Skip to main content

Procedure

  1. Identify and remediate the active risk factor.
  2. Open the Risk factor details page for the risk factor.
  3. Review the Recommendation section.
  4. Follow the recommended actions to properly configure the affected system, application, security control, or user process.
  5. Verify that the remediation has been successfully applied and that the risk factor status changes to Remediated after updated probe results are received.
  6. Where applicable, implement additional preventive measures such as:
    • Security configuration hardening
    • Policy enforcement
    • Access restrictions
    • Endpoint protection settings
    • Operating system or application updates
    • Monitoring and alerting mechanisms
  7. Educate affected users about the cause of the risk and the actions required to avoid triggering it again.
  8. Periodically review endpoint health, policy compliance, and risk factor history to ensure the risk does not reappear.

Key Considerations

  • Remediation resolves an existing issue, but prevention reduces the likelihood of the issue occurring again.
  • The Recommendation section on the Risk factor details page contains the most accurate guidance for preventing a specific risk from reoccurring.
  • Many recurring risks are caused by user actions, misconfigurations, or process deviations. User awareness and training are often as important as technical controls.
  • Do not overlook user education. For many risk factors, educating users on secure behavior and organizational policies is a critical component of long-term risk reduction.
  • Periodic monitoring helps ensure that changes remain effective and that previously remediated risks do not become active again.

Risk factor details

View detailed information about a risk factor, including its detection history, affected endpoints, associated policies and controls, and more.

Remediation and recommendations

View detailed remediation instructions and security recommendations for each risk factor to help resolve identified issues and reduce future risk.