Display TruRisk Details
Understanding Qualys TruRiskTM
Qualys TruRisk™ enables companies to prioritize vulnerabilities and assets by assessing the risks they pose to infrastructure. It quantifies cyber risk to reduce exposure, track risk reduction trends, and enhance the overall effectiveness of cybersecurity programs.
Qualys TruRisk™ is a risk-based vulnerability management solution designed to assess and prioritize vulnerabilities based on real-world risk to the business. Unlike traditional systems that rely solely on technical severity metrics, TruRisk considers factors such as asset criticality, business context, exposure, and potential impact.
TruRisk combines technical factors such as severity and exploitability with business context (for example, asset value, exposure, and impact). This ensures that vulnerabilities are prioritized based on their actual risk, rather than purely technical scores like CVSS.
TruRisk™ details can be viewed in the Posture tab. Once in the Posture tab, users can select either Controls (to view QDS) or Assets (to view the Criticality score and the TruRisk Score) based on their requirement.
Accessing QDS, Criticality, and TruRisk Details
Use the following options to navigate to QDS, Criticality, or TruRisk details: