sn_vul.remediation_owner role attribution
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
3 hours ago
Hi Community,
I'm finally posting this question as it's something that has been puzzling me for a while.
As per the docs here
| Assign sn_vul.remediation_owner - Remediation Owner to users and groups. | Users and groups with this role remediate vulnerabilities assigned to them or to a group they belong to. Groups or users with this role view and update the records assigned to them or to a group they belong to. |
In my scenario, this role attribution needs to be faily dynamic, as there are potentially hundreds of groups and user that could be involved in the remediation of a vulnerable item. The assignment logic is based on various factors within the CI entries, and these values could change / new CIs added etc...
I also read this note for a different documentation page:
Note:
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
3 hours ago
Have you added the sn_vul.remediation_owner role to the itil role? That way anyone with itil role automatically inherits sn_vul.remediation_owner.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2 hours ago
No I haven't (yet) but my question is actually pointing towards the note mentioned in the document I shared: 'The sn_vul.remediation_owner role is also automatically assigned when the itil role is assigned to a user.'
I'm trying to clarifiy this statement before making any modifications myself, as this (statement, and your suggestion) seems to be OOTB behaviour, but I don't see anything in the system that would verify this
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2 hours ago
Do you have this record in your instance? My itil role contains sn_vul.remediation owner and was created in 2019 with the Application = Vulnerability Response. I'm thinking that VR would have had this role contains as part of activation/installation.
nav_to.do?uri=sys_user_role_contains.do?sys_id=5b6f0490b39033002824070416a8dcf6
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
an hour ago
Nop, i don't have this role, my VR app was installed on Oct 1, 2025
