Compensating controls are additional security measures that are put in place to mitigate the risk when an immediate remedy to a vulnerability is not possible, such as when a patch cannot be applied quickly due to business constraints or testing requirements. While not a permanent fix, they are used to provide temporary protection until the vulnerability can be fully remediated. However, patching is always the preferred method for vulnerability remediation when possible.
Learn More
AI Generated Content may display inaccurate information, always double-check anything important.
What are some examples of compensating controls?
Why is patching preferred over compensating controls?
What are the risks of not patching vulnerabilities?