
Automated Vulnerability Management Challenges with CrowdStrike and Tines
vulnerability_managementCrowdStrikeTinesautomationCVEseverityExPRTSLAcybersecurity
The poster uses CrowdStrike and Tines to automate vulnerability ticket submissions, categorizing them by severity (critical, high, medium, low) based on ExPRT ratings for SLA tracking. They group tickets by remediation to reduce volume and address multiple CVEs at once, but this creates issues when a CVE’s severity changes, as it may not be re-evaluated in the correct severity segment. The current workflow struggles to handle dynamic severity updates without causing disorganization or missing critical vulnerabilities. The poster seeks alternative approaches to balance efficiency and accuracy in vulnerability management.