Findings: Issue Tracking

The Issue Tracking page in the Security Posture Management application [menu-findings-spm.png Findings ➔ Issue Tracking] is a configurable dashboard that provides an overview of the current state of your Issue Tracking progress for one of your companies.

The dashboard is bound by the viewed company where all findings in the dashboard belong to the viewed company.

  • Configurable per company, allowing you to have a different configuration for your My Company and a subsidiary.

    Example: Adding multiple versions of the same card with different configuration options can be helpful in highlighting differences, such as having a version of the Asset Risk Matrix excluding GOOD and NEUTRAL finding grades and a version with all finding grades.

  • Get a quick overview of your progress in resolving findings over time. Summarizes and tracks your findings by Remediation Status, breaking down each status by finding severity or finding grade.
  • See the number of findings assigned to users. It is broken down by remediation status so you can track work across the team and enhance your ability to prioritize and plan remediation.

Actions

Visible only to users in your own organization. See user permissions.

Assign Users

Assign users to remediate findings.

Instructions: Assign users from the Finding Table. Refer to the following guides:

Change Companies

Instructions: Use the context switcher at the top-left of the SPM app to select the company.

Configure Issue Tracking Notifications

Users assigned to remediate a finding are notified via email. To change this setting for yourself, go to User Preferences [settings.png Settings ➔ Account ➔ User Preferences], and then enable the You are newly assigned to findings option.

Edit the Dashboard

Edit the dashboard, the cards to include, and how it’s organized.

Instructions: Select Edit Dashboard at the top-right. See guide.

Highlight a Primary Rating

Highlight a My Company or My Subsidiary as the primary.

Instructions:

  1. Select the Configure Primary Rating option from the Actions dropdown at the top-right.
  2. Select the company.
  3. Select Save Changes.

Notes Sheet

Use the Notes sheet to manage company notes.

Instructions: Select the Add/View Notes option from the Actions dropdown at the top-right.

Create a Note

  1. Enter a summary for the note into the Subject field (up to 250 characters).
  2. Enter your notes into the Note field. Tag a user with the @ character.
  3. Select Save.

Edit an Existing Note

Select edit-0075c0.png Edit Note.

Delete a Note

Select edit-0075c0.png Delete Note.

Search Existing Notes

Use the Search… bar at the top-right of the Notes sheet.

Save the Issue Tracking Dashboard as a Document (.pdf)

Instructions: Select the Export Page PDF option from the Reports section of the reports.png Reports and Assessments menu at the top-right.

Save a Card as an Image (.png)

Instructions: Select Save as Image from the options.png Options button at the top-right of a card.

View the Service Providers Sheet

Instructions: Select ActionsService Providers at the top-right of the Issue Tracking dashboard.

View the Products Sheet

Instructions: Select ActionsProducts at the top-right of the Issue Tracking dashboard.

Cards

❖ Included risk vectors: Compromised Systems, Diligence (except Domain Squatting), and File Sharing.

Card Description Filters
Asset Risk Matrix Shows findings in a matrix by Finding Severity and Asset Importance to help prioritize findings.
Findings By Assignee Summarizes the number of findings assigned to each user, broken down by remediation status. This card is restricted by Access Control Group (ACG); You will only see other users in your ACG.
  • Resolved Date Range:
    • 7 Days
    • 30 Days
    • 90 Days
  • Risk Vectors
Finding Lifetime Shows the anticipated remaining lifetime of findings currently impacting the risk vector grade, helping to visualize when findings will stop impacting the risk vector grade (assuming nothing changes).
Forecasting View how remediation efforts will impact your rating in the future.  
Remediation Status Individual remediation status cards of all findings in a certain remediation status. Use the powerful configuration options to get the most out of these cards.
  No Status Summarizes findings with the No Status remediation status, allowing you to see No Status findings by finding severity or finding grade.
Open Summarizes findings with the Open remediation status, allowing you to see Open findings by finding severity or finding grade.
Resolved Summarizes findings with the Resolved remediation status, allowing you to see resolved findings by finding severity or finding grade.
Risk Accepted Summarizes findings with the Risk Accepted remediation status, allowing you to see Risk Accepted findings by finding severity or finding grade.
To Do Summarizes findings with the To Do remediation status, allowing you to see To Do findings by finding severity or finding grades.
Work In Progress Summarizes findings with the Work In Progress remediation status, allowing you to see Work In Progress findings by finding severity or finding grade.
Remediation Status Summary Summarizes the number of findings in each remediation status for a full overview.
  • Date Range:
    • 7 Days
    • 30 Days
    • 90 Days
  • Risk Vectors
  • Assigned Users
Resolved Findings Over Time Shows the number of findings with a Resolved status per month, allowing you to see your progress over time.

Card Abbreviation Guide

You can also hover over abbreviated card labels in the dashboard card to see the full label.

Remediation Statuses:

  • WIP = Work In Progress
  • RA = Risk Accepted

Finding Severities:

  • Sev = Severe
  • Mat = Material
  • Mod = Moderate
  • Min = Minor

Finding Grades:

  • G = Good
  • F = Fair
  • W = Warn
  • B = Bad
  • N = Neutral
  • March 24, 2026: Security Posture Management rebrand.
  • February 13, 2025: Actions section.
  • October 28, 2024: Issue Tracking navigation instructions moved from Dashboards to Findings.
  • March 21, 2023: Replaced dashboard configuration instructions with resource link.
Was this article helpful?
2 out of 4 found this helpful

Comments

0 comments

Please sign in to leave a comment.