<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Is it irresponsible for an organisation to release patches that are not fit for purpose? in Industry News</title>
    <link>https://community.isc2.org/t5/Industry-News/Is-it-irresponsible-for-an-organisation-to-release-patches-that/m-p/46728#M5534</link>
    <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In these days is it not irresponsible for any organisation, no matter how big or small to release patches for their solutions, software without having gone through DevOps or a formal test procedure prior to releasing them to the public?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Organisations should never rush to release patches, which potentially could cause damage to existing systems, even if you regime is to never patch for the first seven days.&amp;nbsp;&amp;nbsp; However, one does depend on the honesty of organisations entrusted to develop systems, to ensure they come clean, and follow good practices.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do we need some form of penalties for such behaviour?&amp;nbsp;&amp;nbsp; Unfortunately, everyone depends on the organisation due to massive discounts for software sales, and they simply get away with it - even if you are Microsoft, you should know far better!&amp;nbsp; Or does that fall under the Consumer act?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 09 Oct 2023 09:56:58 GMT</pubDate>
    <dc:creator>Caute_cautim</dc:creator>
    <dc:date>2023-10-09T09:56:58Z</dc:date>
    <item>
      <title>Is it irresponsible for an organisation to release patches that are not fit for purpose?</title>
      <link>https://community.isc2.org/t5/Industry-News/Is-it-irresponsible-for-an-organisation-to-release-patches-that/m-p/46728#M5534</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In these days is it not irresponsible for any organisation, no matter how big or small to release patches for their solutions, software without having gone through DevOps or a formal test procedure prior to releasing them to the public?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Organisations should never rush to release patches, which potentially could cause damage to existing systems, even if you regime is to never patch for the first seven days.&amp;nbsp;&amp;nbsp; However, one does depend on the honesty of organisations entrusted to develop systems, to ensure they come clean, and follow good practices.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do we need some form of penalties for such behaviour?&amp;nbsp;&amp;nbsp; Unfortunately, everyone depends on the organisation due to massive discounts for software sales, and they simply get away with it - even if you are Microsoft, you should know far better!&amp;nbsp; Or does that fall under the Consumer act?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 09:56:58 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/Is-it-irresponsible-for-an-organisation-to-release-patches-that/m-p/46728#M5534</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2023-10-09T09:56:58Z</dc:date>
    </item>
    <item>
      <title>Re: Is it irresponsible for an organisation to release patches that are not fit for purpose?</title>
      <link>https://community.isc2.org/t5/Industry-News/Is-it-irresponsible-for-an-organisation-to-release-patches-that/m-p/46736#M5536</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is the article I was referring too:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://windowsreport.com/bios-update-via-windows-update/" target="_blank"&gt;https://windowsreport.com/bios-update-via-windows-update/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;</description>
      <pubDate>Sun, 01 Aug 2021 20:03:31 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/Is-it-irresponsible-for-an-organisation-to-release-patches-that/m-p/46736#M5536</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2021-08-01T20:03:31Z</dc:date>
    </item>
    <item>
      <title>Re: Is it irresponsible for an organisation to release patches that are not fit for purpose?</title>
      <link>https://community.isc2.org/t5/Industry-News/Is-it-irresponsible-for-an-organisation-to-release-patches-that/m-p/46775#M5544</link>
      <description>&lt;P&gt;Yeah, I would consider not testing patches irresponsible but it's also a two way street. Software companies need to test the patches before releasing them and organizations need to test before implementing them into their production environment. &lt;STRONG&gt;However&lt;/STRONG&gt;, we can't hold the organizations responsible for patches on systems they can't control, e.g., the recent Akamai outage caused by an update.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/809125741"&gt;@Caute_cautim&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do we need some form of penalties for such behaviour?&amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;This is a perfect example of why we have Regulations.&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 03 Aug 2021 14:34:41 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/Is-it-irresponsible-for-an-organisation-to-release-patches-that/m-p/46775#M5544</guid>
      <dc:creator>tmekelburg1</dc:creator>
      <dc:date>2021-08-03T14:34:41Z</dc:date>
    </item>
  </channel>
</rss>

