First published: 23 Nov 2022
Last updated: 23 Nov 2022

Content written for

Small & medium business
Large organisations & infrastructure
Government

The Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) has released a new publication, Vulnerability Disclosure Programs to help organisations understand and address risks associated with identified vulnerabilities.

A Vulnerability Disclosure Program (VDP) includes processes designed to identify, verify, resolve and report on security vulnerabilities disclosed by people who may be internal or external to an organisation.

This guide gives organisations of all sizes important information to scope, develop and implement a VDP to improve their cyber security posture. It also ensures they are postured for success should a vulnerability be disclosed by an external source.

Organisations are encouraged to familiarise themselves with this publication and implement a VDP in their workplace.

Was this helpful?
Yes this was helpful
No this was not helpful

Thanks for your feedback!

We welcome additional feedback below.

Was this information easy to understand?
Will you take action after reading this?
Did you find the information you were looking for?
Did the design and layout of this page meet your expectations?