SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

Resolved! Data Loss Prevention integration with ServiceNow

Hi All, We are in need of integrating the DLP DB with ServiceNow to perform the DLP operation in ServiceNow Itself.  Ticket handling also will have to do it in the ServiceNow.  According to my plan. I have to create new application for DLP through st...

Resolved! What is the learning path for Secops ?

Hi ServiceNow Folks, Greetings. I am new to SecOps world and would like to start my Journey in SecOps. My first assignment  is to implement SecOps Security incident response in my organisation  i am basically from ITOM world with not so much strong b...

Satya24 by Mega Contributor
  • 2537 Views
  • 2 replies
  • 4 helpfuls

Resolved! Splunk Add-on for ServiceNow config

Morning!  I know that this is probably more of a Splunk side configuration issue, so I have posted to their forum as well, but i wanted to see if anyone has any experience with this setup.  I am getting an error when trying to set up the Splunk add o...

Resolved! How to Integrate SecureWorks with ServiceNow?

Hi All, I have a requirement on Security Incident Response as below. When a ticket is created in Secure Works then a Security Incident Response ticket in ServiceNow. Can anyone please help me with the Integration process. - Sai.

User177031 by Kilo Guru
  • 3208 Views
  • 3 replies
  • 5 helpfuls

Resolved! Tenable Scan

The tenable scan is running and bringing in new CI, when the CI come in the IP address is automatically setting itself to the name where we want the domain name to set itself to the name. How do i switch this?

Tyler36 by Tera Contributor
  • 1827 Views
  • 2 replies
  • 5 helpfuls

Resolved! Rapid7 and ServiceNow Vulnerability response integration

Hello. I've integrated SN and Rapid 7 successfully, but I'm trying find out how perform repadiation process properly. When I'm closing Vulnerable Item or Vulnerable group I have two option for closure: Wait for confirmation from next scan Close vulne...

find_real_file.png
Alex150 by Mega Sage
  • 2561 Views
  • 7 replies
  • 3 helpfuls

Resolved! Remediation target notification. Summary email?

Dear community,  From the doc I can read that "A summary email, per remediation target rule, is sent when one or more vulnerable items are either approaching its remediation target date or the remediation target date has passed." What does it mean ex...

Lorenzo8 by Mega Guru
  • 2657 Views
  • 3 replies
  • 1 helpfuls

Resolved! Can you manually import Tenable Nessus Results??

We are looking at the Security Operations module for possible deployment within our environment.  We use Tenable for vulnerability scanning.  WITHOUT using the Tenable.io® for Vulnerability Response plugin available in the store, can you manually imp...

Resolved! Reporting based on Security Tag Groups

I'm looking for a method of reporting on number of SIRs impacting CIs and Affected Users in a particular business division for leadership.  (i.e. HR, IT, Manufacturing, etc.)  I cannot use CI and Affected User attributes because often these do not li...

qcj3 by Kilo Guru
  • 2484 Views
  • 11 replies
  • 9 helpfuls

Resolved! Proper steps for Taxii profile setup

Hello All, I was looking to test the setup of a taxii profile in my developer instance. I followed the documentation on the SN website and what I found on the related website but I receive a 406 error when trying to connect. I checked with someone wh...

kmlutz4sn by Kilo Expert
  • 2326 Views
  • 3 replies
  • 1 helpfuls

Resolved! How does the ApproverUtils script include ACL work

According to the information provided by glennpinto's answer in this link, if there are field level ACL's defined on a table then a role having only a tableName.none ACL will not have visibility to those fields.  The role would need its own ACL's on ...

Andy H1 by Tera Expert
  • 3649 Views
  • 4 replies
  • 6 helpfuls