The following filters and Bitsight filter sets are available for the Findings Table in the Security Posture Management application.
As of September 9, 2026, filters in the portal are grouped by relationship and ordered by frequency of use, with the most commonly used filters appearing first. Filter listed below are listed alphabetically.
Filters
- Assets
-
Assets Filter by
- Asset Value (IP Address, Domain, Mobile App Name)
- Country
- Findings without Assets
Applicable risk types: All
- Asset Importance
-
Filter by asset importance:
- Critical
- High
- Medium
- Low
- None
Applicable risk types: All
- Assigned To
-
The user assigned to remediate the finding.
Applicable risk types: All
- Attributed To
-
Filter by subsidiary.
Applicable risk types: All
- Comments
-
Filter by subsidiary.
Filter Values:
- Has comments
- No comments
Applicable risk types: All
- [Date] First Seen
-
Include findings that were first seen in the past:
- 7 Days
- 1 Month
- 3 Months
- Custom
Applicable risk types: All
- [Date] Last Seen
-
Include findings that were last seen in the past:
- 7 Days
- 1 Month
- 3 Months
- Custom
Applicable risk types: All
- [Date] Status Update Date
-
Include findings with a remediation status that was last updated in the past:
- 7 Days
- 1 Month
- 3 Months
- Custom
Applicable risk types: All
- Details
-
Filter by specific underlying technical issues associated with the finding.
Applicable risk types: All
- Duration
-
Minimum
#of days to maximum#of days.Applicable risk types: All. See lifetime by risk vector.
- File Sharing Category
-
Filter by file sharing category.
Applicable risk types: File Sharing
- Finding Severity
-
Filter by finding severity:
- Severe
- Material
- Moderate
- Minor
Applicable risk types: Compromised Systems, Diligence, and File Sharing risk vectors.
- Grace Period End Date
-
Filter by grace period end dates within a specified date range.
Filter Values:
Start DateEnd Date
- Grade
-
Filter by finding grade:
- Good
- Fair
- Warn
- Bad
- Neutral
- N/A
Applicable risk types: Diligence Risk Vectors
- Impacts Risk Vector Grade
-
Indicates if the finding influences the risk vector grade. See values.
Applicable risk types: All
- Impacts Security Rating
-
Surface findings from risk vectors that directly influence your Security Rating.
Filter Values:
- Yes
- No
Applicable risk types: All
- Infection Family
-
Filter by malware family.
Applicable risk types: Compromised Systems risk vectors.
- Critical Vulnerability Management: Remediated?
-
- Yes
- No
Applicable risk types: Critical Vulnerability Management (CVM)
- Rescan
-
Filter by rescan status:
- Asset Not Found
- Assumed Remediated
- Failed
- No Status
- Not Remediated
- Partially Remediated
- Remediated
- Replacement Finding
- Scanning
Applicable risk types: Some Diligence risk vectors. See rescan by risk vector.
- Remaining Lifetime
-
Lifetime range (
#days).Filter Values: See lifetime by risk vector.
- Remediation Status
-
- No Status
- Open
- To Do
- Work In Progress
- Resolved
- Risk Accepted
Applicable risk types: All
- Risk Vector
-
Select all risk vectors in a risk category or individual risk vectors.
Applicable risk types: All
- Tag
-
- Public
- Private
- Selected tags
Applicable risk types: All
- Updated By
-
Track recent changes by filtering for the user who last updated the Remediation Status or Assigned To fields.
Applicable risk types: All
Availability: Security Performance Management (SPM)
- Vulnerability
-
Vulnerability classification:
- Confirmed
- Potential
- Selected vulnerabilities
Applicable risk types: Critical Vulnerability Management (CVM)
- Vulnerability Severity
-
Filter by Bitsight severity:
- Severe
- Material
- Moderate
- Minor
Applicable risk types: Critical Vulnerability Management (CVM)
- Web App Sec Tests
-
Filter by assessment categories.
Applicable risk types: Web Application Security
Bitsight Filter Sets
Bad and Warn findings
Get bad and warn findings.
- Grade
- Warn
- Bad
- Impacts Risk Vector Grade
Yes
Impacts Bitsight Rating
Get findings that impact the grade.
- Risk Vectors
- All Compromised Systems risk vectors
- Diligence:
- SPF Domains
- DKIM Records
- TLS/SSL Certificates
- TLS/SSL Configurations
- Open Ports
- Web Application Headers
- Critical Vulnerability Management (CVM)
- Insecure Systems
- Server Software
- Desktop Software
- Mobile Software
- User Behavior:
- File Sharing
- Impacts Risk Vector Grade
Yes
Impacts RV Grade Only
Get only the findings that impact the risk vector grade.
New Findings
Get newly observed findings.
- First Seen
1d (1 day)
- Impacts Risk Vector Grade
Yes
Severe and Material Findings
Get severe and material severity findings.
- Finding Severity
- Material
- Severe
- Impacts Risk Vector Grade
Yes
- September 9, 2026: Added Impacts Security Rating, Country (under Assets), Details, Comments, and Updated By (SPM only) filters.
- August 26, 2026: Removed Mobile Application Security risk vector mentions.
- March 19, 2026: Security Posture Management rebrand.
- February 21, 2025: Grace Period End Date filter.
- February 6, 2025: Listed available Bitsight filter sets, including the new Severe and Material Findings filter set.
- December 4, 2024: Published.
Comments
Please sign in to leave a comment.