PCI SSF
Vulnerability Management

PCI SSF SSS-6.1: Threat and Vulnerability Management

The software vendor must establish a threat and vulnerability management process that identifies, assesses, prioritizes, and remediates threats and vulnerabilities across the software lifecycle.

Maintained by Gerard BlokdykControl text last updated

Other controls in Vulnerability Management

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.