Investigating Risk Types

This guide will help you use Bastion to understand risk across your organization’s environments.


Overview

Bastion's Risk Types tab.

The Risk Types page is part of Bastion’s cross-environment dashboard, where you can view and understand risk across multiple environments at high scale. The Risk Types page shows the open high-severity and critical-severity Issues across your environments, categorized by the kind of risk they represent.

A Risk Type is a classification of Issue types into one of the following categories: Critical Risks, Cloud, Network, Application, Infrastructure, and OSINT. By monitoring where in your enterprise you may have certain kinds of risk, you can deploy resources towards resolving them at a larger scale.

All issues shown on the Risk Types page are critical or high severity issues. Medium, low, or info severity issues are filtered out.

Risks by Type

The rest of the page is organized into cards for Application, Infra, Network, Cloud, and Other risks.

Click into line items in each category to expand them and see details.

You can explore Risk Types by looking at:

  • Most common issues within each risk type
  • The environments which have that risk type
  • The change in the prevalence of issues over the last week
  • The 12 week trend in your enterprise
Switch to Trends views.
View Trends.

Switch from the Issues view to the Trends view to see the long-term trends for how the prevalence of each risk type has evolved over time.