About Manual Intake of Vulnerability Information.

Ohki_Yamamoto
Tera Guru

SeqOps-VR's vulnerability management provides an OOTB feature for manual capture of vulnerabilities.

 

Reference:

https://www.servicenow.com/docs/bundle/vancouver-security-management/page/product/vulnerability-resp...

 

There are also three types of vulnerabilities: infrastructure vulnerabilities, application vulnerabilities, and container vulnerabilities.

 

The manual ingest feature above is written like a feature for infrastructure vulnerabilities, but is a feature for manual ingestion of vulnerabilities provided for application vulnerabilities and container vulnerabilities?

 

*For penetration testing of application vulnerabilities, the procedure was to register data from the form screen as shown below.
  https://www.servicenow.com/docs/ja-JP/bundle/utah-security-management/page/product/vulnerability-app...

6 REPLIES 6

MiravTMehta
ServiceNow Employee
ServiceNow Employee

Beginning with the May release, penetration testers or ethical hackers can upload application penetration testing findings to the pen testing workspace via a file. This will help them manage their vulnerability information in one place.

 

More details here : https://www.servicenow.com/docs/bundle/yokohama-security-management/page/product/vulnerability-app-v...

 

Heads-up, More enhancements coming up for future release ! 😎

For any feedback or capability enhancements. Please do reach out to me or Andy Ojha directly.

 

Thanks

Mirav T. Mehta

Sr Product Manager, AVR

@MiravTMehta 

Thanks for the information.
From which version of ServiceNow is the “Manual ingestion of vulnerabilities for Application Vulnerability Response” feature available? Is it YOKOHAMA?