Industry-Specific Vulnerability Risk Dataset Collection & Analysis

Open
Admin
(16)
4
Project
Academic experience
120 hours of work total
Learner
Anywhere
Intermediate level

Project scope

Categories
Data analysis Data modelling Security (cybersecurity and IT security)
Skills
electronic performance support systems financial services common vulnerability scoring system (cvss) risk analysis vulnerability prioritization health risk assessments
Details

This project focuses on collecting, categorizing, and analyzing vulnerability data across different industry sectors to create comparative risk profiles. Students will gather data from various sources, apply industry-specific risk analysis methodologies, and develop a structured dataset that helps organizations understand vulnerability prioritization based on their sector's unique characteristics.


Problem to Solve


Organizations struggle to effectively prioritize vulnerabilities based on their specific industry context. Generic vulnerability scoring systems fail to account for industry-specific impacts, causing misaligned security efforts. This project addresses this gap by creating a specialized dataset that maps how vulnerabilities should be prioritized differently across healthcare, financial services, manufacturing, and critical infrastructure sectors.

Deliverables

Project Objectives

  1. Develop a comprehensive vulnerability dataset that includes industry-specific risk factors
  2. Apply multiple vulnerability prioritization frameworks (CVSS, EPSS, SSVC) to collected data
  3. Create comparative risk analysis showing how the same vulnerabilities impact different industries
  4. Deliver actionable insights for sector-specific vulnerability prioritization approaches


Expected Outcomes

By the end of this project, students will deliver:

  1. A structured vulnerability dataset with multi-framework scoring
  2. Industry-specific risk analysis for 4 key sectors
  3. Documentation of methodology and findings
  4. Recommendations for sector-specific vulnerability prioritization



Mentorship
Domain expertise and knowledge

Providing specialized, in-depth knowledge and general industry insights for a comprehensive understanding.

Skills, knowledge and expertise

Sharing knowledge in specific technical skills, techniques, methodologies required for the project.

Hands-on support

Direct involvement in project tasks, offering guidance, and demonstrating techniques.

Regular meetings

Scheduled check-ins to discuss progress, address challenges, and provide feedback.

Supported causes

The global challenges this project addresses, aligning with the United Nations Sustainable Development Goals (SDGs). Learn more about all 17 SDGs here.

Industry, innovation and infrastructure

About the company

Company
Canada
2 - 10 employees
Defense & security, It & computing, Technology
Representation
Minority-Owned Women-Owned Youth-Owned

Welcome to PatchIT Solutions - A Cybersecurity Software Development Startup! Part of Microsoft for Startups and John F. Wood Centre, University of Guelph

Dream IT. Define IT. PatchIT. At PatchIT Solutions, we don't just offer pre-made tools; we craft applications tailored to your unique specifications. Whether you envision an innovative tool or a specialized application, we're here to bring it to life. Entrust us with your dream, define your requirements, and let PatchIT Solutions make it a digital reality. Ready to turn your ideas into impactful solutions? Contact us today, and let's begin the journey together. Check out our flagship product, PatchLink AI, which is revolutionizing vulnerability management.