Glossary
Also: Vulnerability management
The organized handling of security updates: detect, assess, apply, evidence.
The effort is not in applying but in assessing. Not every reported vulnerability affects your usage, and not every critical advisory is urgent.
Automated dependency scanning in the delivery pipeline helps, because it surfaces new advisories where work happens anyway.