Compliance Checks
Compliance checks are used to assess the adherence of your environments to various security and regulatory standards. Each check evaluates a specific aspect of your environment. Checks are tied to the NIST 800-53 framework and specific control IDs within NIST. Their status can either be:
- Passed
- Failed
- Warning
- Error
- Skipped
Viewing Compliance Checks
One can see a list of compliance checks on the Security Dashboard, or the dedicated Compliance Table. The aforementioned table shows the framework, asset its tied to, scan it came from, the method, and on failure to pass, the remediation needed to achieve a passing status. Clicking on the ID will lead the user to the detail page.
Detail
The detail view of a compliance check lists the control ID, framework, and status of the check. It also has information on the Method and Remediation provided, as well as Lifecycle options. Admins can update the Lifecycle status.
