Remediation efforts in the Vulnerability Manager Workspace

  • Release version: Zurich
  • Updated July 31, 2025
  • 2 minutes to read
  • Summarize
    Summarized using AI
    This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.

    Summary of Remediation efforts in the Vulnerability Manager Workspace

    In the Vulnerability Manager Workspace, aRemediation Effortrepresents a static set of records linked to a specific watch topic. These records do not update automatically based on new data imports or changes to watch topics, allowing you to track remediation progress on a fixed collection of vulnerabilities or test results.

    Show full answer Show less

    Access to remediation efforts requires specific roles depending on the type of vulnerable items involved, such as host, application, container vulnerabilities, or configuration test results.

    Key Features

    • Categorization: Remediation efforts can be grouped by record type (Host Vulnerable Items, Application Vulnerable Items, Container Vulnerable Items, Configuration Test Results) for clearer organization and management.
    • Progress Monitoring: The Overview tab displays closed records over time, enabling you to monitor remediation progress visually with filterable graphs.
    • Details and Status Management: The Details tab provides information about the remediation effort’s associated watch topic and current status (Active or Inactive). You can deactivate remediation efforts, which frees any remaining active records for inclusion in new efforts.
    • Remediation Task Tracking: The Remediation Tasks tab shows tasks linked to the effort and the percentage of associated records remediated, helping track detailed remediation work.
    • Record Management:
      • The Vulnerable Items tab lists all records associated with remediation efforts related to host, application, and container vulnerabilities.
      • The Configuration Test Results tab displays relevant configuration test results for remediation efforts tied to those watch topics.

    Key Outcomes

    • When all records linked to remediation tasks are completed and closed, the remediation effort automatically transitions to an Inactive state, preventing reuse of these closed records in new remediation efforts.
    • Deactivating a remediation effort before all records are closed makes active records available for new remediation efforts, facilitating flexible remediation management.

    Practical Guidance for ServiceNow Customers

    This capability allows you to efficiently organize and track remediation activities linked to specific vulnerability watch topics within the Vulnerability Manager Workspace. By grouping efforts by record type and monitoring progress through visual and tabular views, you gain clear visibility into remediation status and can manage tasks effectively. Understanding the active and inactive states ensures you maintain control over which vulnerabilities are currently being addressed and which have been completed, supporting compliance and risk management goals.

    A Remediation Effort is a set of records that are associated with a watch topic. The records listed on a remediation effort are static. They are not updated by new import data or changes that you make to watch topics.

    Role required:
    • sn_vul.vulnerability_analyst, or sn_vul.vulnerability_admin for host vulnerable items (VITs)
    • sn_vul.app_sec_manager for application vulnerable items (AVITs)
    • sn_vul_container.vulnerability_analyst or sn_vul_container.vulnerability_admin for container vulnerable items (CVITs)
    • sn_vulc.admin for configuration test results (CTRs)

    With Active selected under the Remediation efforts list on the List page, click a remediation effort link to open it. To categorize the Remediation efforts into host vulnerable items (VITs), application vulnerable items (AVITs), container vulnerable items (CVITs), and configuration test results (CTRs), select the three dots menu on the Record Type column and then select Group by Record type.

    The related list items on the remediation effort record permit you to view overall remediation progress and status on the records associated with it.

    • On the Overview tab, monitor the records associated with this remediation effort that have been closed over time. To the right of the record, click the filter icon on the graph to see the filters applied to the data visualization.
    • On the Details tab, view details about the remediation effort including its associated watch topic and status (Active or Inactive). You can deactivate a remediation effort from this page. If you deactivate the remediation effort before all the records are closed, any active records become available to add to new remediation efforts.
    • On the Remediation Tasks tab, view the Remediation Tasks associated with this remediation effort. See the percentage of the records associated with this task that are remediated.
    • On the Vulnerable Items tab, view the records associated with this remediation effort. When all the records in a remediation task are completed and closed, the remediation effort transitions to Inactive. When a remediation effort is inactive, all the closed records associated with the remediation effort aren’t available to add to new remediation efforts.
      Note:
      The Vulnerable Items tab appears for the remediation efforts that are associated with watch topics in the Host Vulnerabilities, Application Vulnerabilities, and Container Vulnerabilities modules.
    • On the Configuration Test Results tab, view the Configuration Test Results associated with the Remediation Effort. When all the records in a remediation task are completed and closed, the remediation effort transitions to Inactive. When a remediation effort is inactive, all the closed records associated with the remediation effort aren’t available to add to new remediation efforts.
      Note:
      The Configuration Test Results tab appears for the remediation efforts that are associated with the watch topics in the Configuration Test Results module.

    For more details and UI actions you can perform from a remediation effort, see Use Remediation Effort records.