Submitting Training Data to Audit Assistant

The following procedure describes how to submit training data to Audit AssistantClosedAn optional tool used to connect Fortify Software Security Center to Fortify Scan Analytics. Audit Assistant (through Fortify Scan Analytics) helps determine whether the issues returned from Fortify Static Code Analyzer scan results represent true vulnerabilities, or are false positives. for assessmentClosedThe overall process of reviewing, triaging, and acting on a particular scan or analysis. (same as scan). Keep in mind that all data transferred from the Fortify Software Security Center environment is anonymized and contains no sensitive information.

To submit training data to Audit Assistant:

  1. From the Dashboard, open a page (OVERVIEW, ARTIFACTS, AUDIT or TREND) for the application versionClosedA particular iteration of the analysis of a codebase as it applies to Fortify Software Security Center. An application always begins with a first version. An administrator adds new versions, as needed. of interest.

  2. On the applicationClosedA customer codebase evaluated by Fortify software. The top-level container for one or more application versions. When you work with a new codebase, the application and first application version are automatically created. An application includes one or more application versions that users create and configure. version toolbar, click PROFILE.

  3. In the APPLICATION PROFILE dialog box, click the AUDIT ASSISTANT TRAINING tab.

    Note: The AUDIT ASSISTANT TRAINING tab is visible only if an administrator has configured Audit Assistant integration with Fortify Software Security Center. For information about Audit Assistant configuration, see Configuring Audit Assistant.

    The Data last sent for training field shows the date and time training data for the application version was last submitted.

  4. To submit new training data, click SEND FOR TRAINING.

    The Data last sent for training field displays the Sending status .

  5. After the Data last sent for training field is refreshed with the updated date and time, close the APPLICATION PROFILE dialog box.
  6. On the application version toolbar, click ARTIFACTS, and then check to see whether the Status field for your upload is Processing Complete.

After processing is completed, you can view the results from the AUDIT page. For instructions, see Reviewing Audit Assistant Results.

See Also

About Audit Assistant

Enabling Auto-Apply and Auto-Predict for an Application Version