Vulnerability Dashboard
Real-time visibility. Smarter prioritization. Faster remediation.
Patch Status
Vulnerabilities by OS
Vulnerabilities by Severity
Vulnerabilities by Asset Type
Vulnerabilities by Business Unit
Vulnerabilities by Environment
Vulnerability Status
Vulnerabilities Over Time
Last Updated: just now
ℹ️ Risk Score is a weighted calculation of all factors. Click a tile for details and recommended actions.
Attack Graph emphasizes the highest-probability complete route to a crown jewel. Select an alternate path without moving nodes; use the filters to narrow the authorized model result.
Attack Path Visualization
Crown Jewel
High Risk
Internet-Facing
Internal
Low Risk
Attack Paths to Crown Jewels
| Source | Target | Hops | Probability | Path |
|---|
Risk Heatmap shows server-assigned endpoint risk from the latest completed model run. Tiles remain sorted by risk and open the endpoint report and remediation plan.
Risk Heatmap
Alert Rationalization ranks persisted decisions by computed criticality and crown-jewel impact. Incomplete alerts are never silently suppressed; they are marked Needs Review.
Rationalized Alerts
Assets are the network endpoints in your environment. Click "+ Add Asset" to register servers, VMs, containers, or network devices. Include the hostname, IP, OS info, and sensitivity label. The graph engine uses assets to compute attack paths.
Asset Inventory
| Hostname | IP Address | Type | OS | Sensitivity | EDR | Credential | Actions |
|---|
Vulnerabilities are CVE findings from your scanner tools (Qualys, Nessus, etc.). Click "+ Add Vulnerability" and link each CVE to an asset. Include CVSS base score, EPSS probability, severity, and exploit/patch status. These feed directly into the risk scoring engine.
Vulnerability Findings
| CVE ID | Asset | CVSS | EPSS | Severity | Exploit | Patch | Scanner | Actions |
|---|
Identities are the user accounts, service accounts, and managed identities in your environment. These feed the Identity Surface (IDSurf) score — a key factor in attack path probability. Privileged accounts without MFA create high-risk pivot vectors.
Identity Inventory
| Principal Name | Display Name | Type | Privileged | MFA | Risk Level | Actions |
|---|
What-If Simulator lets you test remediation actions before deploying them. Add actions like patch_vulnerability, add_segmentation, isolate_endpoint etc., then hit Run Simulation. Compare before/after risk scores and ROI to prioritize budget.
What-If Remediation Simulator
SOAR Playbooks auto-generate incident response runbooks for any compromised endpoint. Select an asset, generate the playbook, then export to XSOAR, Splunk SOAR, or Microsoft Sentinel.
Generate Containment Playbook
Integrations let you connect your existing security scanners to GuardiaGraph. Just pick a scanner name — we handle the rest. Data from your scanners feeds directly into the ML-powered risk scoring engine.
📄
CSV Export
Risk scores, paths, choke points
📋
JSON Export
Full structured data
📑
PDF Report
Executive summary report