CyberSage, Threat Modeling Automation
Security Risk Rating Automation
CyberSage automates the Operation Risk Management (ORM) Risk Rating methodology. The Threat Modeling engine automatically calculate risk rating for security weakness identified by Threat Modeling.
ORM risk rating matrix
Risk Rating Data Source
Impact
Likelihood
Automation in Customizing Risk Rating
Users are able to customize the risk rating to contextualize the final risk rating appropriate for the enterprise’s business and risk profile.
When user update the application’s inherent risk profile, the impact gets updated automatically. And the change in impact influences the final risk rating through the ORM matrix.
Users can also request to have customized impact analysis engine to reflect the enterprise’s unique business model and risk profile. This will also create customized risk rating.