Rewrite: remove JumpCloud/Chocolatey, update to TRMM-based patching
Some checks failed
Regenerate Documentation Index / regenerate-index (push) Failing after 1s

This commit is contained in:
Joey King 2026-02-19 15:52:14 +00:00
parent eb19040658
commit 4ce0b1948d

View file

@ -1,6 +1,6 @@
---
title: Patch Management
description: Effective patch management is crucial for maintaining a robust cybersecurity strategy. digiBandit IT Services, your trusted Managed Service Provider (MSP), offers comprehensive patch management ser...
description: How digiBandit keeps your systems secure and up-to-date through automated and managed patching.
category: policies
tags: [patch, policies]
permalink: go.dbits.ca/dd/patch-management
@ -8,40 +8,53 @@ permalink: go.dbits.ca/dd/patch-management
# Patch Management
Effective patch management is crucial for maintaining a robust cybersecurity strategy. digiBandit IT Services, your trusted Managed Service Provider (MSP), offers comprehensive patch management services to ensure the security of your systems. We utilize JumpClouds Chocolaty Package Manager addon and AutoElevate for Privileged Access Management (PAM) request approvals. Read on to understand our simple standard operating procedures for software installation, removal, updates, and modifications.
Keeping software up-to-date is one of the most effective ways to prevent security breaches. digiBandit manages patching for all devices under our managed services so you don't have to think about it.
## Software Installation/Removal:
## What We Patch
- Chocolaty Package Manager (Automated):
- **Operating Systems** - Windows updates, macOS updates, and Linux packages
- **Third-Party Software** - Browsers, productivity tools, runtimes, and common business applications
- **Firmware** - Network equipment firmware updates during maintenance windows
[Submit a ticket](https://dbits.ca/ticket) with software specifications and requirements.
## How It Works
- Our team will initiate automated installation via JumpClouds Chocolaty Package Manager addon.
### Automated Patching
- Manual Installation (Non-Chocolaty software):
Our monitoring platform (Tactical RMM) handles patch deployment across all managed devices:
[Create a ticket](https://dbits.ca/ticket) at least one week in advance with software details and requirements.
- **Windows Updates** are applied on a managed schedule with automatic reboots during off-hours when required
- **Third-party applications** are updated automatically via our software management policies
- **Critical security patches** are prioritized and deployed as soon as possible after release
- Our team will manually install the software on the specified date.
### Manual Patching
## Software Updates:
Some updates require manual intervention:
- Chocolaty Package Manager (Automated):
- **Line-of-business software** that requires testing before deployment
- **Major OS upgrades** that may affect workflows
- **Custom applications** with vendor-specific update procedures
Weekly updates are performed automatically on Wednesdays.
For these, [submit a ticket](https://portal.dbits.ca) with the software details and we'll coordinate an update window.
- Our team monitors for critical or security-related patches.
## Patch Schedule
- Manual updates may be scheduled if necessary for proper installation.
| Type | Frequency | Window |
|------|-----------|--------|
| Windows Updates | Weekly | Wednesday evenings |
| Third-Party Apps | Weekly | Automated |
| Critical Security | ASAP | Within 24 hours of release |
| Firmware | As needed | Scheduled maintenance window |
- Manual Updates (Non-Chocolaty software):
## Privilege Access Management
[Create a ticket](https://dbits.ca/ticket) specifying the software requiring an update.
If you need to install or update software that requires administrator permissions, our privilege access management system lets you request elevation without needing full admin credentials. See [Privilege Access Management](../Security/Privilege_Access_Management_PAM.md) for details.
- Our team will schedule and manually update the software on the selected date.
## What's Included
## AutoElevate
Patch management is included in Standard and Fully Managed device management tiers at no additional cost. See [Device Management](../Services/Device_Management.md) for tier details.
For additional information on our use of [Privileged Access Management (PAM)](https://dbits.ca/docs/public/services-and-offerings/helpdesk-by-digibandit/pam/) request approvals, please refer to our [Documentation](https://dbits.ca/docs/public/services-and-offerings/helpdesk-by-digibandit/pam/).
## Questions?
digiBandit IT Services provides simple and effective patch management services to safeguard your business. We leverage JumpClouds Chocolaty Package Manager addon for automated management and AutoElevate for PAM request approvals. Our standard operating procedures for software installation, removal, updates, and modifications ensure that your systems remain secure and up-to-date. Contact us today to learn more about our patch management services and protect your business against cyber threats.
- **Phone:** (506) 404-0055
- **Email:** hey@dbits.ca
- **Portal:** [portal.dbits.ca](https://portal.dbits.ca)