We're reclaiming inactive PDIs to keep them available for active builders. Learn what's changing, who's affected, and how to protect your work. Read More

SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

How the de-duplication works in vulnerability response?

Hi Everyone, We have five vulnerability scanners integrated with our instance, and we are seeing duplicate detections coming in from multiple sources. Also, for some I could see there is few similar vulnerable item created for same issues.Does Servic...

Field mapping for Qualys integration

Hello,​I am currently working on a Qualys integration for Vulnerability Response and have run into a bit of a roadblock regarding data mapping.​I need to review or modify how specific fields are being populated, but the logic does not appear to be de...

jeffeyssn by Tera Contributor
  • 698 Views
  • 2 replies
  • 0 helpfuls

Disable CI in CMDB

I have a corrupted CI (Central Interaction). When I access its record, I get a "(Record not found)" message. I've tried disabling it through the table, deleting it from the table, and even creating a script and running a deletion script in Fix Script...

samoliveira by Tera Contributor
  • 737 Views
  • 5 replies
  • 0 helpfuls

Sending an Entra MFA Push through ServiceNow

Hello Experts! Not sure I'm posting this on the correct forum, but here goes. Who has some experience with integrating ServiceNow with Entra? We use Entra as our SSO provider, and have been given a requirement to allow the help desk to send a user an...

HMcNulty by Tera Contributor
  • 1419 Views
  • 2 replies
  • 1 helpfuls

REMEDIATION TASK RULES CONFIG

Hi there, I am trying to explore the configs for USEM workspace and have been having a hard time creating a new remediation task rule where the issue I am facing is the save button staying greyed out. I'd like to know if this is a common issue or hav...

miteshwara by Tera Contributor
  • 938 Views
  • 2 replies
  • 2 helpfuls

Perform Threat Lookup from Security Case

Does anyone have any ideas on how to run a Threat Lookup, or even better to automate the process, from the Security Case > Case Artifacts > Observables? In the attached screenshot, you'll see that running a threat lookup is not an option from the Act...

rcarmack1 by Kilo Guru
  • 922 Views
  • 1 replies
  • 0 helpfuls

How to integrate Joe Sandbox with ServiceNow SIR?

Hello,We are currently exploring the possibility of integrating Joe Sandbox with ServiceNow Security Incident Response (SIR).Has anyone implemented this integration before, and could you share some guidance on how to set it up?Does ServiceNow provide...

AndreeaI by Tera Contributor
  • 814 Views
  • 1 replies
  • 1 helpfuls

Issue with CI Look up rules in vulnerability response

We have multiple CI look up rules in our instance in place. But the problem is if we have multiple CI's with same IP or some source field for a cloud Management agent class and Linux Server class then Discovered item is getting created for Cloud Mana...

Amarnadh by Tera Contributor
  • 612 Views
  • 1 replies
  • 0 helpfuls

Unified Security Exposure Management (VR) - Update Tracking

Hi all, during my first USEM project, I noticed that updates made in the new USEM Workspace are not automatically tracked in Update Sets (US), as all the new VR-related tables are not extended from "Application File". Does this mean that all updates ...

josdsi by Tera Contributor
  • 626 Views
  • 1 replies
  • 0 helpfuls