View Remediation Maturity Details

The following feature is not supported in Tenable.io Federal Risk and Authorization Management Program (FedRAMP) environments. For more information, see the FedRAMP Product Offering.

Required Additional License: Tenable Lumin

Required Tenable.io Vulnerability Management User Role: Basic, Scan Operator, Standard, Scan Manager, or Administrator

Tenable calculates a dynamic Remediation Maturity grade that represents your overall vulnerability remediation responsiveness and coverage. For more information, see Remediation Maturity.

For a demonstration on Remediation Maturity, see the following video:

Note: Feature description begins at 2:50.

To view Remediation Maturity details for all assets:

  1. Navigate to the new Tenable.io interface, as described in Access the New Interface.

  2. In the upper-left corner, click the Menu button.

    The left navigation plane appears.

  3. In the left navigation plane, click Remediation Maturity.

    The Remediation Maturity page appears.

  4. (Optional) To change the tag filter applied to the page, in the upper left corner, select a tag from the drop-down list.

    Lumin filters the page by the tag you selected.

Note: All Lumin data reflects all assets within the organization's Tenable.io instance.

Section or Widget Timeframe Assets Action
Summary Past 90 days Licensed assets

This section summarizes your Remediation Maturity grade, compared to Tenable customers in your Salesforce industry and the larger population.

  • View a visual representation of your Remediation Maturity compared to the average Remediation Maturity for Tenable customers in your Salesforce industry and the larger population.

  • To view a list of your licensed assets impacting your Remediation Maturity grade, click <count> Licensed Assets.

    The Assets page appears, filtered by licensed assets and the past 90 days. For more information, see View Assets.

  • To view a list of your unlicensed assets that do not impact your Remediation Maturity grade, click <count> Not Licensed.

    The Assets page appears, filtered by unlicensed assets and the past 90 days. For more information, see View Assets.

Maturity Score Trend

How is your Remediation Maturity grade changing over time?

Past 90 days at each point on the graph, recalculated daily Licensed assets

This widget graphs the increases and decreases to your Remediation Maturity grade and to the average Remediation Maturity grade for Tenable customers in your Salesforce industry and the larger population.

  • To view details about a Remediation Maturity grade on a specific date, hover over a point on the graph.

  • To show or hide data for your organization, the industry, or the population, click the boxes in the graph legend.

    The system updates the widget to show or hide the data you selected.

Recommended Actions

What general actions can you take to improve your remediation health?

Past 90 days Licensed assets

This widget provides Tenable-recommended best practices to improve your remediation health.

  • Review your recommended best practices.
  • To take action, click the link in the description.
Remediation Responsiveness Grade

How quickly are you remediating vulnerabilities?

Past 90 days Licensed assets

This widget summarizes the Remediation Maturity remediation responsiveness grade for your entire organization, compared to Tenable customers in your Salesforce industry and the larger population.

Tip: Tenable calculates your remediation responsiveness grade based on your:

  • Average remediation time since discovery — How long do you take to remediate a vulnerability after it is first discovered (the First Seen date)?
  • Average remediation time since publication — How long do you take to remediate a vulnerability after a plugin is first made available (the Plugin Publication date)?
  • View a visual representation of your remediation responsiveness grade compared to the average remediation responsiveness grade for Tenable customers in your Salesforce industry and the larger population.

  • View a summary statement about whether your remediation responsiveness grade recently increased or decreased.
Average Remediation Time Since Discovery

How long does it take you to remediate a vulnerability after it is first discovered (the First Seen date)?

 

Past 90 days Licensed assets

This widget graphs the average time, in days, you took to remediate vulnerabilities in each VPR category after the vulnerability was first discovered, compared to Tenable customers in your Salesforce industry and the larger population.

  • To view details about the average time for a specific VPR category, hover over a point on the graph.

  • To show or hide data for your organization, the industry, or the population, click the boxes in the graph legend.

    The system updates the widget to show or hide the data you selected.

Average Remediation Time Since Publication

How long does it take you to remediate a vulnerability after a plugin is first made available (the Plugin Publication date)?

Past 90 days Licensed assets

This widget graphs the average time, in days, you took to remediate vulnerabilities in each VPR category after a plugin was first made available, compared to Tenable customers in your Salesforce industry and the larger population.

  • To view details about the average time for a specific VPR category, hover over a point on the graph.

  • To show or hide data for your organization, the industry, or the population, click the boxes in the graph legend.

    The system updates the widget to show or hide the data you selected.

Remediation Coverage Grade

How thoroughly are you remediating vulnerabilities?

Past 90 days Licensed assets

This widget summarizes the Remediation Maturity remediation coverage grade for your entire organization, compared to Tenable customers in your Salesforce industry and the larger population.

Tip: Tenable calculates your remediation coverage grade based on your:

  • Vulnerability remediation percentage — What percentage of vulnerabilities are remediated on your assets?
  • Average vulnerabilities per asset — How many vulnerabilities are discovered on your assets?
  • View a visual representation of your remediation coverage grade compared to the average remediation coverage grade for Tenable customers in your Salesforce industry and the larger population.

  • View a summary statement about whether your remediation coverage grade recently increased or decreased.
Remediation Coverage

What percentage of your vulnerabilities are remediated?

Past 90 days Licensed assets

This widget graphs the percentage of your vulnerabilities that are remediated (fixed) in each VPR category, compared to Tenable customers in your Salesforce industry and the larger population.

  • To view details about the percentage for a specific VPR category, hover over a point on the graph.

  • To show or hide data for your organization, the industry, or the population, click the boxes in the graph legend.

    The system updates the widget to show or hide the data you selected.

Average Vulnerabilities Per Asset

How many vulnerabilities, on average, are present on an asset?

Past 90 days Licensed assets

This widget graphs the average number of vulnerabilities (active, fixed, or resurfaced) in each VPR category present on your assets, compared to Tenable customers in your Salesforce industry and the larger population.

  • To view details about the count for a specific VPR category, hover over a point on the graph.

  • To show or hide data for your organization, the industry, or the population, click the boxes in the graph legend.

    The system updates the widget to show or hide the data you selected.