Get a first look at what's coming. The Developer Passport Australia Release Preview kicks off March 12. Dive in! 

SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

Resolved! How to Integrate SecureWorks with ServiceNow?

Hi All, I have a requirement on Security Incident Response as below. When a ticket is created in Secure Works then a Security Incident Response ticket in ServiceNow. Can anyone please help me with the Integration process. - Sai.

User177031 by Kilo Guru
  • 3410 Views
  • 3 replies
  • 5 helpfuls

Resolved! Tenable Scan

The tenable scan is running and bringing in new CI, when the CI come in the IP address is automatically setting itself to the name where we want the domain name to set itself to the name. How do i switch this?

Tyler36 by Tera Contributor
  • 2169 Views
  • 2 replies
  • 5 helpfuls

Resolved! Rapid7 and ServiceNow Vulnerability response integration

Hello. I've integrated SN and Rapid 7 successfully, but I'm trying find out how perform repadiation process properly. When I'm closing Vulnerable Item or Vulnerable group I have two option for closure: Wait for confirmation from next scan Close vulne...

find_real_file.png
Alex150 by Mega Sage
  • 3004 Views
  • 7 replies
  • 3 helpfuls

Resolved! Remediation target notification. Summary email?

Dear community,  From the doc I can read that "A summary email, per remediation target rule, is sent when one or more vulnerable items are either approaching its remediation target date or the remediation target date has passed." What does it mean ex...

Lorenzo8 by Mega Guru
  • 2970 Views
  • 3 replies
  • 1 helpfuls

Resolved! Can you manually import Tenable Nessus Results??

We are looking at the Security Operations module for possible deployment within our environment.  We use Tenable for vulnerability scanning.  WITHOUT using the Tenable.io® for Vulnerability Response plugin available in the store, can you manually imp...

Resolved! Reporting based on Security Tag Groups

I'm looking for a method of reporting on number of SIRs impacting CIs and Affected Users in a particular business division for leadership.  (i.e. HR, IT, Manufacturing, etc.)  I cannot use CI and Affected User attributes because often these do not li...

qcj3 by Kilo Guru
  • 3041 Views
  • 11 replies
  • 9 helpfuls

Resolved! Proper steps for Taxii profile setup

Hello All, I was looking to test the setup of a taxii profile in my developer instance. I followed the documentation on the SN website and what I found on the related website but I receive a 406 error when trying to connect. I checked with someone wh...

kmlutz4sn by Kilo Expert
  • 2523 Views
  • 3 replies
  • 1 helpfuls

Resolved! How does the ApproverUtils script include ACL work

According to the information provided by glennpinto's answer in this link, if there are field level ACL's defined on a table then a role having only a tableName.none ACL will not have visibility to those fields.  The role would need its own ACL's on ...

Andy H1 by Tera Expert
  • 4210 Views
  • 4 replies
  • 6 helpfuls

Resolved! Vulnerability Group Assignments

Hello, In the Vulnerability Response Module, we recently added Assignment Rules. Is there a way to apply these assignment rules to vulnerability groups that were created before the rules were setup?   I already wrote a script to assign vulnerable ite...

Mike_R by Kilo Patron
  • 2547 Views
  • 4 replies
  • 4 helpfuls

Resolved! Remediation Target Rules - how to delete?

What role is needed to be able to delete Remediation Target Rules? I have sn_vul.admin role but I don't get the option to delete them. Is there another role specific to these rules?