mitre / heimdall2

Heimdall Enterprise Server 2 lets you view, store, and compare automated security control scan results.
Other
206 stars 61 forks source link

Add a DoD CCRI Technical Risk Status to Heimdall overview #5542

Open em-c-rod opened 8 months ago

em-c-rod commented 8 months ago

Is your feature request related to a problem? Please describe. To describe the DoD CCRI Technical Risk of a system based on a set of loaded results in Heimdall, I have to manually count and categorize the status of failed controls and then make something to show the results visually.

Describe the solution you'd like Whenever a set of results are loaded, show a visual label and color somewhere in the overview section (could be an extra box, banner, or even a pop up) that shows the calculated DoD CCRI Technical Risk level of the system based on the failed controls and the criticality.

Screenshot 2024-02-14 at 12 09 22 PM
em-c-rod commented 7 months ago

@georgedias Feel free to share what you think the UI could look like. @drclphibbs Let us know what the follow up is on how this relates to our current compliance display