18F / fedramp-automation

FedRAMP Automation
14 stars 6 forks source link

SAR: Identified Vulnerabilities - 4.7.1, 4.7.2 #663

Open markXLIX opened 1 year ago

markXLIX commented 1 year ago

Extended Description As an ASAP Developer, in order to reduce time FedRAMP reviewers require to ensure all risk-metric fields are properly identified, I want to check the Discovery Scans and Identified Vulnerabilities of an OSCAL SAR.

Preconditions Ensure that Issue 662 is complete and correct. It is possible only minor tweaks are required to complete these sections.

Acceptance Criteria

Definition of Done