The Risk Scoring for Security Exposure Management application delivers unified risk scoring capabilities across all Unified Security Exposure Management (USEM) applications.
Administrators can define Risk Calculators and Risk Rules in the Security Exposure Management (SEM) Workspace to consistently evaluate exposure findings based on configurable factors. Risk scoring can be configured across infrastructure, application, container, and configuration compliance findings to ensure consistent prioritisation.
With Risk Rollup Calculators, scores can be aggregated from individual findings to higher-level entities such as Remediation Tasks, Assets, Vulnerability Items, and Configuration Tests, giving teams a clear view of risk at every level.
- Define Risk Calculators and Risk Rules centrally in the SEM Workspace
- Apply consistent scoring across all exposure types (infra, app, container, config)
- Configure scoring factors such as severity, exploitability, business criticality, and more
- Use Risk Rollup Calculators to aggregate scores from findings to:
-
- Remediation Tasks
-
- Assets
-
- Vulnerability Entries
-
- Configuration Tests
New:
- Introduced Risk Calculators for all Unified Security Exposure Management (USEM) applications in the Security Exposure Management Workspace.
- Support for defining risk rules based on multiple factors and calculation mechanisms.
- Added risk rollup calculators to aggregate scores from findings to higher-level entities.
- Consistent risk scoring across Vulnerability Response (VR), Application Vulnerability Response (AVR), Container Vulnerability Response (CVR), and Configuration Compliance.
- Required plugins and products
- Dependencies