The CreatorCon Call for Content is officially open! Get started here.

Not applicable

Session Code: BRE0439

Presenter(s): Hassan, Kathy, Michael

Company(s): ServiceNow, ServiceNow, ServiceNow

Abstract:

“Some assembly required!” A furniture kit is just a set of parts until you assemble them into a useful piece of furniture. Similarly, the ServiceNow Vulnerability Response and GRC (Governance, Risk, and Compliance) solutions are only parts until you integrate them into an overall vulnerability management program. Only then will you gain the actionable insights to efficiently remediate vulnerabilities, the visibility to enable risk-informed decisions, the metrics to drive accountability, and the controls to ensure compliance. In this session, we’ll share our vulnerability management journey at ServiceNow and how we tailored ServiceNow Vulnerability Response and GRC to our program needs. We’ll address topics like advanced risk scores, vulnerability group creation and assignments, CMDB CI matching rules, SLAs and remediation targets, and certification using advanced reporting for data quality metrics. You’ll come away with tips and best practices that you can use to put together a successful vulnerability management program for your company.