SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

Security Incident Response - Adding OOTB fields

Hi, I am trying to add the below two fields to our SIR workspace SIR form: Correlation IDExternal URL I have bee able to this this in the back end but I cannot see a view for SIR workspace for configure the layout in that view.  Please can someone he...

AoifeS by Tera Contributor
  • 238 Views
  • 1 replies
  • 0 helpfuls

Resolved! In VR: When would you use SLAs rather than Remediation Targets

Hello, We have the API integration with Rapid 7's InsightVM and are ready to set timelines on vulnerability remediation. We have  4-5 tiers for remediation timelines and I'm trying to determine if we should use SLAs or Remediation Targets. It seems l...

LeslieC by Tera Expert
  • 3430 Views
  • 9 replies
  • 13 helpfuls

Remediation Grouping Strategy (Windows/RHEL)

Hello Community,We are currently designing remediation task rules for Windows and RHEL OS patching in VR and are evaluating different grouping approaches (for example, by CVE, by asset, or by solution).We also have Vulnerability Solution Management e...

Akhil_M by Giga Contributor
  • 181 Views
  • 2 replies
  • 1 helpfuls

Resolved! Penetration testing on a single Application.

Hello Everyone,I'm New to Penetration Testing in ServiceNow.I've gone through several Blogs, documents and Knowledge article but i like to know, how it works in practical.I have a Single Application "ABC Insur" it doesn't have any CI items it is a St...

daiva by Tera Guru
  • 5729 Views
  • 16 replies
  • 6 helpfuls

Remediation Target when the Ticket is reopened.

Hi Team, We’re working on Application Vulnerability Response and have encountered an issue: when an AVIT is marked as Resolved or Closed by a user and later reopened either by the scanner or manually, the remediation target date does not update. Is t...

MdA3 by Tera Contributor
  • 168 Views
  • 1 replies
  • 0 helpfuls

CVR Integration with Cortex

Hi All, does anyone here have experience integrating CVR with Cortex. Specifically related to the link I have attached. Any help is greatly appreciated and thank you! https://www.paloaltonetworks.com/cortex/cloud/container-security

Manual upload of Vulnerable Items

Hi All, I am doing a manual import of Vulnerable Items to test how it works. I have a Windows Server CI which has a FQDN, IP Address and a Hostname. When I do the manual import through the UI, the resulting vulnerable item is linked to a newly create...

Reapply Lookup Rules UI action not reapplying all VITs

Hi, We recently updated our VR plugin to 26.5.3 and I have noticed that the reapply lookup rules UI action on the discovered items table is not updating all of the VITs that it used to.We have a process for unmatched/unclassed CI's where someone goes...

dan167 by Tera Guru
  • 269 Views
  • 2 replies
  • 0 helpfuls

Triggering logging when the role has elevated

The requirement is to trigger the logging as soon has a role that he has elevated to log what operation he will do during its elevated period.  I had found the following For a script to ensure the notification only triggers for a specific role (e.g.,...

SylvainMerc by Tera Contributor
  • 392 Views
  • 4 replies
  • 1 helpfuls