Why Threat Intel is Essential for Vulnerability Management with Patrick Garrity

GRC Academy by Jacob Hill

Episode notes

In this episode, Jacob speaks with cybersecurity researcher Patrick Garrity!

Patrick Garrity is a seasoned security researcher at VulnCheck where he focuses on vulnerabilities, vulnerability exploitation and threat actors.

In this episode they discuss the importance of integrating threat intelligence into vulnerability management using the Exploit Prediction Scoring System (EPSS), CISA Known Exploited Vulnerabilities Catalog, and the changes in CVSS 4.0!

Here are some highlights from the episode:

  • How Exploit Prediction Scoring System (EPSS) can predict exploitation
  • How vulnerability scanners integrate EPSS
  • CISA's Known Exploited Vulnerabilities (KEV) Catalog
  • The national security implications of vulnerability management

Follow Patrick on LinkedIn:

 ...  Read more
Keywords
Vulnerability ManagementCVSSEPSSCISA KEV