Security posture dashboards

  • Release version: Xanadu
  • Updated August 1, 2024
  • 2 minutes to read
  • Summarize
    Summarized using AI
    This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.

    Summary of Security Posture Dashboards

    The Security Posture Dashboards in ServiceNow enable customers to monitor security KPIs effectively. These customizable dashboards consolidate key security information for multiple instances, providing a centralized view of instance security health.

    Show full answer Show less

    Key Features

    • Access: Navigate to All > Security Center to access the dashboards, primarily located in the Overview tab.
    • Dashboard Components: The dashboard features multiple sections with widgets covering various security aspects:
      • At a Glance: Displays an overview including compliance score, customer actions due, and update information.
      • Users: Shows user-related information and trends over time, with detailed views available on selection.
      • Login Protection: Provides insights into failed login attempts, particularly for privileged users.
      • Instance Hardening: Lists recommended security settings to enhance instance security, highlighting priority and potential impact.
      • Data Protection: Offers an overview of classified data, including personally identifiable information (PII) and tracks data exports.
    • Multi-Instance View: The All Instances tab allows viewing security posture across non-production instances, providing a comprehensive overview without switching contexts.
    • Dashboard Customization: While the original dashboard cannot be customized, users can duplicate it and modify the duplicate as needed.

    Key Outcomes

    By utilizing the Security Posture Dashboards, ServiceNow customers can gain immediate visibility into their security status, make informed decisions regarding instance hardening, and effectively track user and data protection metrics. This comprehensive view aids in maintaining compliance and enhancing overall security posture across instances.

    Use the customizable single and multi-instance security posture dashboards to monitor your security KPIs. These dashboards consolidate the important information regarding the security of your instances in a single location and include a number of base system dashboard widgets.

    Accessing the Security posture dashboards

    Access the Security posture dashboard by navigating to All > Security Center. The Security posture dashboard content is located in the Overview tab.

    Dashboard components

    The dashboard is divided into multiple sections containing widgets related to an aspect of instance security. Select any widget on the dashboard to view more detail on this aspect of your instance's security.

    The At a glance section displays an overview of security on an instance, such as a compliance score, customer actions due, and update and release information for the instance. At a glance
    The Users section provides information on the users in your instance. The widgets on this section show user information, and a line graph showing changes to this information over time. Select a widget to view more detail Users
    The Login protection section includes information on failed logins, including failed login attempts for privileged users. Login protection
    The Instance hardening section contains recommended hardening security settings that you can change to improve instance security. Use this section to see the priority and potential impact of these changes. Instance hardening
    The Instance trends dashboard displays the results of the access controls auditor scan suite. Instance trends
    Use the Data protection section to see an overview of classified data, such as personally identifiable information (PII). The dashboard also tracks exports of classified data, Data protection

    Review multiple instances

    Multi-instance view of the security posture dashboard

    View the security posture of your non-production instances without leaving your production instance using the All instances tab at the top of the dashboard. The All instances tab displays a condensed version of the same information as the This instance tab, but also includes data from all your non-production instances.

    By default, the All instances tab displays information on the production instance you are logged into, and all non production instances across all your production environments.

    You may add or remove instances that appear on this dashboard by modifying your trust configuration. Providing data visibility between instances allows them to appear within your dashboard. For details on this process, see Configure data synchronization for applications.

    Dashboard customization

    The instance security posture dashboard can’t be customized, but you can duplicate the dashboard by selecting the More Actions (More actions) icon and selecting Duplicate. You can change the duplicate dashboard.