Use PDIs? Take our 5-minute survey to help shape the PDI roadmap.

SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

Resolved! Approvers Access to Read RITM

Hello, I need some suggestions to fix an issue that appeared on a customer's instance. Basically, some approvers aren't able to read RITMs they're approving. Which is strange, since from perspective on process, I don't understand how someone would ap...

Resolved! Can anyone explain how Risk Score on Vulnerable Item and Vulnerable Group is calculated? The risk score calculator and roll-up calculator doesn't really make sense :(

Can anyone explain how Risk Score on Vulnerable Item and Vulnerable Group is calculated?  The risk score calculator and roll-up calculator doesn't really make sense   I have already gone through the attached: https://docs.servicenow.com/bundle/londo...

Dark Knight by Giga Contributor
  • 5797 Views
  • 3 replies
  • 14 helpfuls

Resolved! Tanium-ServiceNow Integration

Hi, I am trying to explore the Security Operations tanium Integration plugin. Can I please get an information on what all field related data can be gathered with tanium? Example: IP address, serial number, MAC address etc. What would be a preffered s...

Resolved! "Specify Download" property in Instance Security Dashboard

Hey Folks, I have an unusual situation where we are trying to restrict download the file types in ServiceNow instance by means of "Instance security dashboard" So i have specified the file types under system property 'glide.ui.strict_customer_uploade...

Resolved! How is Rollup Calculator applied to a Vulnerability Group

Hi,     I need to understand how the process behind rollup calculators works. I do know it uses a weighted average of scores but what I need to know is how do you apply a calculator to a vuln group or groups. Unlike vulnerability calculators where th...

Jazz1 by Kilo Contributor
  • 4659 Views
  • 6 replies
  • 5 helpfuls

Resolved! Best Practice for Insider Threat Investigations

Does anyone have a best practice or workflow suggestion on using the SecOps module for Insider Threat investigations?  One requirement is making sure that the scope of knowledge is limited to just one group in the SOC.  Therefore, VM and IR teams are...

qcj3 by Kilo Guru
  • 4416 Views
  • 6 replies
  • 11 helpfuls

Resolved! Restricted Caller Access Privilege should be on Update set?

Hello everyone, I'm developing Security Incident Response module for a cliente. It's my first experience managing scopes. I have created an update set on Security Incident scope but when I do some changes I see the following records created on the up...

find_real_file.png