Publication of Patch Adoption Rates, v1.0

Specifies requirements in accordance with the DHS CISA Secure-by-Design Pledge, published by the U.S. Dept of Homeland Security (DHS) Cybersecurity and Infrastructure Agency (CISA). Requires an organization to publish patch adoption rates by product version over time, across all of its product and service offerings.

Assessment Step

1
Publication of Patch Adoption Rates (PublicationofPatchAdoptionRates)
Across all of its product and service offerings, does the organization publish patch adoption rates by product version over time?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.

Conformance Criteria (1)

Publication of Patch Adoption Rates
Across all of its product and service offerings, the organization must publish patch adoption rates by product version over time.
Citation
SBDP
(doc)