Skip to main content

Dashboards

Dashboards summarise what the rest of the CyberOptix CTEM Platform holds. They answer "how are we doing?" rather than "what do I fix?" - the second question belongs in Findings.

Executive Overview​

The default dashboard, and the one to send to someone who does not log in daily.

It draws on every section you have enabled, so what it shows depends on what you have connected: attack surface discovery, cloud posture, application and identity exposure, and security operations where those are in use.

Screenshot pending

SCREENSHOT: the Executive Overview dashboard.

Reading it​

It is a trend instrument, not a work queue. A single snapshot tells you very little - every organization has open findings. What matters is direction: is the count falling, is the average age of an open finding rising, is new exposure appearing faster than it is closed.

Two things worth watching more than the headline number:

  • Overdue against SLA, rather than total open. Total open reflects how much you scan; overdue reflects whether you are keeping up. See Remediation and SLAs.
  • Age of the oldest open Critical. One number, hard to argue with, and it moves only when someone actually does something.

Scope it before you read it​

Dashboards respect the same scoping as everything else. An organization-wide dashboard shown to eight teams is read by none of them; the same dashboard scoped to a business unit is a thing that team can act on. See Organizations, business units, and zones.

Reporting rather than watching​

For anything that needs to leave the platform - a board pack, an auditor, a client - use Reports. A scheduled report delivers the same view on a cadence, which is what makes a trend legible over months.

API​

The endpoints behind this section are in the API reference.

Next​