We're reclaiming inactive PDIs to keep them available for active builders. Learn what's changing, who's affected, and how to protect your work. Read More

SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

Resolved! Security Tickets

Is it possible to lock down an individual security incident ticket to the assignee and their manager to view and edit only? For example, if we had a checkbox to tick as "confidential", it would then lock it down to just the assignee and manager to vi...

Vulnerability Response Tables Mindmap

Here's a mindmap I've made, breaking down all of the many tables that come along with the baseline ServiceNow Vulnerability Response offering. My hope is that this provides value to ServiceNow developers and implementers new to the Security Operation...

ServiceNow Vulnerability Response Tablesv2.png
Nick Sessa by Kilo Sage
  • 3217 Views
  • 2 replies
  • 16 helpfuls

ServiceNow integration with QRADAR

I need all the detail about how to configure integration between ServiceNow and QRADAR (IBM). Please provide the specifics of steps after the QRADAR plugin is installed. Thanks for all the help.

Zubair Alam by Tera Contributor
  • 1643 Views
  • 1 replies
  • 2 helpfuls

Resolved! Exception Questionnaire

I am wondering how the Exception Questionnaire in Vulnerability Response is useful for approvers/where the answers can be found? I know the metric results and assessment instance questions are linked to the state change approval record, but they aren...

Jkelley by Tera Contributor
  • 2843 Views
  • 5 replies
  • 3 helpfuls

Resolved! machine_filter on Vulnerability response Microsoft TVM

Im trying to apply a machine_filter for importing machines from Microsoft TVM in VR. The filters the machines being imported as CIs, but doesn not filter the vulnerabilities on machines, so we end up with a lot of vulnerabilities that we do not want ...

obos-andreas by Giga Contributor
  • 2090 Views
  • 1 replies
  • 1 helpfuls

Deactivate or delete a Remediation Effort?

Could someone please guide me on how I can "delete" or "deactivate" a Remediation Effort? It seems according to ACLs, no one can delete an effort, even Admins.  But it appears there should be a way to deactivate one, but it is all grayed out.  Are th...

PJS_DFS_0-1713278760255.png
PJS_DFS by Tera Contributor
  • 1668 Views
  • 3 replies
  • 0 helpfuls

Best solution for VITs with multiple locations of vulnerabilities

We have various VITs, like for QID-106032 (Apache Log4j 1.X Detected), where in the results there are a dozen or two locations of Log4j jar files.  In these instances, each of those locations in owned by a separate application team. Is there a way to...

PJS_DFS by Tera Contributor
  • 1323 Views
  • 2 replies
  • 0 helpfuls

Resolved! Adding new states to Security Incidents

Got a request in to add new States into Security Incidents. I've been looking to try and add these, but while I can add them to the Choice List, they will not appear in the drop down at any point. Also can't see to add anything to the Process Flow as...

Resolved! Custom Qualys Integration

Hi folks!Is there anybody out there that might be able to simplify an explanation, point to a more distinct document or KB article that explains the linkages of the Integration to the source integration, to the source integration, the integration par...

Joe Kline by Kilo Guru
  • 2802 Views
  • 4 replies
  • 1 helpfuls