SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

Vulnerability Response Tables Mindmap

Here's a mindmap I've made, breaking down all of the many tables that come along with the baseline ServiceNow Vulnerability Response offering. My hope is that this provides value to ServiceNow developers and implementers new to the Security Operation...

ServiceNow Vulnerability Response Tablesv2.png
Nick Sessa by Kilo Sage
  • 1745 Views
  • 2 replies
  • 14 helpfuls

ServiceNow integration with QRADAR

I need all the detail about how to configure integration between ServiceNow and QRADAR (IBM). Please provide the specifics of steps after the QRADAR plugin is installed. Thanks for all the help.

Zubair Alam by Tera Contributor
  • 670 Views
  • 1 replies
  • 2 helpfuls

Resolved! Exception Questionnaire

I am wondering how the Exception Questionnaire in Vulnerability Response is useful for approvers/where the answers can be found? I know the metric results and assessment instance questions are linked to the state change approval record, but they aren...

Jkelley by Tera Contributor
  • 1224 Views
  • 5 replies
  • 2 helpfuls

Tenable.sc Rescan error

Hi All, I am using Tenable.sc for my client and I see the rescan does not work at all and we get the following error message:An error occurred while initiating the rescan. Attributes such as repository_id or family_id might be missing.  When I click ...

MaloyBanerjee1_0-1713875623237.png MaloyBanerjee1_1-1713877093939.png

Resolved! machine_filter on Vulnerability response Microsoft TVM

Im trying to apply a machine_filter for importing machines from Microsoft TVM in VR. The filters the machines being imported as CIs, but doesn not filter the vulnerabilities on machines, so we end up with a lot of vulnerabilities that we do not want ...

Deactivate or delete a Remediation Effort?

Could someone please guide me on how I can "delete" or "deactivate" a Remediation Effort? It seems according to ACLs, no one can delete an effort, even Admins.  But it appears there should be a way to deactivate one, but it is all grayed out.  Are th...

PJS_DFS_0-1713278760255.png
PJS_DFS by Tera Contributor
  • 744 Views
  • 3 replies
  • 0 helpfuls

Incident Task Notifications

Is there a way to setup email notifications for when incident tasks are opened and assigned to a particular group or person, so they know they have a task assigned? Oops, wrong forum, sorry, not sure how to delete

Turn "Reopened" field into a date/time field

Hey community,In the vulnerability items table there is a field called "Reopened" which is by default a True/False field.I have a ask to make that field show a date when the Vulnerability reopened. Is there a way to achieve this?Thanks in advance 

MaxBeauch by Tera Contributor
  • 373 Views
  • 3 replies
  • 2 helpfuls

Best solution for VITs with multiple locations of vulnerabilities

We have various VITs, like for QID-106032 (Apache Log4j 1.X Detected), where in the results there are a dozen or two locations of Log4j jar files.  In these instances, each of those locations in owned by a separate application team. Is there a way to...

PJS_DFS by Tera Contributor
  • 541 Views
  • 2 replies
  • 0 helpfuls

ServiceNow API to Azure container storage

Hi All, I am currently working through a project to get data from various API's and out into Azure container storage. This involves a runbook in Azure that, on a schedule, pulls data from the various API's and stores this in the Azure blob storage. I...

dbirrell by Giga Contributor
  • 575 Views
  • 4 replies
  • 0 helpfuls

Resolved! Adding new states to Security Incidents

Got a request in to add new States into Security Incidents. I've been looking to try and add these, but while I can add them to the Choice List, they will not appear in the drop down at any point. Also can't see to add anything to the Process Flow as...