<mods xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:mods="http://www.loc.gov/mods/v3" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://www.loc.gov/mods/v3" version="3.3" xsi:schemaLocation="http://www.loc.gov/mods/v3 http://www.loc.gov/standards/mods/v3/mods-3-3.xsd" ID="P0b002ee1c1bb3451">
    <name type="corporate">
         <namePart>United States Government Publishing Office</namePart>
         <role>
              <roleTerm authority="marcrelator" type="text">publisher</roleTerm>
              <roleTerm authority="marcrelator" type="code">pbl</roleTerm>
        </role>
         <role>
              <roleTerm authority="marcrelator" type="text">distributor</roleTerm>
              <roleTerm authority="marcrelator" type="code">dst</roleTerm>
        </role>
    </name>
    <name type="corporate">
         <namePart>United States</namePart>
         <namePart>Commerce Department</namePart>
         <namePart>National Institute of Standards and Technology (NIST)</namePart>
         <role>
              <roleTerm authority="marcrelator" type="text">author</roleTerm>
              <roleTerm authority="marcrelator" type="code">aut</roleTerm>
        </role>
         <description>Government Organization</description>
    </name>
    <name type="personal">
         <namePart>Souppaya, Murugiah.</namePart>
         <role>
              <roleTerm authority="marcrelator" type="text">author</roleTerm>
              <roleTerm authority="marcrelator" type="code">aut</roleTerm>
        </role>
    </name>
    <typeOfResource>text</typeOfResource>
    <genre authority="marcgt">government publication</genre>
    <language>
         <languageTerm type="code" authority="iso639-2b">eng</languageTerm>
    </language>
    <extension>
         <collectionCode>GOVPUB</collectionCode>
         <category>Executive Agency Publications</category>
         <branch>executive</branch>
         <dateIngested>2023-10-27</dateIngested>
    </extension>
    <originInfo>
         <publisher>Commerce Department</publisher>
         <dateIssued encoding="w3cdtf">2022-04-06</dateIssued>
         <issuance>monographic</issuance>
         <edition>New version</edition>
    </originInfo>
    <physicalDescription>
         <note type="source content type">deposited</note>
         <digitalOrigin>born digital</digitalOrigin>
         <extent>28 digital object pages</extent>
    </physicalDescription>
    <classification authority="sudocs">C 13.</classification>
    <identifier type="uri">https://www.govinfo.gov/app/details/GOVPUB-C13-527d6a6eb5251bd8bd2b62b5504d9e32</identifier>
    <identifier type="local">P0b002ee1c1bb3451</identifier>
    <relatedItem type="series">
         <titleInfo>
              <title>NIST Special Publications</title>
        </titleInfo>
    </relatedItem>
    <identifier type="ILS system id">on1389890338</identifier>
    <identifier type="oclc">(OCoLC)1389890338</identifier>
    <recordInfo>
         <recordContentSource authority="marcorg">DGPO</recordContentSource>
         <recordCreationDate encoding="w3cdtf">2023-10-27</recordCreationDate>
         <recordChangeDate encoding="w3cdtf">2026-06-27</recordChangeDate>
         <recordIdentifier source="DGPO">GOVPUB-C13-527d6a6eb5251bd8bd2b62b5504d9e32</recordIdentifier>
         <recordOrigin>machine generated</recordOrigin>
         <languageOfCataloging>
              <languageTerm type="code" authority="iso639-2b">eng</languageTerm>
        </languageOfCataloging>
    </recordInfo>
    <accessCondition type="GPO scope determination">fdlp</accessCondition>
    <extension>
         <docClass>C13</docClass>
         <accessId>GOVPUB-C13-527d6a6eb5251bd8bd2b62b5504d9e32</accessId>
         <uniqueId>527d6a6eb5251bd8bd2b62b5504d9e32</uniqueId>
         <ACCode>GOVPUB</ACCode>
         <fedPubName>NIST Special Publications</fedPubName>
         <field name="Note">NOTE: THE “DATE ISSUED” ABOVE MAY DEFAULT TO JANUARY 1ST OF A GIVEN YEAR. TO THE VIEW THE MOST ACCURATE DATE OF ISSUE, REVIEW THE TITLE PAGE OF THE PUBLICATION.</field>
         <description>This series includes proceedings of conferences sponsored by NIST, NIST annual reports, and other special publications appropriate to this grouping such as wall charts, pocket cards, and bibliographies.</description>
         <agency abbrev="NIST">National Institute of Standards and Technology</agency>
         <resultsLineTwoText>Commerce Department. National Institute of Standards and Technology. 2022</resultsLineTwoText>
         <dateIssued>2022-04-06</dateIssued>
    </extension>
    <location>
         <url displayLabel="Content Detail" access="object in context">https://www.govinfo.gov/app/details/GOVPUB-C13-527d6a6eb5251bd8bd2b62b5504d9e32</url>
