Request risk change in the IT Remediation Workspace
You can request for the change in risk for a host vulnerable item or a remediation task in the IT Remediation Workspace.
Before you begin
Role required: sn_vul.remediation_owner
About this task
Starting from v21.0 of Vulnerability Response:
- You can raise a request to reduce the risk rating for a remediation task if all its vulnerability items are associated to a same Common Vulnerability Entry (CVE) or Third-party Entry (TPE) for which risk reduction is enabled.
- You cannot request risk reduction for a remediation task with vulnerable items associated to different CVEs even though the risk reduction is enabled for CVEs.
Note:
The compensating controls feature is available for host vulnerabilities
only.
Procedure
What to do next
You will receive a notification when your request is approved or rejected by the approver. For more information on the approval process, see Approve or reject requests in the Vulnerability Manager Workspace.