https://www.kaseya.com/blog/patch-management-policy/
In this blog, Kaseya will discuss patch management policy best practices and explain how they contribute to a better patching environment for large and small organizations alike.
https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-147B.pdf
This NIST Special Publication is designed to provide guidelines for BIOS protections in server-class systems.
https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-209.pdf
This NIST Special Publication is designed to provide a comprehensive set of security recommendations for the current landscape of the storage infrastructure.
https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-40r4.pdf
This NIST Special Publication is designed to assist organizations in understanding the basics of enterprise patch management technologies.
https://policies.ncsu.edu/rule/rul-08-00-14/
The following is an example from North Carolina State University of a Security Patching Standard.
https://www.sans.org/white-papers/35932/
This SANS whitepaper examines the role of project management in building a successful vulnerability management program.
https://www.sans.org/white-papers/34180/
This SANS whitepaper looks at how a vulnerability management process could be designed and implemented within an organization.
SANS Whitepaper – A Practical Methodology for Implementing a Patch Management Process
3.14 3.14.1 System and Information integrity
https://www.sans.org/white-papers/1206/
This SANS whitepaper presents one methodology for identifying, evaluating and applying security patches.