- Subscribe to RSS Feed
- Mark as New
- Mark as Read
- Bookmark
- Subscribe
- Printer Friendly Page
- Report Inappropriate Content
Overview
Managing privileged access is one of the biggest security challenges on any ServiceNow instance.
In this Platform Academy session, walks through two new identity capabilities launched in Australia designed to help administrators reduce unnecessary access while maintaining a smooth experience.
The session covers: Granular Admin roles and Scripting Governance tool.
Granular Admin Roles
One of the most significant identity enhancements in the Australia release is the introduction of 300+ granular admin roles.
Previously, many platform features required users to have the full admin role, even if they only needed access to a specific feature. This often resulted in users receiving more privileges than necessary.
The new granular roles break administrative responsibilities into feature-specific permissions.
A key point emphasized throughout the presentation is that the existing admin role has not changed. Organizations should review the new roles, test them in sub-production environments, and gradually replace unnecessary admin assignments where appropriate.
Scripting Governance Tool
Scripting permissions have traditionally been controlled through field-level ACLs, making it difficult to determine exactly who could write or edit scripts across an instance. The new feature: Scripting Governance Tool, adds a mandatory second layer of access control on top of existing ACL permissions, providing centralized visibility and control through a dashboard where you can see which users can script, scan for script activity and directly add or revoke access.
Key Takeaways
- Australia introduces more than 300 new Granular Admin Roles to support least-privilege administration.
- The Scripting Governance Tool adds a second layer of security for scripting permissions while preserving existing ACL behavior.
- The Instance Operator role provides operational access without full administrative privileges.
Watch the Full Session
Want to dive deeper into the topics covered in this recap?
Watch the recording here.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.