Create a Vulnerability Response assignment rule for service support
Use the following script to create a rule that assigns vulnerable items for remediation based on the business services they impact.
Avant de commencer
Role required: sn_vul.vulnerability_admin
Starting with v30.0 of Vulnerability Response, the Administration console in the Security Exposure Management Workspace enables one-stop configuration for all Unified Security Exposure Management applications, including assignment rules, classification rules, and remediation targets. It provides consistent workflows across Vulnerability Response, Application Vulnerability Response, Container Vulnerability Response, and Configuration Compliance applications. For more information, see Configure rules to manage findings.
Pourquoi et quand exécuter cette tâche
You might prefer to perform this task only if you have advanced coding experience, or you have in-depth knowledge about the ServiceNow AI Platform and how assignment rules work.
With this rule, VIs are assigned according to how closely they match to the business services listed in your CMDB. If no related services, departments, or support groups are matched, VIs are assigned to the Vulnerability Analyst group.
This rule might help you reduce the number of VIs that are incorrectly assigned or remain unassigned after other assignment rules have already completed.
Procédure
Que faire ensuite
Review for more general information about assignment rules and the Reapply all vulnerability assignment rules scheduled job.