Skip to main content

Vendor - Deep Dive into Security Profile

The Security Profile to get a detailed view of a vendor's security posture, including a breakdown of risks, findings, and remediation steps.

Updated over a month ago

Overview of the Security Profile

  • The Security Profile tab provides a comprehensive look at a vendor's security posture, going beyond the summary score to show you the specific risks and findings.

  • Use this page to understand where the biggest risks lie, monitor trends, explore flagged areas, and get the insights needed to reduce exposure.

  1. Risk Severity Summary:

    • At the top of the page, you'll see a quick summary of the number of findings categorized by severity: Critical, High, Medium, and Low.

    • This summary also includes the trend for each category over the last 30 days, helping you track whether the number of high-priority issues is increasing or decreasing.

  2. Risk Categories Breakdown:

    • The main table breaks down the security posture into the same categories as the summary page (e.g., Website Security, Encryption, Data Leakage).

    • For each category, you'll see:

      • Score: The specific score for that category.

      • Trend: How the score has changed over the last 30 days.

      • Risks: The total number of identified risks in that category.

      • Findings: The total number of specific security findings.

      • Risk Breakdown: A visual breakdown of findings by severity (Critical, High, Medium, Low), allowing you to quickly spot the most serious issues.

  3. Drilling Down into Findings:

    • Clicking on a category (e.g., "Website Security") or the dropdown arrow will expand the section to show detailed findings.

    • For each finding, you will see a title (e.g., "Monitor for insecure network configurations") and a detailed breakdown of the specific issues within that finding.

    • This detailed view helps you understand the root cause of the risk and allows you to prioritize remediation efforts or communicate specific issues to the vendor.

  4. Taking Action:

    • Use this detailed profile to engage with your vendors. You can share specific findings with them to encourage remediation.

    • The trends and severity categories help you prioritize which vendors and which issues need your immediate attention.

Did this answer your question?