SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

"There are no playbooks available" in Workspace

We're on Quebec, and I followed this article to integrate SIR playbooks with Workspace: https://docs.servicenow.com/bundle/quebec-servicenow-platform/page/administer/workspace/task/integrate-playbook-workspace.html I've activated this out of box flow...

find_real_file.png find_real_file.png find_real_file.png find_real_file.png

Resolved! Categories for Security incident response

Hi, my organization is working to mature our Security incident process and are a relatively new team in terms of using Security Incident Response.  I'm wondering if there's an "out of box" list of security incident categories (like malware, email, vu...

Barry11 by Kilo Contributor
  • 2946 Views
  • 3 replies
  • 2 helpfuls

Resolved! How to manually create an AVIT in Penetration Test flow?

Is there a way to manually create an AVIT in Application Vulnerability Response? Our Pen testers are looking for a way to manually create an AVIT without a Penetration Assessment Request. I don't see that functionality, any suggestions?

Rachel3 by Tera Contributor
  • 1308 Views
  • 2 replies
  • 3 helpfuls

ACL write Access only for particular field?

I have created a custom checkbox in test table and also added ACL for that field but only the sn_vulc_write role access to it but still i was not able to edit the checkbox i was getting security constraint error message, Then I have edited table leve...

Resolved! Sanitizing non HTML field

We are trying to sanitze feedback from web page, that is comming into a Comment field (string). The documentation mentiones the html_sanitize attribute can be used on all fields to fix that, however still after activating the attribute in dictionary,...

PavelP by Mega Sage
  • 2063 Views
  • 6 replies
  • 1 helpfuls

Resolved! SNow-Splunk ES integration

Hi all, I'm trying to integrate Splunk ES with Servicenow. The objective is to let Splunk ES open SIR on SNow and, when the SIR is closed, let it know to Splunk ES. I'm basically following this guide: https://docs.servicenow.com/bundle/orlando-securi...

Paolo6 by Kilo Expert
  • 3973 Views
  • 9 replies
  • 2 helpfuls

Resolved! I want to delete a record of Discovered Item

The linked CI from a third party scanner (Tenable.io) is imported into the "Discovered Item", but I would like to know how to remove it.The state of the record is "unmatched".The reason is that there is a request from the customer to delete the CI th...

nagaryu by Tera Contributor
  • 2197 Views
  • 4 replies
  • 2 helpfuls

Application Vulnerability - OWASP Top 10 Category

We have a requirement to correlate identified vulnerability with the OWASP Top category. For e.g. While manually creating vulnerability ( pen test) when a specific CWE is selected, if the selected CWE is mapped to one of OWASP Top 10 then the OWASP c...

Chetan21 by Tera Contributor
  • 1456 Views
  • 1 replies
  • 0 helpfuls