When Vulnerability managers and analysts create remediation efforts (REs), remediation Tasks (VUL) are automatically assigned to IT teams for remediation.

Before you begin

You have to create a remediation effort before you can use it to monitor remediation progress on Remediation Tasks.

Role required: sn_vul.vulnerability_analyst, sn_vul.vulnerability_admin, sn_vul_container.vulnerability_analyst, sn_vul.app_sec_manager, sn_vul_container.vulnerability_admin, or sn_vulc.admin

Procedure

  1. If not selected, in the upper left, click the List icon.

    The List view with active Remediation Effort records is displayed.

  2. From the List view landing page, with Active Remediation Efforts selected in the filtered lists, click a record to open it.
    The record displays. You can view the remediation tasks and records that are associated with the selected remediation effort.
  3. Refer to the following table for the actions that you can perform on the remediation effort record.

    After you create a record, it may take a few minutes for the remediation tasks and large numbers of records to display.

    UI action Description
    Add a tag To the right of the header, click the small tag icon. You might want to add text that further helps you identify this record. For example, you might want to add a tag that this record has PCI or other critical data.
    Add a work note to the record In the far right of the screen, click the Activity icon (lightening icon) and enter a work note. Click the icon to toggle the panel.
    Update the record On the Details tab, for all fields that are editable, click a field to select it, make your changes, and click Save to update the record.
    When displayed, click the filter icon to refine the data on the displayed page With the Remediation Tasks or Vulnerable Items tabs selected, On the far right, click the filter icon to show the filters that apply to the tab.

    In the panel that is displayed, click Advanced view to add or change filter conditions for the items on the page. Click Update to save your changes.

    For example, on the Vulnerable Items tab, you might prefer to add the Age field and enter a range to display only records from a specific time period. Records that match the conditions that you set are displayed in the list.

    Refine filters for items in a column Select a column and click the three vertical dots menu expand it and enter conditions to refine and group the data in the column.
    Filter out items or match items from a row in a column
    Say, for example, you want to view only records that have a specific vulnerability. From the list of records, select the row of the record in the Summary column. Click the vertical dot menu that is displayed and choose one:
    • Show matching - show all the other records that have this vulnerability.
    • Filter out - show all records that don’t have this vulnerability.
    Activate/deactivate a record If you mark a remediation effort inactive (Active check box not selected) prior to fixing all its records, any remaining, active records on the record will be moved to a new remediation effort when you create one for this watch topic.
  4. From the Remediation Tasks and Vulnerable Items tabs, you can drill down into an individual Remediation Task (VUL) and Vulnerable item (VIT) records.

What to do next

If you want to create a remediation task on-demand from a remediation effort, see Create a remediation task on-demand from Remediation Effort in the Vulnerability Manager Workspace.