Looking in the Reports - Standard Reports - Security - Vulnerabilities, I see Detected Vulnerabilities by custom group which allows you to report based on groups in patch and compliance. Does this report meet what you are after? If no, can you provide more specifics on what you are looking for?
Look at the Security Compliance by device report under Standard-->Security-->Compliance.
This will generate based on parameters (scope, device, group, query, etc) and give an itemized listing of patches missing from the Compliance group under Patch and Compliance.