All Collections
Risk Scores
How are risk scores calculated?
How are risk scores calculated?
Nick Hemenway avatar
Written by Nick Hemenway
Updated over a week ago

Risk scores are calculated on the following factors to provide a comprehensive analysis of your account.

Issue severity

We rate detected issues using a 1-5 severity level scale. Risk points are assigned for each severity level as follows:

Severity 5, +600 risk points

An attacker can take full control.

Severity 4, +300 risk points

An attacker can access critical data.

Severity 3, +100 risk points

An attacker can access sensitive data.

Severity 2, +25 risk points

An attacker can access configuration data.

Severity 1, +10 risk points

An attacker can access unnecessary data.

Open ports

An attack is more likely to happen when your perimeter has more open ports than the average organization. We add 25 risk points per open port.

Use the risk score calculator in your account to get a better understanding of potential risk and how that might impact you. Input custom values into the calculator to explore different risk situations and quickly see the expected risk score projection.

Did this answer your question?