Software is maintained, replaced, and removed commensurate with risk.
Organisation should:
Unmanaged installations of software on computers can lead to vulnerabilities and security breaches.
The organization should determine what types of software or updates each user can install. The instructions may include e.g. the following guidelines:
The organisation must make sure unnecessary software like application, system utilities and network services are removed.
Software updates should have a management process in place to ensure that the latest approved patches and application updates are installed on all approved software. Earlier versions of software should be retained as a precaution.