Viewing as CISO
Security Posture Overview
Real-time risk across code, cloud, and runtime. Last refreshed 2 minutes ago.
Open findings
4.2%989
vs last week
Critical / High
8.1%842
253 critical
Fixed (30d)
12.5%93
↑ velocity
Mean age
2.3%90d
across open
Findings trend (60 days)
Stacked by severity
Severity distribution
2,500 total
Top risk — needs attention
highTrivyContainerBurp Pro PenTestPenTestWizCSPMDependabotSCAtfsecIaCGitleaksSecrets
IAM role with wildcard permissions
subscriptions · subscriptions-iam-role-37
CVSS 10
ExploitlowSSRF in webhook fetcher
checkout-api · checkout-api-vm-21
CVSS 9.9
ExploitmediumContainer running as root
vault · vault-service-3
CVSS 9.9
ExploithighHardcoded AWS access key in source
analytics-pipeline · analytics-pipeline-load-balancer-33
CVSS 9.9
ExploitlowMissing CSP header on auth pages
wallet · wallet-s3-bucket-6
CVSS 9.9
ExploitlowOpen Redis without auth
profile-svc · profile-svc-container-7
CVSS 9.9
ExploitCompliance posture
SOC 2 Type II85%
121/142 controls passing
ISO 27001:202284%
78/93 controls passing
PCI DSS 4.083%
218/264 controls passing
HIPAA Security82%
64/78 controls passing
NIST CSF 2.084%
91/108 controls passing
Fix velocity (30 days)
Introduced vs Fixed
Cloud accounts
staging
AWS · 367349883867
64
77 issues
prod-payments
GCP · 221563272271
65
112 issues
staging
GCP · 135910060117
78
187 issues
corp-it
AWS · 640161155164
63
102 issues
prod-payments
AWS · 582179549103
90
191 issues
Recent activity
MW
Marcus Wei escalatedMissing CSP header on auth pages
over 56 years ago
MW
Marcus Wei assignedTerraform module pins old AMI with CVEs
over 56 years ago
AK
Aisha Khan escalatedMissing CSP header on auth pages
over 56 years ago
SC
Sarah Chen assignedOutdated lodash with prototype pollution
over 56 years ago
ER
Elena Rossi commented onContainer running as root
over 56 years ago
JO
James Ortiz assignedS3 bucket publicly readable
over 56 years ago
MW
Marcus Wei commented onIAM role with wildcard permissions
over 56 years ago
MW
Marcus Wei escalatedInsecure deserialization in message queue consumer
over 56 years ago
JO
James Ortiz assignedIAM role with wildcard permissions
over 56 years ago
MW
Marcus Wei marked fixedMissing rate limiting on /login
over 56 years ago