The main elements of a vulnerability management program are discovery, analysis, and remediation.

Vulnerabilities can be identified using different methods such as penetration testing and the use of third-party software. Once these vulnerabilities have been identified, they require classification to establish whether they can be remediated or whether they need to be noted and observed.

