Add ransomware data query
Data query enables you to perform a data-driven evaluation of your ransomware preparedness. You can add a data query around a critical report value and evaluate your ransomware score and trend. To display accurate Ransomware score and its trend, the report instance used in the data query must contain only a single row, column, and numeric value. For this reason, your report instance must span your entire domain. The report instance may contain an average, a sum total, or a percentage value derived from multiple sources. Hence, this value can be typed either as a Numberor Percentage and a default score of lowest, low, medium, high, or highest is assigned to it. User responses are compared to this default score to determine the ransomware score and trend. For example, a data query to show the deployment status of a specific NetBackup EEB requires a report instance that calculates the percentage of NetBackup primaries with the EEB installed.
As a user with Ransomware Administrator privileges, you have the privilege to add data queries to the default set of queries. This procedure provides the steps you can follow to add custom data queries to the Ransomware Scorecard.
To add a ransomware data query on the Ransomware Scorecard:
- Select Reports > Ransomware > Ransomware Scorecard.
- Select the Domain, Query Status, Query Visibility, and Query Type from the scope selector to access the scorecard containing your target query and click Generate. The Ransomware Scorecard is generated based on your scope selection and the data queries are denoted as Data in the Type column of the scorecard.
- Click Add data query on the scorecard and fill the Add Data Query form based on the description below:
Field
Description
Question
Enter the query text.
Weight
Assign a weight to your query in a range of 1 to 5, where 1 indicates the least and 5 indicates the most important query. Weight is used as a multiplier of the Score to calculate Risk, which eventually impacts the Ransomware Score. Hence, assign the highest weight to the most important query.
Description
Enter any additional information about the query. This may include the details about the expected responses or guidance about how to answer the query.
Best Practice Recommendation
Describe the recommended best practice for ransomware preparedness with respect to the query. Provide guidance to implement the best practice. This recommendation hidden until the user has answered the query.
More Info Link
Provide a hyperlink to any additional information relevant to your query. This field is optional.
Saved Report Instance
Select the report instance from which the query can source values to determine the data item score.
This list displays the names of all report instances saved under My Reports. The report you select must be based on a report template that returns only one value of type number or percentage. Preferably, the value must have a drill down view that displays the sources from which it was derived. If your report does not include a drill down, you will be asked if you want to continue, as having a drill down is a best practice in most cases.
Schedule
Schedule the time when the data query must run.
Data Type
Select the type of value that the report instance must return. You can choose Number or Percentage as type of value from the list.
Default Score
Set the default value to use if the report returns a value outside the mapped range.
Default Score options:
Lowest
Low
Middle
High
Highest
Range
Define the value range and assign a resiliency score for the defined range from the options below. User response will be assigned a score from these options based on which numeric range in which their responses fit into. You can define multiple ranges depending on the anticipated user responses. If the Data Type is set to Percentage, all ranges must be specified between 0 and 100.
Start: Enter the starting value of the score range. This value is inclusive
Less than: Enter the end value of the score range. This value is exclusive.
Score: Assign a score from the list to the defined range. This score is compared with the default score to determine the ransomware score and trend.
Add Result
Click to add another score-mapping row for your data query.
Delete
Click to remove a score-mapping row.
- Click OK to save the data query. The new data query appears on the Ransomware Scorecard and becomes available to other users to register their responses.