Continuous Monitoring & Insurance: Navigating the Risk Vectors page

The Risk Vectors page details a company's risk by showing Diligence trends, compromised system rates, and risk vector impacts. It offers summary charts, detailed info, and filtered findings. Reports include PDF exports, company overviews, risk summaries, and compliance reports.

The Risk Vectors page breaks down a selected company’s risk.

  • The Diligence chart shows:
    • The overall trend and progress of finding grades by Diligence risk vector.
    • A count of historic Diligence risk vector findings by finding grade.
    • The direction of the trend, highlighting if remediation efforts are making a difference, before the rating or risk vector letter grade changes.
  • The comparison of Compromised System rates to industry categories.
  • Impact of each risk vector on the rating (if any).
  • Detailed summary charts for particular risk vectors.
  • Select the kb_rating_details.png More Information option for a summary of the kind of information observed by each risk vector, including how they are assessed, how the data for that risk vector is collected, the associated risks, and the recommended remediation for that risk vector.
  • Go to a risk vector section to either get more information about the risk vector in the Knowledge Base or to the entity’s view_findings.png Findings Table, filtered for that risk vector.

Reports

Select the reports.png Reports button at the top-right for the following reporting actions:

Export Page PDF

Download Risk Vector Overview as a PDF file.

Download Company Report

Get an overview of a company’s security performance, a summary of the findings, and comparisons to industry averages.

Company Preview Report

A synopsis of a company’s performance compared to its industry peers.

Available for all subscriptions except Risk Monitoring.

Download Risk Summary Report

Highlights the worst performing, critical areas for this company relative to Bitsight-recommended peers, which are composed of 100 of the most similar peers based on industry, description, and size.

NIST CSF Report

A high-level summary of an organization's compliance with the US National Institute of Standards and Technology's cybersecurity Framework using Bitsight data as evidence.

ISO/IEC 27001 Report

A high-level summary of the selected company’s compliance with ISO/IEC 27001:2013 using Bitsight data as supporting evidence for compliance.

Assessments

Use assessment reporting for this company. Learn more:

  • May 6, 2026: Ratings Details page has been renamed to Risk Vectors
  • October 29, 2024: Separated Security Posture Management content to its own page.
  • March 14, 2023: Insurance app navigation instructions.
  • November 11, 2021: Continuous Monitoring app navigation instructions.
Was this article helpful?
1 out of 1 found this helpful

Comments

0 comments

Please sign in to leave a comment.