| Column Name | Column Data Type |
end_date Required Input Column
The end date of the interval which you want to retrieve metrics from. Round to the nearest day. | TIMESTAMP_S |
start_date Required Input Column
The start date of the interval which you want to retrieve metrics from. Rounds to the nearest day. | TIMESTAMP_S |
_aws_profile Input Column
The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role. | STRUCT( "type" VARCHAR, "name" VARCHAR, "account_id" VARCHAR, "via_profile_name" VARCHAR, "assumed_role_arn" VARCHAR, "organization" STRUCT( "account_name" VARCHAR, "id" VARCHAR, "tags" STRUCT( "key" VARCHAR, "value" VARCHAR )[], "master_account" STRUCT( "id" VARCHAR, "email" VARCHAR ), "parents" STRUCT( "type" VARCHAR, "id" VARCHAR, "name" VARCHAR, "tags" STRUCT( "key" VARCHAR, "value" VARCHAR )[] )[] ) ) |
Show child fields- _aws_profile.account_id
The AWS account id
- _aws_profile.assumed_role_arn
The ARN of the assumed role
- _aws_profile.name
The unique name of the profile.
- _aws_profile.organization
Information about this profile's membership in the AWS organization. Show child fields- _aws_profile.organization.account_name
The name of account speciifed by the organization
- _aws_profile.organization.id
The organization id
- _aws_profile.organization.master_account
Show child fields- _aws_profile.organization.master_account.email
The organization master account email address
- _aws_profile.organization.master_account.id
The organization master account id
- _aws_profile.organization.parents[]
Show child fields- _aws_profile.organization.parents[].id
The id of the parent
- _aws_profile.organization.parents[].name
The name of the parent
- _aws_profile.organization.parents[].tags[]
Show child fields- _aws_profile.organization.parents[].tags[].key
- _aws_profile.organization.parents[].tags[].value
- _aws_profile.organization.parents[].type
The type of parent can be an organization unit or a root
- _aws_profile.organization.tags[]
Show child fields- _aws_profile.organization.tags[].key
- _aws_profile.organization.tags[].value
- _aws_profile.type
The type of profile, either 'credentials' or 'assumed_role'
- _aws_profile.via_profile_name
This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.
|
closed_findings
The number of closed findings of each severity on the specified date. | STRUCT( "critical" DOUBLE, "high" DOUBLE, "info" DOUBLE, "low" DOUBLE, "medium" DOUBLE ) |
Show child fields- closed_findings.critical
A numeric value corresponding to a critical finding.
- closed_findings.high
A numeric value corresponding to a high severity finding.
- closed_findings.info
A numeric value corresponding to an informational finding.
- closed_findings.low
A numeric value corresponding to a low severity finding.
- closed_findings.medium
A numeric value corresponding to a medium severity finding.
|
date
The date from which the findings metrics were retrieved. | TIMESTAMP_S |
mean_time_to_close
The average time in days it takes to close findings of each severity as of a specified date. | STRUCT( "critical" DOUBLE, "high" DOUBLE, "info" DOUBLE, "low" DOUBLE, "medium" DOUBLE ) |
Show child fields- mean_time_to_close.critical
A numeric value corresponding to a critical finding.
- mean_time_to_close.high
A numeric value corresponding to a high severity finding.
- mean_time_to_close.info
A numeric value corresponding to an informational finding.
- mean_time_to_close.low
A numeric value corresponding to a low severity finding.
- mean_time_to_close.medium
A numeric value corresponding to a medium severity finding.
|
new_findings
The number of new findings of each severity on the specified date. | STRUCT( "critical" DOUBLE, "high" DOUBLE, "info" DOUBLE, "low" DOUBLE, "medium" DOUBLE ) |
Show child fields- new_findings.critical
A numeric value corresponding to a critical finding.
- new_findings.high
A numeric value corresponding to a high severity finding.
- new_findings.info
A numeric value corresponding to an informational finding.
- new_findings.low
A numeric value corresponding to a low severity finding.
- new_findings.medium
A numeric value corresponding to a medium severity finding.
|
open_findings
The number of open findings of each severity as of the specified date. | STRUCT( "critical" DOUBLE, "high" DOUBLE, "info" DOUBLE, "low" DOUBLE, "medium" DOUBLE ) |
Show child fields- open_findings.critical
A numeric value corresponding to a critical finding.
- open_findings.high
A numeric value corresponding to a high severity finding.
- open_findings.info
A numeric value corresponding to an informational finding.
- open_findings.low
A numeric value corresponding to a low severity finding.
- open_findings.medium
A numeric value corresponding to a medium severity finding.
|