Minimizing patch management in crisis situation: call from digital service user associations to major providers

1 avril 2020 | ACTUALITÉS, Cigref in english, Communiqués

Beltug, Cigref and CIO Platform Nederland represent several thousand private and public organisations in Belgium, France and the Netherlands that use digital services.


Press release – 1st April 2020
Download the press release (pdf)

Since the generalisation of containment measures in Europe and throughout the world to combat the spread of COVID-19, companies and public organisations have organised in a few days the implementation of teleworking by employees and external service providers, on an unprecedented scale in terms of volume of users, speed of deployment and expected duration.

We would first of all like to compliment the providers of software, digital services and infrastructures on the impressive efforts they have shown in scaling up over the past weeks. We hope we can all continue to rely on them and their products and services in these difficult circumstances.

As many of the crucial functions of the ICT Departments must also now be monitored from remote locations, some of our members have alerted us about their difficulty in managing the patching of software and IT solutions in crisis context, and more particularly in situations of widespread homeoffices.

That is why our associations call, on behalf of their member organisations, on all suppliers concerned to take measures in favour of the temporary reduction of patching:

  • reduction in the size of patches,
  • limitation to essential security updates and vulnerability patches,
  • suspension of updates and patches for non-essential functional improvements,
  • development of a patching management system directly on the workstations of employees connected to the company’s information system via the Internet.

According to our sources, Microsoft is working in this direction. We call on other software publishers and cloud providers to do the same.

Danielle Jacobs
danielle.jacobs@beltug.be
+32 495 108851

Cigref

Thibault Luret
tluret@cigref.fr
+33 6 45 49 93 75

Ankie Tooten
ankie@cio-platform.nl
+3106 21 27 82 75

Gouvernance de la sécurité numérique : orientation, déploiement et pilotage

Le numérique infuse chaque strate de nos activités, la cybersécurité ne peut donc plus être cantonnée à une simple gestion technique. Elle est devenue un levier de résilience, au service de la performance et de la compétitivité. C’est tout l’enjeu du nouveau rapport...

Rupture structurelle dans l’ingénierie logicielle avec l’IA générative et l’IA agentique

Restitution des travaux du Do Tank Cast & Cigref Aujourd'hui l’IA générative et agentique pénètre comme un véritable tsunami le domaine de l'ingénierie logicielle, révolutionnant en profondeur les usages, les fonctions, le design comme la modernisation des...

Modèle de maturité et d’audit de la gouvernance du numérique : le nouveau référentiel pour piloter la maturité de votre gouvernance numérique

Face à l’accélération des ruptures technologiques et à l’omniprésence du numérique au cœur des métiers, le Cigref, l’IFACI et ISACA France, lancent le Modèle de maturité et d’audit de la gouvernance du numérique (MAGNum). Ce successeur du GAGSI dépasse le cadre de...