SecOps - License understanding

Geeky
Kilo Guru

Hi Experts,

How can I track licenses in SecOps for Security Incident and Vulnerability Response ? Under Subscription Management ==> Subscriptions I see 1000 devices but unable to understand the meaning for it.

find_real_file.png

Can you please help me to understand how these devices are related to roles for SecOps and how can it be tracked?

9 REPLIES 9

Thought to remind you on this tread. Call you confirm from where I can get the count?

Hi Geeki,

Sorry for the late answer. Honestly, I don't know the exact answer... I'm not using SecOp and VulnResp on a regular basis, have no current access to an instance with live data, and not enough time to try to configure a Vulnerability Scanner on my Personal Developer Instance.

So my suggestion is too... Contact your ServiceNow account manager to get an answer to this specific question. After that, please share it here, as I believe this is excellent information. 😅

I would investigate also into Vulnerability Scan Queue Entries [sn_vul_scan_q_entry], Security Event [em_event] as possible candidate.

Umesh Jawale
Kilo Contributor

Hi Shiva,

The information is good.

but can you tell me one more thing.

 

secops tables means: Security incidents and Vulnerability incident tables right?

 

Now lets Say:

in security incident i have records with CIs: A, b,c.

i take the unique count from this table: so i get he count as 3.

 

In Vulnerable items i have records with CI: A, d,c

i take the unique count from this table : so i get the count as 3.

 

Now do we say the total usage of sec ops licens is 3+3=6 in this case out of 1000 or as "A" is common in both of the them will be it 5 out of 1000?

Nitesh Tolani
ServiceNow Employee
ServiceNow Employee

The Vulnerability Response Licensing can be tracked if you have the plugin 'Vulnerability Response Licensing and Usage' installed. Starting version v16.5.4 , the new plugin Vulnerability Response Licensing and Usage is auto-installed with Vulnerability Response install/upgrade.  You can Navigate to All > Vulnerability Response > Administration > Usage Report.

More details can be found over here: https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB1124253