Q3 2026
As of 9 Oct 2026
As of 9 Oct 2026
High-severity findings
5
▼ -29% (-2) vs Q2 2026
High-severity findings fell from 7 in Q2 2026 to 5 in Q3 2026.
Investigate →High-severity findings by control
high-severity findings · Q3 2026
SOD-01 · Segregation of incompatible duties in SAP2(1)P2P-01 · Purchase orders follow approval thresholds; no self-approval1(1)VEN-03 · Supplier security incidents are assessed for impact and tracked1(0)KYC-01 · Customer accounts are activated only with complete KYC1(0)ACC-02 · User access provisioning is approved before grant0(1)ACC-03 · Privileged access is just-in-time and reviewed0(1)CHG-03 · Developers have no standing production access; deployments via pipeline only0(1)PAY-01 · Payment APIs secured with mTLS, signing and customer 2FA0(1)VUL-01 · Vulnerabilities are scanned and remediated within SLA0(1)
- SOD-01 · Segregation of incompatible duties in SAP 2 40%
- P2P-01 · Purchase orders follow approval thresholds; no self-approval 1 20%
- VEN-03 · Supplier security incidents are assessed for impact and tracked 1 20%
- KYC-01 · Customer accounts are activated only with complete KYC 1 20%
- ACC-02 · User access provisioning is approved before grant 0 0%
Domains between periods
Fastest rise: Third-Party Risk (+2)
Each line is a control domain, from Q2 2026 to Q3 2026 (recorded values only). Red = rising, green = falling. Click a domain for its records.
Open remediation timeline
JunJulAugSeptOctNovDecJan
Today
REM-F-ITGC-01 Priya SharmaREM-F-RBI-03 Deepa MenonREM-F-ITGC-02 Rahul NairREM-F-ITGC-03 Priya SharmaREM-F-RBI-02 Sanjay KulkarniREM-F-RBI-04 Arjun KapoorREM-F-ISO-02 Sanjay KulkarniREM-F-SOC2-02 Neha IyerREM-F-RBI-01 Priya SharmaClosedIn progressOpenValidation (planned / failed / passed)Bars run from the cycle close when the finding was raised to the action target date.