         <url displayLabel="PDF rendition" access="raw object">https://www.govinfo.gov/content/pkg/GOVPUB-C13-527d6a6eb5251bd8bd2b62b5504d9e32/pdf/GOVPUB-C13-527d6a6eb5251bd8bd2b62b5504d9e32.pdf</url>
    </location>
    <titleInfo>
         <title>Guide to Enterprise Patch Management Planning</title>
         <subTitle>Preventive Maintenance for Technology</subTitle>
    </titleInfo>
    <subject>
         <topic>Enterprise patch management</topic>
         <topic>Patch</topic>
         <topic>Risk management</topic>
         <topic>Software update</topic>
         <topic>Software upgrade</topic>
         <topic>Vulnerability management</topic>
    </subject>
    <name type="personal">
         <namePart>Souppaya, Murugiah.</namePart>
         <role>
              <roleTerm authority="marcrelator" type="text">creator</roleTerm>
        </role>
    </name>
    <name type="personal">
         <namePart>Souppaya, Murugiah.</namePart>
    </name>
    <name type="personal">
         <namePart>Scarfone, Karen.</namePart>
    </name>
    <name type="corporate">
         <namePart>National Institute of Standards and Technology (U.S.)</namePart>
         <namePart>Information Technology Laboratory</namePart>
    </name>
    <originInfo>
         <place>
              <placeTerm authority="marccountry" type="code">mdu</placeTerm>
        </place>
         <publisher>U.S. Dept. of Commerce, National Institute of Standards and Technology</publisher>
         <dateIssued>2022-04-06.</dateIssued>
         <edition>New version</edition>
         <issuance>monographic</issuance>
    </originInfo>
    <physicalDescription>
         <extent>1 online resource (28 pages) : tables (color)</extent>
    </physicalDescription>
    <typeOfResource>text</typeOfResource>
    <genre authority="marcgt">technical report</genre>
    <language>
         <languageTerm authority="iso639-2b" type="code">eng</languageTerm>
    </language>
    <abstract>Enterprise patch management is the process of identifying, prioritizing, acquiring, installing, and verifying the installation of patches, updates, and upgrades throughout an organization. Patching is more important than ever because of the increasing reliance on technology, but there is often a divide between business/mission owners and security/technology management about the value of patching. This publication frames patching as a critical component of preventive maintenance for computing technologies   a cost of doing business, and a necessary part of what organizations need to do in order to achieve their missions. This publication also discusses common factors that affect enterprise patch management and recommends creating an enterprise strategy to simplify and operationalize patching while also improving reduction of risk. Preventive maintenance through enterprise patch management helps prevent compromises, data breaches, operational disruptions, and other adverse events.</abstract>
    <note type="statement of responsibility">Murugiah Souppaya; Karen Scarfone.</note>
    <note>April 2022.</note>
    <note>Title from PDF title page (viewed January 4, 2023).</note>
    <note type="bibliography">Includes bibliographical references.</note>
    <note type="venue">Approved by the NIST Editorial Review Board on 2022-03-17</note>
    <note type="system details">Mode of access: World Wide Web.</note>
    <note type="system details">Systems requirements: Adobe Acrobat PDF reader.</note>
    <subject authority="lcsh">
         <topic>Risk management</topic>
    </subject>
    <subject>
         <topic>Enterprise patch management</topic>
    </subject>
    <subject>
         <topic>Patch</topic>
    </subject>
    <subject>
         <topic>Software update</topic>
    </subject>
    <subject>
         <topic>Software upgrade</topic>
    </subject>
    <subject>
         <topic>Vulnerability management</topic>
    </subject>
    <relatedItem type="series">
         <titleInfo>
              <title>NIST special publication; NIST special pub; NIST SP; 800-40r4</title>
        </titleInfo>
    </relatedItem>
    <location>
         <url displayLabel="electronic resource" usage="primary display">https://doi.org/10.6028/NIST.SP.800-40r4</url>
    </location>
    <titleInfo type="alternative">
         <title>Guide to enterprise patch management planning</title>
         <subTitle>preventive maintenance for technology</subTitle>
    </titleInfo>
    <extension>
         <searchTitle>
              <title>Guide to enterprise patch management planning</title>
              <subTitle>preventive maintenance for technology</subTitle>
        </searchTitle>
    </extension>
</mods>