PC Reporting - Control Criticality Values

Question asked by Colin Riddell on Jun 25, 2015
Latest reply on Mar 1, 2017 by Tim White

when running host based PC reports there is a nice pie chart delivered which details the control pass and failures and their criticality ratings. This is great for managing remediation activities as effort can be focused on the most critical control failures.


The question is, how are the control failure criticality levels derived for each control (Urgent - Undefined)? If anyone can point me to the relevant information or explain the rationale in use that would be much appreciated.