Network Risk AICommand Center
AI Risk & Exposure · CISO / Network Security Command Center
● LIVE MODEL Loading
0-100
Network Risk Score
0
No active findings
Correlated
Findings
0
Compressed from FortiGate evidence
DNAT
Exposure Events
0
Public-to-internal observations
Signals
Total Events
0
Local collector buffer

Executive Risk Posture

0
Analyzing evidence

FortiGate telemetry is converted into prioritized findings with explainable evidence.

AI Usage Risk

DNS Control

0%
No resolver data yet

DNS control posture will appear after a snapshot.

AI Analyst Brief
Waiting for risk findings

The AI layer summarizes structured findings and recommended action, while scoring remains evidence-based.

Priority Findings

Risk Signal Matrix

Signal Intensity

All Findings

Finding Detail

Policy & Destination Exposure

PolicyPortCountriesEventsRisk

Asset Risk Distribution

Finding Evidence

DNS
DNS Events
0
Resolver traffic observed
QNAME
Domain Queries
0
Queries with domain names
Bypass
Direct DNS
0
Clients using public resolvers
Clients
DNS Clients
0
Observed querying devices

Top Domains

Top Clients

DNS Control Posture

0%controlled
Configure approved DNS

Set the DNS servers owned or approved by your organization.

Approved DNSExternal DNS

Approved Organization DNS

Enter internal DNS IP addresses separated by commas. Example: 192.168.2.1, 192.168.2.2

Why It Matters

A controlled DNS path improves visibility and helps detect clients that bypass the organization resolver by using public DNS directly.

Detected
AI Services
0
Matched from network metadata
Clients
AI Clients
0
Queries
AI Domain Queries
0
DNS observations only
Review
Needs Review
0
Detected, not approved yet

Detected AI Services

Services observed across retained collector snapshots. Prompts, responses, files, and HTTPS payloads are not collected.

ServiceProviderClientsDNS QueriesSessionsBytes Out / InRisk Signal

Usage Signal

Scope

What this tells us

Which AI services appear in the organization’s network and how often they are observed.

What it does not tell us

It does not inspect prompts, responses, uploaded files, or the content of encrypted traffic.

AI Usage Risk Assessment

Recommended Actions

AI Narrative

Rules Preview

Recommended Command Deck

Edge Collector Monitor

CollectorStatusLast SeenEventsFindings

Manual Snapshot

Request a fresh snapshot, then run the Edge Collector push command from your collector machine.

CISO Report

Generate a concise executive report from the latest snapshot, AI insight, and findings.

My Profile

Your session remains active after saving, but the new password will be required next time.

Account Summary

Signed in as-
Role-
Session8 hours
StatusActive

Add Admin User

Admin accounts are stored in the cloud database and require a valid admin session.

Admin Users

NameEmailRoleStatusAction

AI Policy

This guidance is added to the AI prompt when a new AI Insight is generated. It does not regenerate old locked insights.

How AI Uses It

ScopeNew AI Insight
Stored InCloud D1
Last Updated-
Updated By-

Use this to control risk appetite, approved exposure rules, wording, and preferred mitigation style.

Add Edge Collector

Collector secret created. Copy this once.

The token column only shows a preview. This full secret is shown only after rotation. Put it on the Edge Collector machine, not in GitHub.

Registered Edge Collectors

NameCollector IDSiteStatusLast SeenTokenAction

Add Log Source

Registered Sources

DeviceVendorProductParserCollectorZoneAction