Vulnerability Coordination Maturity Model
Need Expert Guidance?

Download the VCMM Overview
To improve overall security, every organization needs to benchmark its capabilities and identify and prioritize areas that need improvement.
The Vulnerability Coordination Maturity Model (VCMM) provides a framework that evaluates five key areas to help organizations measure and evolve their vulnerability management capabilities.
Five Key Areas of the Vulnerability Coordination Maturity Model

Organizational
People, process and resources to handle bugs

Engineering
Capabilities to evaluate & remediate security holes and improve software development lifecycle

Communications
Ability to communicate with internal and external audiences about bugs

Analytics
Data analysis of vulnerabilities to identify trends and improve processes

Incentives
Ability to encourage security researchers to report vulnerabilities directly