Skip to main content
Every quarter, Leverage Cyber reruns the full external reconnaissance against your organization, compares results to the prior period, and delivers a trend report showing exactly how your risk posture has changed. The quarterly reassessment is not a status update — it is a structured measurement of whether your remediation work is translating into real, quantified risk reduction. Each cycle closes the loop between the findings your team acted on and the ALE movement those actions produced.

What’s Included

Each quarterly reassessment delivers a comprehensive set of outputs covering every dimension of your external attack surface.

Full Attack Surface Rescan

A complete rerun of the initial passive reconnaissance methodology against your entire domain portfolio, subsidiaries, and associated infrastructure.

New Findings Since Last Period

All exposures discovered this quarter that were not present in your prior-period baseline, including their severity and ALE contribution.

Closed & Resolved Findings

A verified record of findings that have been remediated and confirmed closed, with the ALE reduction attributed to each closure.

Net Risk Reduction (ALE Delta)

The net change in your total portfolio ALE from the prior quarter to the current quarter — the single most important measure of security program effectiveness.

Updated Remediation Roadmap

A refreshed prioritized remediation plan based on current open findings, updated ALE calculations, and any new exposures discovered this cycle.

Executive Trend Summary

A board-ready summary of your security posture trajectory, suitable for executive reporting and investor or compliance discussions.

The Quarterly Report Timeline

Leverage Cyber manages the reassessment process end-to-end. You do not need to initiate or schedule anything — the cycle runs automatically on your engagement calendar.
1

Reassessment Kickoff

Leverage Cyber initiates the reassessment automatically at the start of your quarterly cycle. You receive a notification confirming the process has begun and the expected delivery date for the completed report. No action is required from your team at this stage.
2

Data Collection

Over a 48-hour window, Leverage Cyber conducts a full passive reconnaissance sweep using the same methodology as your initial assessment — OSINT feeds, breach database sync, DNS monitoring, certificate transparency log analysis, and dark web feed monitoring. All collection is passive and generates no traffic to your infrastructure.
3

Analysis and Comparison

Findings from the current cycle are systematically compared against your prior-period baseline. New exposures are identified, previously open findings are validated or marked resolved, and ALE calculations are updated to reflect the current state of your attack surface. Trend metrics are computed across all tracked dimensions.
4

Report Delivery and Review Call

Your completed quarterly report is delivered to the secure portal and to your designated recipients. A review call with your Leverage Cyber engagement manager is scheduled to walk through the findings, discuss the trend data, and align on remediation priorities for the coming quarter.

Reading Your Trend Data

The quarterly report tracks the following metrics across consecutive periods so you can measure progress objectively and identify areas where risk is growing rather than shrinking. Total Open Findings The raw count of active, unresolved findings across all severity levels. Watch for the overall trend — a growing count quarter over quarter means your attack surface is expanding faster than your team is remediating. Total Portfolio ALE The aggregate Annual Loss Expectancy across all open findings. This is the headline number for executive reporting: it translates your security posture into the financial language your leadership and board already use. A declining ALE trend is the clearest evidence that your security investments are working. Finding Count by Severity Open findings broken down into Critical, High, Medium, and Low buckets for each period. Shifts in the severity distribution matter — closing ten Low findings while new Critical findings appear does not represent progress. Mean Time to Detect New Exposures The average time between when an exposure becomes detectable through passive reconnaissance and when Leverage Cyber surfaces it in your portfolio. This metric reflects the responsiveness of the monitoring pipeline to changes in your attack surface. Remediation Closure Rate The percentage of findings that were open at the start of the quarter and were successfully closed by the end of the period. A consistent closure rate above your new-finding rate produces compounding ALE reduction over time.

Setting Targets

Use your quarterly trend data to set explicit, measurable risk reduction goals for the coming quarter. Effective targets tie directly to the metrics above — for example:
  • Reduce total portfolio ALE by 25% this quarter by closing all Critical and High findings opened in the current cycle
  • Achieve a remediation closure rate of at least 80% on High-severity findings
  • Bring the count of open Critical findings to zero by the end of the next period
Your Leverage Cyber engagement manager can help you translate these targets into a prioritized remediation roadmap that sequences effort by ALE impact — ensuring your team works the findings that move the number most, first.
All quarterly reports are retained indefinitely and remain accessible through your secure portal. Historical reports support internal audit processes, compliance documentation, cyber insurance renewals, and board-level reporting on security program maturity over time.