Soteria Software Press Release

February 6th, 2023

OpenRMF® Professional v2.8.6 Released!

Soteria Software today released an update to OpenRMF® Professional version 2.8.


OpenRMF® Professional version v2.8.6 was released today. The main new feature is the cyber readiness automation. In US Federal circles, this is known as Command Cyber Readiness Inspection (CCRI). We also added some better automation around host scan data, PPSM, compliance statements, and mitigation statements. And improved our external API to allow even more automation and integration efforts. This release also included the newer DISA checklists up to January 13, 2023:


  • Ability to upload bulk mitigation statements
  • Ability to upload bulk compliance statements
  • Ability to upload generic/universal format patch vulnerability data
  • Ability to bulk upload hardware listing (add or edit)
  • Ability to bulk upload software listing (add or edit)
  • Ability to bulk upload port/protocol/service listing (add or edit)
  • API calls for all that above
  • Additional API calls for adding/uploading templates and CIS .audit files
  • Cyber Readiness score calculations and export (CCRI for those in DoD)
  • Added a Create POAM API call
  • Pulling CCVS data from Nessus and Rapid7 patch vulnerability scans for display
  • Easier copy of API token generation for use
  • ELK stack updated to version 8.5.3 with Java version fix
  • Logstash including the syslog plugin to push out data to syslog on Linux servers
  • Bug fix for CCI data to show after license has expired on checklist vulnerability details and reports
  • DISA latest checklists as of Jan 13, 2023
  • Keycloak upgraded to version 20.0 with Java version fix
  • set the max restart configuration to 5 and only on failure for the software stack
  • Read “notafinding” on DISA SCC SCAP scans to fill in vulnerabilities
  • Match SCAP from DISA SCC SCAP 5.7 with newer titles and parameters to templates


More information on the software release and its availability as well as training can be found at their website www.soteriasoft.com.