Findings

Status: OpenACME Corp
312 open findings 22 Critical 71 High 164 Medium 55 Low

Open findings · triage queue

Schedule report →
SeverityFindingAssetMapped controlSourceStatusAge
CriticalMFA not enforced for privileged cloud accessEntra ID · 6 rolesNIST PR.AA-03Microsoft Entra IDOpen2d
CriticalUnencrypted patient data in a legacy datastorelegacy-reporting-dbHIPAA §164.312AWS KMS auditOpen8d
HighQuarterly access reviews are 9 months overdueIdP privileged grantsSOC 2 CC6.2RiskTape workflowTriaged9mo
CriticalPublic S3 bucket exposes PIIs3://acme-billingNIST PR.DS-01AWS Security HubOpen3h
CriticalUnpatched critical CVE-2026-3148k8s-node-7CIS 7.3Tenable.ioOpen6h
HighEDR missing on 12 endpointsmultipleCIS 10.1CrowdStrikeOpen1d
HighDormant privileged account activesvc-legacyCIS 5.3Microsoft Entra IDOpen2d
MediumTLS 1.0 enabled on edge firewallfw-edge-01NIST PR.DS-02Recon scannerMitigating2d
Showing the top 8 of 312 — open any finding to drill into root cause, exposure, and the fix.