Vulnerability Scanner
DISA Gold Disk Scan Connector
The DISA Gold Disk Scan Connector imports DISA checks
from DISA scanner and fails the corresponding STIG control in
Agiliance RiskVision. This will automatically test some of the
controls from 8500.1 and 8500.2, automating the
8500 certification process. IT entities, STIG controls, and results
will be imported by The DISA Gold Disk Scan Connector.
eEye Retina Network Security Scanner Connector
This Connector not only imports system vulnerability
information from Retina but also creates computer entities
in Agiliance RiskVision. Retina vulnerabilities have STIG
information which will be mapped to corresponding controls
in Agiliance and controls will be failed. Based on eEye Retina
output, Agiliance RiskVision can automatically pass or fail the
corresponding STIG controls based on the imported results.
Agiliance RiskVision also maps imported vulnerabilities against
the NVDB database, based on CVE ID, and assigns a CVSS score
to the vulnerability.
HP WebInspect Connector
HP WebInpsect is an application scanner, identifying all
application-related vulnerabilities. The Agiliance RiskVision
HP WebInspect Connector imports the application assets
and application vulnerabilities from WebInspect results in the
application inventory. Vulnerabilities are mapped to the National
Vulnerability Database (NVD) based on CVE ID, and the CVSS
score is assigned from NVD.
IBM Rational AppScan Connector
IBM Rational AppScan is an application scanner that identifies
all application related vulnerabilities. The Agiliance RiskVision
AppScan Connector imports application assets from AppScan
results in the application inventory. Along with the application,
it will also import all the vulnerabilities for those applications.
Vulnerabilities are mapped to National Vulnerability Database
(NVD). If a vulnerability has CVE ID, then the CVSS score is
assigned to the vulnerability from the NVD database.
McAfee Vulnerability Manager (Foundstone) Connector
The Agiliance McAfee Vulnerability Manager Connector
imports IT entities from vulnerability scan results along with
vulnerabilities for those assets. Scanning is one of the quickest
methods to gather IT asset inventory such as applications,
servers, and desktops. IT assets are attached to
vulnerability results.
nCircle IP360 for Vulnerability Management Connector
The Agiliance nCircle IP360 for Vulnerability Management Connector imports vulnerabilities from
nCircle output along with other vulnerability details including,
but not limited to, severity, description, and CVE ID. These
vulnerabilities are attached to IT entities such as routers,
switches, and servers. The CVSS score is displayed along
with the vulnerability. Businesses can prioritize vulnerability
mitigation tasks based on asset criticality and a vulnerability
severity matrix. IT assets are created from the output results
in RiskVision.
QualysGuard Vulnerability Management Connector
The QualysGuard Vulnerability Management Connector
connects to a Qualys site, imports vulnerability data, and
automatically assigns it to underlying IT assets. Vulnerabilities
with a CVE-ID will be assigned a CVSS score from NVD database.
One can prioritize and assign remediation tasks for the
vulnerabilities on a given asset based on asset criticality and
vulnerability severity.
Rapid7 NeXpose Connector
The Agiliance Rapid7 NeXpose Connector imports assets and vulnerabilities from Rapid7 NeXpose into Agiliance RiskVision. Additionally, the Rapid7 NeXpose Connector is able to import asset sites and groups maintained in Rapid7 NeXpose into Agiliance RiskVision and transfer those relationships into the Agiliance RiskVision entity hierarchy so that the asset relationships defined in Rapid7 NeXpose are retained. The resulting data within Agiliance RiskVision can be used for compliance, threat and vulnerability management, risk management, and reporting, as well as analytics.
RedSeal Vulnerability Advisor Connector
The RedSeal Vulnerability Advisor Connector imports asset data (including asset attributes and classification) and vulnerability data into Agiliance RiskVision and automatically assigns vulnerabilities to assets. If a vulnerability has a CVE ID, then the CVSS score is assigned to the vulnerability from the National Vulnerability Database (NVD) database.
Skybox Risk Exposure Analyzer Connector
Skybox adjusts the vulnerability reported by multiple
scanners based on network topology and Agiliance RiskVision
leverages the vulnerability severity information received from
Skybox. These vulnerabilities with entity criticality allow easy
prioritization of vulnerabilities for mitigation. All Skybox specific
information, including but not limited to IT assets, is
imported into Agiliance RiskVision by the connector.
Tenable Nessus Connector
The Agiliance Tenable Nessus Connector imports vulnerabilities
from Tenable vulnerability results, allowing security officers to
mitigate and prioritize vulnerabilities based on vulnerability
severity and asset criticality. Vulnerabilities with aCVE ID will be
assigned a CVSS score from NVD database.