Assets
Remediation Insights introduces a dedicated Assets view that provides a consolidated inventory of devices discovered across Ivanti Neurons and supported third-party vulnerability integrations. Each asset is shown with key context such as source, asset type, business criticality, exposure count, and RS³ score, helping teams identify the riskiest assets and prioritise action more effectively.
Administrators can trigger corrective actions directly from the assets view, including deploying the Ivanti agent or reassigning agent policy where applicable. This helps close management and patch coverage gaps by re-directing to relevant sections within Neurons platform.
Access to the Assets view is governed by the access control scopes assigned to your user account in Ivanti Neurons. Only assets available through your assigned roles and permissions are displayed.
To view the asset list, ensure you have Default Access under Devices > General. This permission lets you access device inventory and device views. Without it, you cannot see assets.
Sources of Host Data
Host data is gathered from the following sources:
Ivanti Neurons for Discovery and other Ivanti Connectors
Third-Party Connectors
The following details are captured and displayed in Remediation Insights > Assets.
Asset Name: The unique identifier or hostname of the device. Click the Asset Name to navigate to view the detailed Asset Information.
Asset Type: Specifies the device type (e.g., Mac, Server, Workstation, HOST). Use this to filter assets by class for targeted remediation.
Sources: The original source(s) that provided the data for this host.
RS³ Score (Required): The calculated Risk Score for each asset. You can sort by this column to prioritize the riskiest assets first for mitigation. For more information, see RS³ Score.
Newly discovered assets may display "Unknown" until vulnerability scanner data is available. The RS³ score is calculated and displayed after the next synchronization with the associated vulnerability scanner connectors (for example, Qualys, Tenable, Rapid7, or CrowdStrike)
To trigger RS³ score calculation immediately, you can run the connectors on demand.
-
Last Discovered: Displays the most recent date and time the asset was detected or updated.
-
Business Criticality: Shows the asset’s importance to your business (for example, Medium, High, or Low).
-
Exposures: Indicates the number of exposures or vulnerabilities associated with the asset.
-
Tags: Displays any custom tags assigned to the asset for easier identification or categorization.
Bulk Actions
You can perform the following bulk actions on Assets:
-
Use the Export button to export the exposures list to text (.csv). Any column filters you have applied will also apply to the export.
-
Assets can now have their business criticality value automatically imported from connected vulnerability scanners, such as Qualys and Tenable. This enables you to prioritize remediation with minimal manual effort. Automatic import of business criticality is currently supported only for Qualys and Tenable integrations; support for other vulnerability scanners will be added in future releases.
You can also manually update the business criticality value for your hosts directly from the Assets section. To do this, select an asset from the asset list, click Actions, and select Update Criticality. In the Update Business Criticality dialog, select the appropriate level:
-
1 - Least critical
-
2 - Less critical
-
3 - Medium
-
4 - Very critical
-
5 - Most critical
Click Update to save your changes. The updated criticality level immediately impacts the RS³ score of the asset. Update Criticality option is available only for Administrator roles.
How Automatic Import Works
-
If no connector or platform sets a criticality, the system defaults it to 3 (Medium).
-
When a connector (such as Qualys or Tenable) sets a criticality during sync, the platform uses that value.
-
If multiple connectors provide different values, the system uses the highest value.
-
If you manually update an asset’s criticality, your setting overrides connector values, even after future syncs.
-
If a connector value conflicts with your manual update, the system notifies you and displays a warning:
"This asset’s business criticality is manually set by an administrator; scanner-provided values are overridden."
-
-
Use the Add / remove tags action to add new tags or remove existing tags attached to the selected assets. Select one or more assets (up to the supported limit - 100 assets), and then select Add / remove tags from the Actions menu. You can add the selected assets to the existing tags or create a tag by typing a new tag name and pressing Enter. You can add multiple tags to the assets. Once you have selected or entered the tags, click Apply tags. The tags are linked to the assets and are visible in the asset details.
-
Use the Deploy Agent action to install or redeploy the agent on one or more selected assets. Use the Deploy Ivanti agent action for third-party–identified assets that are missing the agent or require reinstallation. Select the assets that require agent deployment, then click Actions and select Deploy Agent. You are navigated to Agent Deployment page, and Target Devices section lists all the devices that you have selected to deploy the agent to. A back arrow now appears next to the Deploy with Ivanti Neurons in the Agent Deployment page. Select the back arrow to return to Remediation Insights > Assets.
-
Use the Reassign Policy action to assign a new agent policy to selected assets. Select the assets that you want to update, click Actions, and select Reassign Policy. You are navigated to Agent management page, the assets you chose will by default be selected and in the Reassign policy, select the required policy and click Save.
Devices for which Deploy action has been requested are listed in Agent Management. When you reassign an agent policy with automated policy assignment configuration, the existing device exceptions will be removed, and their policies will be assigned automatically with the new policy when the policy evaluation process is complete. -
Use the Delete action to remove an asset from Ivanti Neurons. This action is available to you if you have the Delete Device permission. The Delete action is disabled when no assets are selected. To delete an asset, select one or more assets in the Assets list, select Actions, and then select Delete. A confirmation dialog appears, prompting you to verify the action before proceeding. Deleting an asset removes it from the Ivanti Neurons inventory. However, the asset can reappear if it is imported again through a connector or if the Ivanti Neurons Agent remains installed on the device and continues to report asset data. To proceed with the deletion, select Delete in the confirmation dialog. To retain the asset, select Cancel.
Filter the Asset List
You can quickly narrow and prioritize exposures by applying filters to the columns in the Asset list. Filters help you customize your view and focus on the most relevant data.
To apply a filter:
-
Select the Filter icon next to the column you want to filter.
-
Choose your filter options from the available selections or specify a custom range.
-
Select OK to apply the filter.
Filter options include:
-
Asset Type: Filter by asset types such as Mobile Device, Mac, Virtual Workstation, Server, and more.
-
Source(s): Filter by sources such as Qualys, Tenable, Crowdstrike, Rapid7, Ivanti Neurons for Discovery, and Microsoft Defender for Endpoint.
-
RS³ Score: Filter by risk severity (Critical, High, Medium, Low, Very Low) or specify a custom score range.
-
Last Discovered: Filter by discovery time ranges such as Last 3 days, Last 14 days, Last 30 days, Last 365 days, or define a custom date range.
-
Business Criticality: Filter by business status, such as Least critical, Less critical, Medium, Very critical, or Most critical.
-
Exposures: Filter to show only assets with or without exposures.
-
Tags: Filter by tags assigned to assets.
Viewing Asset details
Clicking the Asset Name, navigates you to Devices > Exposures, opens a separate page with list of all associated exposures for the device.
Viewing CVE details
Selecting an exposure CVE number, you are navigated to Remediation Insights > Exposures where, a summary of the exposure with a complete history, configuration details are displayed. This page includes extensive information in these categories:
- Summary: Links to relevant patches, release notes, evidence detected for the exposure (if available), vendor, and third-party advisories.
- Vulnerabilities: Lists the CVEs associated with the exposure you selected. Some exposures have more than one CVE. Common Weakness Enumerations (CWE) are also listed, along with the platforms affected.
- Threats: Lists the threats associated with the CVE and links to sites with more details.
- Fixes: Links to fixes for the exposure. Not all CVEs have fixes. This section will not appear if no fixes are available, but you can still refer to the recommended patches section in the summary.
- Impacted assets: Lists the assets affected by the CVE.
- Sources: Displays the tools, such as Ivanti Discovery, Crowdstrike, or Tenable, that contribute vulnerability data to the platform.