Combined Unified Security Exposure Management (USEM) release notes for upgrades from Zurich to Australia
Summarize
Summary of Combined Unified Security Exposure Management (USEM) Release Notes for Upgrades from Zurich to Australia
This consolidated guide covers the Unified Security Exposure Management (USEM) release notes for ServiceNow customers upgrading from Zurich to Australia. USEM in Australia introduces a unified architecture with enhanced AI capabilities, improved integrations, streamlined workflows, and expanded administrative controls to help vulnerability management teams efficiently identify, prioritize, and remediate security exposures across diverse asset types, including AI assets.
Show less
Upgrading to the Australia release is essential to access the new AI native experience branded as ServiceNow Otto, replacing the former Now Assist for Vulnerability Response. The upgrade requires careful preparation, including reviewing pre- and post-upgrade tasks and leveraging the Migration Assistant tool to reduce risk and manual effort in migrating data and configurations.
Key Features
- AI-Powered Security Exposure Management: Introduction of ServiceNow Otto for USEM provides AI-driven exposure analysis with natural language queries, enabling teams to gain insights from their own data and prioritize remediation effectively.
- Fix Intelligence Application: New capability to group and prioritize remediation fixes by correlating findings from multiple vulnerability sources like Qualys, Rapid7, Tenable.io, Wiz, and Microsoft Defender Vulnerability Management, allowing remediation by fix instead of individual findings.
- Enhanced Integrations:
- Wiz integration improvements include routing AI security findings into AI-specific exposure tables and optional asset integration configuration.
- Invicti Platform integration supports importing applications, scans, vulnerabilities, and lifecycle management synchronizations.
- Microsoft Defender integration is consolidated into a unified plugin supporting host and container vulnerabilities with certificate-based authentication.
- AWS Integration supports AWS Inspector and AWS Security Hub vulnerability and compliance findings.
- Optimized Tenable.io Compliance Results ingestion improves performance and scalability.
- Qualys integration upgraded to support newer APIs and additional data fields for enhanced visibility.
- GitHub Secret Scanning now supports importing generic secrets mapped to Application Vulnerable Items.
- Security Exposure Management Workspace Enhancements:
- Administrators can assign roles, manage watchdogs, configure background jobs, advanced settings, security tags, and severity mappings centrally.
- Bulk approval and rejection of exception requests reduce manual effort in high-volume workflows.
- Exception management includes new KPI tiles for better visibility of exception health and trends.
- Remediation tasks can now be created directly from list views by remediation owners, improving workflow efficiency.
- Improved Vulnerability Assessment Workflows:
- Conditional filtering of configuration items in assessments.
- Automatic population of Business Application data on Application Vulnerable Items (AVITs) from SBOM assessments.
- Priority roll-down feature ensures consistent severity prioritization from assessments to associated vulnerable items.
- Remediation Task Rule Modes: New “Match First” execution mode allows assigning each finding to a single remediation task for streamlined processing, alongside the default “Match All” mode.
- AI Security Exposure Management: Dedicated findings and remediation tasks for AI vulnerabilities, validations, and posture findings are now integrated and manageable alongside other USEM findings.
- Security Content Tagging and Access Control: Security tags and groups can be created and applied to incidents, tasks, vulnerable items, observables, and cases to enable metadata management and define access permissions.
- Configuration and Performance Enhancements:
- Auto-close rules are now processed in parallel, reducing time for large datasets.
- Direct JDBC connection to Microsoft SCCM improves data ingestion without opening additional firewall ports.
- Severity mapping standardizes severity fields from third-party sources for consistent reporting.
- Deferred Migration Option: Customers not ready to migrate to USEM immediately can defer the migration while maintaining access to the Migration Assistant when ready.
Key Outcomes for ServiceNow Customers
- Enhanced AI-Driven Vulnerability Management: Leverage AI-native capabilities to analyze and prioritize exposures, including AI asset vulnerabilities, improving security posture and operational efficiency.
- Unified and Streamlined Workflows: Consolidated integrations and enhanced workspace capabilities reduce manual effort, simplify remediation task creation, and enhance exception management processes.
- Improved Data Quality and Visibility: Expanded and optimized integrations ensure more comprehensive and accurate vulnerability and compliance data across cloud, container, AI, and traditional IT assets.
- Centralized Administration: Manage roles, tags, watchdogs, settings, and approvals directly from the Security Exposure Management workspace, decreasing the need to navigate multiple configuration pages.
- Scalable and Flexible Upgrade Path: Use the Migration Assistant to reduce migration risks and take advantage of deferred migration if immediate upgrade is not feasible, ensuring alignment with organizational readiness.
- Licensing Considerations:
Consolidated page of all release notes for Unified Security Exposure Management (USEM) from Zurich to Australia.
How to use this page
To help you prepare for your upgrade, we have combined the cross-family Unified Security Exposure Management (USEM) release notes onto one page. Read this summary of the new features, changes, and updated information for your product from Zurich to Australia.
Important information for upgrading Unified Security Exposure Management (USEM) to Australia
Before you upgrade to Australia, review these pre- and post-upgrade tasks and complete the tasks as needed.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
Starting with Australia Patch 5, Now Assist for Vulnerability Response is being prepared for future deprecation. It will be hidden and no longer installed on new instances but will continue to be supported. For details, see the Deprecation Process [KB0867184] article in the Now Support Knowledge Base. ServiceNow Otto® is the new AI experience brand. This change is reflected in the name of ServiceNow products, including the Now Assist for Vulnerability Response product name, which will be replaced with ServiceNow Otto for Unified Security Exposure Management. Your product entitlements remain unchanged. Check your entitlements to determine your access to specific features. To access the new AI native experience in the Unified Security Exposure Management (USEM) workspace, you must upgrade to the Australia release.
Unified Security Exposure Management is available to all customers who are entitled to Vulnerability Response. Migrating to USEM is a major upgrade that introduces a unified architecture for improved performance, scalability, and streamlined workflows. Before upgrading, leverage the Migration assistant for Unified Security Exposure Management that is available as an update set. See the Migration Guidance to Unified Security Exposure Management [KB2556844] Knowledge Base article for more information. This tool provides a guided experience for plugin installation, data mapping, rule migration, and post-migration validation, reducing risk and manual effort. Ensure that all integrations and workflows are reviewed for compatibility before initiating migration. For more information, see Migrating to USEM and Migrate to USEM. |
New features
Between your current release family and Australia, new features were introduced for Unified Security Exposure Management (USEM).
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
|
Changes
Between your current release family and Australia, some changes were made to existing Unified Security Exposure Management (USEM) features.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
|
Removed
Between your current release family and Australia, some Unified Security Exposure Management (USEM) features or functionality were removed.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Deprecations
Between your current release family and Australia, some Unified Security Exposure Management (USEM) features or functionality were deprecated.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Activation information
Review information on how to activate Unified Security Exposure Management (USEM).
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
Install Unified Security Exposure Management by requesting it from the ServiceNow Store. |
Additional requirements
If any additional requirements were introduced or changed for Unified Security Exposure Management (USEM) we have noted them here.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Browser requirements
If any specific browser requirements were introduced or changed for Unified Security Exposure Management (USEM) we have noted them here.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Accessibility information
Review details on accessibility information for Unified Security Exposure Management (USEM), such as specific requirements or compliance levels.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Localization information
If there are specific localization considerations for Unified Security Exposure Management (USEM) we have noted them here.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Highlight information
If there are specific highlight considerations for Unified Security Exposure Management (USEM) we have noted them here.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
See Unified Security Exposure Management for more information. |