iso27diy-corp/Corpus/Sparks/Vulnerability Disclosure Policy.md

5 lines
449 B
Markdown

Having a permissive vulnerability disclosure policy (VDP) encourages security research, and is a key characteristic of a good, mature security program. It encourages transparency.
For you as a vendor, it enhances [Vendor security MoC](Vendor%20security%20MoC.md) towards your customers.
As a customer, you may check for a VDP when creatingyour [Examples of vendor selection questionnaires](Examples%20of%20vendor%20selection%20questionnaires.md).