Automated Rapid7 Remediation SLA Scorecard
Every Monday, WebRun signs in to Rapid7, reads the open findings across your assets, groups them by severity and by how many days they have been open, compares each against your remediation target, posts a scorecard to your security channel in Telegram, and texts you through Twilio when a high severity finding has passed its deadline.
How do I measure whether we are fixing vulnerabilities on time?
WebRun scores your remediation progress every Monday. It ages every open Rapid7 finding against your target for its severity, posts a scorecard to your Telegram security channel with counts closed and opened, and texts you through Twilio when a high severity finding passes its deadline.
- Remediation progress is measured weekly instead of at audit time
- Findings past their target get named while there is time to fix them
- The oldest open items stay visible until somebody closes them
Built for security teams · IT managers · compliance leads · managed service providers
What does WebRun do on every run?
The exact actions WebRun takes, in order - in plain language, so you can adjust anything.
-
WebRun signs in and gets to work
Opens
www.rapid7.comin a real browser with your saved login - no setup, no API keys. -
1
Rapid7 - age open findings against targets
WebRun opens Rapid7 to age open findings against targets. - Sign in to Rapid7 and open the list of current findings
- Group them by severity and capture the count in each band
- For each open finding, record the asset, the severity and the days since it was first seen
- Compare the age against your remediation target for that severity and mark anything past it
Done when Every open finding is aged and compared against its remediation target.
-
2
Telegram - post the weekly scorecard
WebRun opens Telegram to post the weekly scorecard. - Open your security channel in Telegram
- Post the counts by severity, the number closed in the past week and the number newly opened
- Show the percentage of findings still inside their remediation target
- List the five oldest open items with their asset and age in days
Done when The security channel has this week's remediation scorecard.
-
3
Twilio - text you about breaches
WebRun opens Twilio to text you about breaches. - Open Twilio and send an SMS only when a high severity finding has passed its remediation deadline
- Name the asset, the severity and the number of days over target
- Send only to your own saved security numbers. Never text a vendor or a customer
- Never close, accept or suppress a finding. WebRun reports and your team remediates
Done when You have been texted about every breached high severity item, or nothing was sent because none are over target.
How is each run configured?
Secure by default
Connect once, stays signed in
WebRun signs in once and keeps each session in a persistent environment, so every run picks up right where it left off.
Every action is checked against this policy before it runs.
Questions, answered
Can it close or suppress findings?
No. WebRun only reads and reports. It never closes a finding, never marks one as accepted risk, never suppresses an alert and never changes a scan configuration.
Who receives the scorecard?
Only your own security channel in Telegram and the security phone numbers you saved for Twilio. Nothing about your findings is emailed out, shared with a vendor or posted publicly.
How are remediation targets set?
By you. You give WebRun a target in days for each severity band, for example seven days for critical and thirty for medium, and every finding is aged against the target for its own band.
Put this on autopilot.
Turn it on in minutes - or have our team set it up for you.