Prioritization Funnels
Last updated
Last updated
Xygeni’s Prioritization Funnels helps you to easily filter and identify those issues most relevant, helping you to concentrate on “fixing what matters”.
Given a full set of security issues, Prioritization Funnels allows you to specify “prioritization criteria” that will be automatically applied to the full set of issues, discarding those issues that don’t meet the criteria. The resulting set after applying the criteria will contain the most important issues to remediate.
Xygeni’s Prioritization Funnels are available for any kind of security risks and are available under the Risks sections and clicking on the Prioritization funnel button .
As you can see in the above example image, after applying some prioritization criteria, the initial 8,450 issues are reduced to 329.
The principal funnel (feed with all types of risks) is available at All Risks menu option (at the top-left). But you can also find risk-specific funnels under any “Risk” option in the different products available at the left-menu (Risks (SAST), Risks (SCA), Risks (CI/CD), Secrets and Infrastructure as code) .
Xygeni comes with some out-of-the-box predefined Funnels
At the top filters of any funnel, click on “Funnel” filter and the available funnels are displayed:
** Xygeni General Prioritization
** Xygeni CI/CD Prioritization
** Xygeni IaC Prioritization
** Xygeni SAST Prioritization
** Xygeni Secrets Prioritization
Out-of-the-box funnels are preceded with ** to differentiate to Custom Funnels and cannot be modified.
Select anyone and the funnel will be refreshed with the new criteria.
By default, the funnel will be displayed based on “Severity”, i.e. it will show data grouped by severity (Critical, High, etc.). But (by clicking on “Split by” filter), you can switch the graphics to be based on Category (Malicious Code, IaC, Secrets, CI/CD, Open Source, etc)
You can even further filter by selecting specific Categories
At the bottom of the page, there is a filter box where you can select which issues you want to see.
One of them is Funnel Phase, which allows you to filter by any specific funnel criteria. If you select any of them, the issues list will contain the items filtered until the selected criteria
Once you select one of the funnel phases, the table will list the issues contained into the selected phase. Then, you can further refine your search by selecting additional filters.