EVIDENCE-BACKED SECURITY FINDINGS

Turn Security Evidence Into Clear Security Gaps

Understand where security attention may be required across supported assets. GapSwift connects observed asset and security evidence with Security Gaps, relevant vulnerability context and Cyber Score to give IT and security teams clearer visibility into identified security concerns.

Evidence-backedAsset-connectedRead-only assessment
Security GapObserved condition
Supported evidenceAn implemented security check evaluates available Windows evidence.
Expected stateThe check defines the supported state being evaluated.
Clear findingThe observed condition and relevant asset context remain connected.
WHAT IS A SECURITY GAP?

Explain the observed condition behind the finding.

A Security Gap represents an observed security condition where supported evidence does not match an implemented expected security state.

GapSwift uses supported collected evidence and deterministic security checks to explain why a Security Gap has been identified, helping teams understand the observed condition behind the finding.

Evidence before conclusion
ASSESSED

Supported evidence was available for evaluation.

FAILED

The observed condition did not match the implemented expected state.

NOT ASSESSED

Sufficient supported evidence was unavailable.

NOT APPLICABLE

The implemented check did not apply to the asset.

SUPPORTED ASSET CONTEXT

Keep each finding connected to the applicable asset.

Identify evidence-backed security configuration gaps associated with supported Windows assets.

Asset identity, supported configuration evidence and assessment context help authorized teams understand where attention may be required without duplicating the broader Asset Intelligence record.

Supported Windows evidence
Configuration evidenceImplemented checks use supported collected Windows evidence.
Asset contextThe applicable supported asset remains connected to the finding.
Assessment stateUnavailable evidence does not silently become a pass or failure.
CYBER SCORE & HISTORY

Keep broader posture connected to underlying evidence.

Use Cyber Score as a broader indicator of observed security posture alongside underlying findings and evidence.

Maintain historical visibility into meaningful supported security and asset changes over time.

Supported evidence assessed
Security Gap identified
Relevant context reviewed
Finding status later verified
CLEARER CONTEXT FOR RESPONSIBLE TEAMS

Give authorized teams the evidence they need to investigate.

01

IT Administrators

Review supported observed conditions, expected states and applicable Windows assets.

02

IT Managers

Understand identified concerns alongside relevant asset and operational context.

03

IT Directors

Use broader posture indicators while retaining access to underlying findings.

04

Security Teams & Leaders

Investigate evidence-backed findings with available configuration and vulnerability context.

05

MSPs & Partners

Work across authorized managed customer organizations while preserving customer-level access boundaries.

SECURITY GAPS FAQ

Common questions.

How does GapSwift identify Security Gaps?

GapSwift evaluates supported Windows security evidence against implemented security checks. Where observed evidence does not match the expected state, GapSwift can create an evidence-backed Security Gap for the applicable asset.

Are Security Gaps the same as vulnerabilities?

No. A Security Gap can represent an observed configuration or security-posture issue, while a vulnerability relates to applicable vulnerability intelligence such as a CVE. GapSwift keeps these concepts distinct while allowing relevant context to be viewed together.

Does GapSwift automatically remediate Security Gaps?

No. GapSwift does not currently provide automatic remediation or automatic CVE patching. It helps teams understand identified Security Gaps, supporting evidence and relevant security context so appropriate corrective action can be taken and later verified.

Does every Security Gap prove that a system is insecure?

No. A Security Gap identifies a supported observed condition that did not match an implemented expected state. Teams should review the applicable asset, supporting evidence and relevant context before deciding what action is appropriate.

How does Cyber Score relate to Security Gaps?

Cyber Score is a broader indicator of supported observed security posture. Security Gaps and their underlying evidence provide more specific context alongside that indicator.

Can MSP and partner users view Security Gaps?

Authorized MSP and partner users can work within supported customer organization scopes and permissions. Customer-level authorization and access boundaries remain in place.

SEE GAPSWIFT IN ACTION

See the Evidence Behind Security Gaps.

Explore how GapSwift connects supported Windows assets, observed security evidence, Security Gaps and relevant security context.

Questions or want to learn more about GapSwift? Contact us at info@gapswift.com.