Governance
Ceres Corp
Client
Q3 2026
Quarter
View Client Presentation
QBR Dashboard: Internal Review
Watchlist

12 items to raise in the meeting

Weak or Shared Passwords

Risk
Still open from last quarter

Residual score 16 remains high while open.

Excessive Privilege

Risk
Still open from last quarter

Residual score 15 remains high while open.

Multi-Factor Authentication Not Enforced

Risk
Still open from last quarter

Residual score 16 remains high while open.

Ransomware Attack

Risk
Still open from last quarter

Residual score 20 remains high while open.

Unpatched Operating Systems

Risk
Still open from last quarter

Residual score 16 remains high while open.

Data Breach or Exfiltration

Risk
Still open from last quarter

Residual score 15 remains high while open.

Phishing and Social Engineering

Risk
Still open from last quarter

Residual score 15 remains high while open.

Data shared externally without authorisation

Incident
Still open from last quarter

Reported 14 Jul 2026: Open (High severity).

Ransomware infection on file server

Incident
Still open from last quarter

Reported 09 Jul 2026: Investigating (Critical severity).

CEO email account compromise

Incident
Still open from last quarter

Reported 05 Jul 2026: Investigating (High severity).

Malware on accounts payable workstation

Incident
Still open from last quarter

Reported 28 Jun 2026: Open (High severity).

Suspicious outbound traffic

Incident
Still open from last quarter

Reported 18 Jul 2026: Open (Medium severity).

Compliance

0% overall compliance rate (0 compliant / 0 partial / 58 non-compliant / 0 unknown of 58 requirements)

— no change vs Q2 2026

Evidence coverage 31% · Source alignment 19%
Policy Coverage

0% coverage (0 of 20 policies covered: 0 overdue, 4 missing)

— no change vs Q2 2026

0% of policies are within their review cycle (0 of 20)

Reviewed in Q3 2026 (0)

Risk Posture

27 open risks of 27 total (7 high residual, avg residual score: 11)

— no change vs Q2 2026

Reviewed in Q3 2026 (0)

Incident History

5 open of 5 total (4 critical/high severity, 0 closed)

— no change vs Q2 2026

Reported in Q3 2026 (4)

Suspicious outbound traffic

reported 18 Jul 2026: Medium severity

Open

Data shared externally without authorisation

reported 14 Jul 2026: High severity

Open

Ransomware infection on file server

reported 09 Jul 2026: Critical severity

Investigating

CEO email account compromise

reported 05 Jul 2026: High severity

Investigating
An unhandled error has occurred. Reload 🗙

Rejoining the server...

Rejoin failed... trying again in seconds.

Failed to rejoin.
Please retry or reload the page.

The session has been paused by the server.

Failed to resume the session.
Please retry or reload the page.