Welcome » IT Booklets » Operations » Risk Mitigation and Control Implementation » Change Management » Patch Management
Vendors frequently develop and issue patches to solve problems, improve performance, and enhance security of their software products. Management should establish procedures to stay abreast of patches, to test them in a segregated environment, and to install them when appropriate. Change management procedures should require documentation of any patch installations. Management should develop a process to ensure version control of operating and application software to ensure implementation of the latest releases. Management should also maintain a record of the versions in place and should regularly monitor the Internet and other resources for bulletins about product enhancements, security issues, patches or upgrades, or other problems with the current versions of the software.