Documentation
README
Vulnerability Management with DefectDojo
Overview
DefectDojo aggregates findings from every SecOpsAgentKit scanner into one platform—deduplicating across tools, tracking SLA compliance, and producing compliance-ready reports. It transforms isolated scanner outputs into a managed vulnerability backlog with ownership and remediation history.
Key concepts:
- Product: An application or system being tracked
- Engagement: A time-boxed security activity (sprint, assessment, CI/CD pipeline)
- Test: A scanner run within an engagement
- Finding: A deduplicated security issue with full lifecycle (Active → Mitigated → Closed)
Quick Start
This is the opening of the README. Read the full README on GitHub.