Best Practices for Complex Patch Management

26
How to Deal with Today's Multi-Platform, Multi-Vendor Patch Management Mess David Strom, [email protected] Redmond Magazine Webinar March 8, 2012

Transcript of Best Practices for Complex Patch Management

Page 1: Best Practices for Complex Patch Management

How to Deal with Today's Multi-Platform, Multi-Vendor

Patch Management Mess

David Strom, [email protected] Magazine Webinar

March 8, 2012

Page 2: Best Practices for Complex Patch Management

Agenda

• The problem• Patching proof-points• How to be successful at patching• 4 issues to address• Sidebar: virtualization• What Lumension brings to the party

Page 3: Best Practices for Complex Patch Management

Speaking today

• David Strom, David Strom Inc. • Russ Ernst, Group Product Manager

Page 4: Best Practices for Complex Patch Management

Common culprits

Page 5: Best Practices for Complex Patch Management
Page 6: Best Practices for Complex Patch Management
Page 7: Best Practices for Complex Patch Management
Page 8: Best Practices for Complex Patch Management

Patch Management Usage

Page 9: Best Practices for Complex Patch Management
Page 10: Best Practices for Complex Patch Management

count pctOS 100 11.5%

Apps 84 9.7%Third Party

(22 programs) Apps 685 78.9% 11total 869 100% 12

Vulnerabilities Patching Tools

1Microsoft(28 programs)

Type

Patching the Typical Endpoint(comprising the top-50 software portfolio)

Page 11: Best Practices for Complex Patch Management
Page 12: Best Practices for Complex Patch Management
Page 13: Best Practices for Complex Patch Management
Page 14: Best Practices for Complex Patch Management
Page 15: Best Practices for Complex Patch Management
Page 16: Best Practices for Complex Patch Management

Gartner’s 4 Segments of Tools

• The PC configuration life cycle management• Server provisioning and configuration

management• Virtual server patching tools• General patching-focused vendor.

Page 17: Best Practices for Complex Patch Management

4 Issues to Address

• Do you know what needs patching?• How many solutions do you need?• Should you test first?• How do you measure performance?

Page 18: Best Practices for Complex Patch Management
Page 19: Best Practices for Complex Patch Management

How many solutions do you need?

Page 20: Best Practices for Complex Patch Management
Page 21: Best Practices for Complex Patch Management
Page 22: Best Practices for Complex Patch Management

How do you measure performance?

Page 23: Best Practices for Complex Patch Management

Special issues with virtual machine installations and patching

Page 24: Best Practices for Complex Patch Management
Page 25: Best Practices for Complex Patch Management

Time to stop putting temporary measures in place!

Your questions?

Page 26: Best Practices for Complex Patch Management

More Information

• Discover all OS and application vulnerabilities on your network» http://www.lumension.com/special-offer/premium-security-tools.aspx

• Lumension® Endpoint Management and Security Suite» Demo: http://www.lumension.com/endpoint-management-security-suite/demo.aspx » Evaluation: http://www.lumension.com/endpoint-management-security-suite/free-trial.aspx

26

Global Headquarters8660 East Hartford DriveSuite 300Scottsdale, AZ 85255

[email protected] http://blog.lumension.com

• Access the Presentation Slides, On-Demand Webcast and Whitepaper, following the webcast at:» http://www.lumension.com/more-info/patch/3rd-party-vulnerabilities/