Compare Completed MDISS/MDM Assessments

Ulla Tanskanen -

To Compare Completed MDISS Assessment Report to other assessments (e.g., Organization, Community, or MDM) for the same device: 

1. Log in to MDRAP ACCOUNT LOGIN.

2. On the MDRAP Home page, click on Go to Assessments/View Existing Assessments icon or click on Assessments tab on the blue navigation bar across the top screen. 

3. The list of assessments for your organization will be displayed. 

4. To compare Completed MDISS assessments, scroll to the Completed Assessment on the list, and click on the Compare icon (highlighted in yellow in the screenshot below) to the right of the Assessment selected for comparison. Note: When viewing the list of assessments for your organization, the Compare Assessment icon is only displayed for those devices that have Organization, Community or MDM assessments for comparison.

5. A pop-up box will be displayed giving HDO users the option to compare against their own Organization's Assessment/s, Average of the Community Assessments, or Manufacturer Assessment.

6. When comparing assessments against the Community Assessments, the default is set to exclude the user's organization's shared assessment; however, the default can be changed by the user by clicking on the checkbox next to Community Assessments to set the comparison to include the organization's shared assessments. 

7. HDO users can select the Assessment they want to compare the choices listed. The Community Assessments comparison will include the user's organization's shared assessments as the check mark indicates in the selection made in the screenshot below.

8. After clicking on the green COMPARE button at the bottom of the box, a new screen will be displayed showing the comparison graphic for risk scores. The single aggregated risk score is displayed below the Assessment and Device Name (i.e., Score: 9.03). The HDO's assessment scores for that particular device are shown in the colored circles, the comparison assessment scores are shown in the colored squares, and the comparison scores are presented side-by-side below the graph (i.e., Your Assessment, Community Assessments), along with the system-generated notes for each of the security control categories.

9. The results graphical view has the option to filter out any Control Category/Categories from the graphical display by clicking on the Control Category (filter designated by non-filled circles across the top of the graphic below Risk Scores. In the screenshot below, the Audit Controls, Person Authentication, and Cyber Security Product Upgrades controls are filtered out. In addition, the graphical view indicates how many assessments are compared as shown below the Community Assessments heading below the graph.

10. If the selection has no assessments for comparison, a note will be displayed below the choice indicating that there are no Assessments found for comparison in that option for the device selected (e.g., there are no Manufacturer Assessments for the device selected for comparison in the screenshot below). 

11. MDM users will have a compare icon for all completed/submitted MDM assessments as shown in the screenshot below. Note: When viewing the list of assessments for your organization, the Compare Assessment icon is only displayed for those devices that have Organization, Community or MDM assessments for comparison.

12. After clicking on the Compare icon, a pop-up screen is displayed giving MDM users the option to compare against the available assessments (i.e., their own Organization's Assessment/s or Average of the Community assessments). The default is set to exclude the user's organization's shared assessment; however, the default can be changed by the user by clicking on the checkbox next to Community Assessments to set the comparison to include the organization's shared assessments. In the example below, the MDM is comparing their assessment to the available Community Assessments and has changed the default to include their organization's shared assessments in the comparison.

13. After clicking on the green COMPARE button at the bottom of the pop-up box, a new screen will be displayed showing the comparison graphic for risk scores. The single aggregated risk score is displayed below the Assessment and Device Name (i.e., Score: 14.82).The MDM's assessment scores are shown in the colored circles, the comparison average assessment scores are shown in the colored squares, and the comparison scores are presented side-by-side below the graph (i.e., Your Assessment, Community Assessments), along with the system-generated notes for each of the security control categories.

14. The results graphical view for MDM users also has the option to filter out any Control Category/Categories from the graphical display by clicking on the Control Category (filter designated by non-filled circles across the top of the graphic below Risk Scores). In the screenshot below, the Automatic Logoff, Cyber Security Product Upgrades, Malware Detection/Protection, Person Authentication, and  System and Application Hardening controls are filtered out. In addition, the graphical view indicates how many assessments are compared as shown below the Community Assessments heading under the graph.

Have more questions? Submit a request

0 Comments

Please sign in to leave a comment.