Uploaded May 2026 | Updated September 2026, 1 hour ago
Lisa Olson (Microsoft, US)
The CRA is calling for disclosing many more classes of vulnerabilities and clearly articulating the exploit status of all known vulnerabilities in the entire supply chain. To execute successfully, the industry is going to have to work together to come up with the tooling necessary to make this possible. This talk will explore the challenges and opportunities for this industry collaboration.
---
Lisa Olson is a Principal Security Release Program Manager at Microsoft, where she has led the Patch Tuesday release process since 2013. A member of the CVE Board since 2018, Lisa is a passionate advocate for improving vulnerability communication through automation and machine-readable formats. Her work focuses on transforming how security information is shared to help organizations respond faster and more effectively.
Lisa Olson (Microsoft, US)
The CRA is calling for disclosing many more classes of vulnerabilities and clearly articulating the exploit status of all known vulnerabilities in the entire supply chain. To execute successfully, the industry is going to have to work together to come up with the tooling necessary to make this possible. This talk will explore the challenges and opportunities for this industry collaboration.
---
Lisa Olson is a Principal Security Release Program Manager at Microsoft, where she has led the Patch Tuesday release process since 2013. A member of the CVE Board since 2018, Lisa is a passionate advocate for improving vulnerability communication through automation and machine-readable formats. Her work focuses on transforming how security information is shared to help organizations respond faster and more effectively.










