Risk rollups
How a tool's score on each laptop becomes one company-wide score, how laptops and the organization get a level, and the exact formula.
The scanner scores each tool on each laptop separately. The console then combines those copies into the numbers you see on Inventory, Endpoints, and Insights. This page explains that combining step. For how a single score is built, see How risk is calculated.
From one laptop to the company
The scanner scores each tool on each laptop separately, because the same tool can be set up safely on one laptop and badly on another. The console then combines the copies.
| Laptops with the tool | Company-wide score |
|---|---|
| 1 | That laptop’s score |
| 2 to 9 | The highest score among them |
| 10 or more | A high-end typical score (the 80th percentile). If at least 1 in 10 copies is Critical, a higher cut is used |
Only laptops active in the last 7 days count. A laptop’s own risk level is the worst level among its tools. The Insights numbers weight each tool by how many laptops it is on.
The formula
For readers who want the exact math.
I = policy score / 10, for each failed policy
G = the highest I within each risk group
L = 1.00 × G1 + 0.60 × G2 + 0.30 × G3 + 0.10 × (G4 + G5 + ...) with G1 ≥ G2 ≥ G3 ≥ ...
score = 10 × (1 − e^(−L))
For the example above: L = 1.00 × 0.90 + 0.60 × 0.70 = 1.32, and 10 × (1 − e^(−1.32)) ≈ 7.3.
Next steps
- How risk is calculated for where a single score comes from
- Insights for the company-wide view these numbers feed