Threat Intelligence Policy¶
| Field | Value |
|---|---|
| Owner | Puneet Gupta (Co-Founder) |
| Classification | Internal (shareable under NDA) |
| Version | 1.0 |
| Effective date | 2026-06-11 |
| Next review | 2027-06-11 |
1. Purpose¶
Ensure Revzio receives and acts on information about emerging threats and vulnerabilities relevant to its stack.
2. Sources¶
- Cloud-provider security bulletins and service notifications.
- Dependency / package vulnerability alerts (e.g. ecosystem advisories).
- CrowdSec community threat intelligence (used by the perimeter IDS).
- A formal subscription to threat-intelligence feeds / regulatory advisories such as CERT-In is being established. (Planned.)
3. Handling¶
Relevant advisories are reviewed and, where applicable, translated into action through the Vulnerability Management and Change Management processes (patching, configuration changes, or mitigations).
Revision history¶
| Version | Date | Author | Change | Approved by |
|---|---|---|---|---|
| 1.0 | 2026-06-11 | Puneet Gupta | Initial draft | Puneet Gupta (Co-Founder) |