How to check how well software complies with standards | Fluid Attacks

Check your compliance with standards

This section shows the compliance of all standards validated by Fluid Attacks at the organization and group level.

There are two tabs: Overview and Standards. In the latter, you can generate reports of the requirements pending implementation in your groups to achieve full compliance.

Compliance section

See an overview of your compliance

Role requirement info
Role required: User, Vulnerability Manager or User Manager

In the Overview tab of the Compliance section you can see how the standards are being applied at your organization. The following information is provided:

Overview table

  • Organization compliance:
    • Compliance level of: This metric shows us an average of how well the organization is complying with the application of standards in general.
    • Weekly trend: It shows the week's trend that the organization had in applying standards, which can go up, down, or neutral.
    • ET to full compliance: Estimated time it takes the organization to remediate vulnerabilities.
  • Standard with lowest compliance:
    • Name of the standard that is being least complied with in the organization.
    • Compliance level of standard: This metric refers to the percentage of compliance with the Standard with lowest compliance.
  • Benchmark: The list of all the standards validated by Fluid Attacks, showing the compliance with these standards of the best, the worst, and the average organization compared to yours.

Check compliance with standards in your groups

Role requirement info
Role required: User, Vulnerability Manager or User Manager

In the Standards tab of the Compliance section, you can see the standard compliance information at the group level. To select which group you want to know this information about, click on the drop-down menu. There it will list all the groups to which you have access.

Standards

By selecting the group of interest, you will see the standards that are not met in this group, listing the requirements that have not been met.

Group of interest

Download reports of requirements needed to reach compliance

Role requirement info
Role required: User, Vulnerability Manager or User Manager
In the Standards tab of the Compliance section, you can download a report of your software's noncompliance with standards by clicking on Generate report.

Generate Report

When you click on the button, you will get a verification code. To get the code you can receive it via SMS, call or WhatsApp. Make sure to register your phone to the platform to be able to request reports.

Verification code

Entering the code will download the report at the group level, listing the standards that you are not applying.