Findings card

The Findings card displays information about the selected finding. On this card you can see the following information.

Note

The information in this card is context specific, therefore some sections are not available for all findings.

SectionDescription
HeaderFinding ID, name, category (such as, Vulnerability or Compliance), time created, and time updated.
DescriptionReason that the finding was created.
ImpactInformation about the possible impact of the finding on your system.
Asset

Name and type of the affected asset.

To investigate the asset, click on the asset name to open a new tab displaying the asset card.

Detection logicDetection rule that identified the specific security risk, configuration gap, or malicious behavior generating the finding.
Compliance

Violated compliance standards and specific framework controls associated with the finding.

Click the expand icon to see a list of all standards associated with the finding and a granular breakdown of specific controls breached under each standard.

License Note

Requires Cortex XSIAM Premium or the Cortex Cloud Posture Management or Cortex Cloud Runtime Security add-on.

EvidenceVisualization of the finding in your environment.
DataNormalized finding data.