Vulnerability management is a cybersecurity control or practice. It supports this objective: discovers, prioritizes, remediates, and verifies technical weaknesses. In practice, document the business and security objective, the system boundary, the owner and the evidence that will show the control is operating as intended.CIS Critical Security Controls v8: https://www.cisecurity.org/controls/v8