firmware component of vulnerability management

crib bar 681 Reputation points
2024-05-09T12:55:10.1433333+00:00

If you have responsibilities in a corporate environment for vulnerability management/security patching of windows based desktops and laptops, how do firmware updates that address critical vulnerabilities compare to software related updates? in terms of frequency of release/admin time to keep current/approach to central deployment of updates? For what it is worth, these are generally HP hardware (+ a few Dell devices).

And does the firmware aspect of effective vulnerability management require additional specialised tooling in order to centrally monitor/scan your desktops/servers for vulnerable firmware versions in operation on your devices, and specialised tooling to deploy new firmware versions 'as and when' required? Or is the approach to large scale deployment of updated firmware versions totally different to software patches?

Any insights into the process would be most helpful. For example, what do you use to even get a complete report from across the estate of devices running dangerous firmware versions to see how vulnerable you are? Or can you get a report on a machine by machine basis from within windows?

Windows 10
Windows 10
A Microsoft operating system that runs on personal computers and tablets.
10,875 questions
Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,352 questions
Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,788 questions
0 comments No comments
{count} votes