Split your project into components to easily meet your reporting and mitigation requirements
What are Project Components?
Sometimes pentest projects can end up with a complex scope. When testing one application, your scope could include:
Web Application
Mobile Application
External Network
If you have separate teams responsible for each component, splitting your reported vulnerabilities manually can be a lot of work. After you've identified which issues belong to each component, you can't simply send a separate report to each team for mitigation. This is where Project Components comes in.
How Project Components Help
During the kickoff call, we will ask you about splitting your project into components. We will use the component breakdown above as an example, but you can discuss any component breakdown with the testing team. Once confirmed, we will identify which component each vulnerability belongs to during the testing phase. This results in your vulnerabilities being neatly categorized upon report delivery.
How to use Project Components in Portal
Once you define project components with the testing team, they will show up in Portal after your pentest report is delivered.
Project Overview Page
The component filter will appear on the Project Overview page. When you select a component, the overview page contents will be filtered to only display a summary for vulnerabilities belonging to the selected component(s).
Vulnerability Details Page
Each vulnerability will display its associated component(s), and a component filter is available for the table.
Reports & Certificates Page
To inquire about upgrading your Portal package, speak with sales.
On the Reports & Certificates page, the Component filter appears above the most recent pentest. Selecting a component from this filter will display only pentests that contain vulnerabilities related to the selected component and generate a new filtered vulnerability summary.
Use the component filter in combination with the report or certificate download button to generate a report containing only the vulnerabilities from a selected component.