Project Overview
An asset-defense platform that combines security scanning, findings management, risk assessment, and an approval workflow.
Problem Addressed
Security teams need a unified view of asset risk with a clear approval path before any defensive action is executed.
My Role
I designed and built the scanning logic, the risk-scoring model, the approval workflow, and its connection to the audit trail.
How It Works
The workflow starts by registering an asset and adding it to a group, then assigning it a defense policy. A scan is run and its findings recorded, a risk score is calculated from those findings, and related recommendations are issued. When a defensive action is needed, it goes through the approval center for sign-off before execution, and every step is recorded in an append-only audit trail.
What I Implemented
- Asset registration and asset groups
- Configurable defense policies
- Security scanning and findings recording
- Risk scoring and recommendations
- An approval center before defensive commands run
- An append-only audit trail
Technologies Used
Current Status
Active development