Security Score Categories
There are six different score categories. Most security aspects of a workload are taken into account to come up with these categories.
-
Vulnerability Score: Vulnerabilities in the installed packages on a workload are used for scoring.
-
Process Hash Score: Process hash consistency (and anomaly) along with Benign and Flagged process hashes is used for scoring.
-
Attack Surface Score: Process may have one or more ports open on multiple interfaces to make services available. Unused open ports are used for scoring.
-
Forensics Score: Severity of forensic events on a workload is used for scoring.
-
Network Anomaly Score: Severity of network anomaly events on a workload is used for scoring.
-
Segmentation Compliance Score: Compliance (permitted) and violations (escaped) to automatically discovered policies is used for scoring.