPTqoI1h7MTpchniqiifScopeoICoveraQeWidevarietyfassets,ucaendooints.
10、rHwcrdevices.In1f1rna1rrfThinos(IcT)devices*fWOrtkIS/simniawnvimr*nes.aDp1catiorSCannmPrimari1vIMndcyys.MacandUnuxwthHrVIimhf1ri5UDIX)tKnrnHiPfa)p1typesDep1oymentArchitectureOptionsareavai1ab1eforon-Dnises.rMd-hnstAdandhybridtemntrinqMostEPPInn1R1MM1VuInerabiIitVGanaafnEon1ySUDDOrtcioud-basedip(nn1a
11、tinn:ScanmnqTediniodeAaenvbasedaaJetessscanningAaem-based.Wmhwv11mAf1KmOar跖forntwcrscannmVu1neabi1itvSianature口maSionaturecove(Qeimdvu1nerabi1itySkInatUreRkaVu1naabi1itvManaQenAntTnn1EcosystemGenetabw*SU1DDObvthindarttoo1s(ofrr1at1nnRCHrf1CWandautomated淞曲b1astedvu1nerabi1ityprioritizationU1nImIhteEb
12、nswnhtMif窗的IPmrirIb1hf!tnn1cSource:Gartner(Mac2023)Detai1pdAna1ysisThissectiondeh1qhtftdinTahh1.SC年您统傣逾旗Inthiscontext-ScooeofCovaaaewreferstothebreadthoftheassetsthatarecoveredinthevu1nerabi1ityassessmentcapabi1ityofthetoo1.RBot3N12tnef.nrs7821557(11I1J-,.,I.-.I,/-.I.-I!-f.t?IHStand-A1oneVMTooI%ardk
13、wVMrnkpthIOnQhe1dstandardforthedetectionofvu1nerabi1itiesin交双吏臣*遒It即叫I?Jr1I,h3M.j,,j;iic,ITYCfo1X5nqsystemsn.:同名粒%:1潍泗以赭辅汨.J*.g艇:士Inrecentyears,thesetoo1shaveexpandedcoveaoefurtherintomobi1ep1atforms.InTdevices,c1oudandtainwork1oads,networkinfrastructuresuchasswitchesandrouters,andevenintonetwork-co
14、nnectedstorageapp1iances.Manyoftheset1ssupportW的app瞰%保良口棉称江诬工层!ndudecodescanin.suchasdynamic(Xsta1kBDD1icationsecuritytestin(DAST/sast).Thisenab1esthemtoDfovkiethenxM:OmPIetecoveragepicturewhenassessingtheoroanizationsvu1nerabi1ityposture.FPPToo1WithVMTechniqjeTypica1MFPPtkas1imitedtothescooeofsu0)o
15、rtoftheEPPtoo1sthemse1ves-ThfiWindowsODeratinaSVs1emCoVefaQeisSwefSa1withsomeEPP-basedvu1nerabi1ityscannersa1soCoVennQMacandIMintMh航IfkQ蜓曰哪貂:/2蕊海;捻刎andcontainersupportisuncommon,asisveraeforapp1icationvu1nerabi1itiesancdd;比殳Tk卡底期上Kme隅;S用呼DeD1oymentsetupvanesforbothtoo1s.KAnpraIIy,mostvendorsaremovingtowardc1od-花y也;告,Stand-A1oneVUToo1AsSaa