8.3 Evaluating Endpoints with a Dynamic Report

Dynamic reports align with three categories:

For more information, see the Help in the Web console.

8.3.1 Snapshot Report - Evaluating Your Endpoints

Snapshot reports provide a high-level view of the state of risk and compliance for the specified endpoints or groups of endpoints, based on the selected endpoints. The report content is similar to the Asset Status view. However, the report focuses on the specific policy templates and endpoints rather than your entire set of assets.

While a Snapshot report contains the results of all the policy templates specified in the report definition, the Overview and Endpoints views display only the results for one policy template at a time. To help you identify endpoints that failed the policy template, the report lists the endpoints at risk. To determine which settings need to be corrected, you can select the high risk endpoints then view details of the security checks that they failed.

8.3.2 Compliance Report - Evaluating Your Endpoints

Compliance reports help you determine how the specified endpoints or groups of endpoints comply with your organization’s security policies and technical standards.

Identify Security Policies that Need Attention

In a compliance-based dynamic report, the Policy Templates view lists the combined results for all endpoints per policy template, so you can identify which security policies need the most attention.

For example, the report contains the results for Password Strength, PCI DSS, and CIS Benchmark policy templates run in the last 30 days on your financial servers. You can see that the Password Strength and CIS Benchmark policy templates are In Compliance, but the PCI DSS policy template is Out of Compliance. Now you can investigate your processes and endpoints that caused the non-compliant state.

Compare Compliance Results by Endpoint

The Endpoints view lists the compliance status of your endpoints for all policy templates in the report. This can help you compare known, good endpoints with new or questionable endpoints.

If you run the policy templates regularly for the selected endpoints, the report can display a trend graph that indicates changes in compliance over time.

8.3.3 Risk Report - Evaluating Your Endpoints

Risk reports help you determine whether the specified endpoints or groups of endpoints, pose a high, medium, or low security risk to your environment.

By default, the report lists the policy templates that report the highest level of risk, based on endpoint importance. You can select a policy template, then drill down to the specific endpoints to identify where they pose high, medium, and low risks in your environment.