---
sourceDocument: Australia Governance, Risk, and Compliance
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/governance-risk-compliance

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Governance, Risk, and Compliance

ft:clusterId :

    - grc

bundleId :

    - grc

workflow :

    - Technology


---

# Resilience metrics

# Resilience metrics {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 3 minutes to read

Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Resilience metrics

The Operational Resilience Workspace in ServiceNow provides a centralized landing page where you can monitor resilience metrics for services, business services, and organizational pillars.
This workspace helps you track the operational status, completed activities, red flags, and improvement suggestions to maintain and enhance your organization's resilience posture.
Show full answer Show less  

## Tabs and Data Configuration

* **Services overview tab:** Displays status and resilience metrics related to your services, leveraging the Service (CMDB) Main node configuration for service data.
* **Business services overview tab:** Shows resilience metrics and status of business services using the Opres with CSDM header Main node configuration.
* **Pillars overview tab:** Presents the status and metrics of organizational resilience pillars.

Typically, existing customers use the Service (CMDB) configuration, while new customers use the OpRes with CSDM configuration. Administrators can customize which tabs are visible based on organizational needs.

## Third-party Risk Management (TPRM) Integration

Starting with Operational Resilience release 21.0.x, TPRM risk assessments can be tracked as red flags within the workspace. These red flags appear in reports and overview pages related to business services, offerings, and processes when certain criteria are met, including:

* Risk rating is Very High and valid beyond the current date.
* Assessment states: Generating observations, Responses received, or Finalizing with third party.
* Assessment applies to a Company or engagement.

Users can open third-party risk assessments directly from Operational Resilience, with the same interface as the Vendor Management Workspace.

**Role considerations:**

* If TPRM is not installed, access to risk red flags requires IRM roles.
* If TPRM is installed, users with the TPRM viewer role can view risk red flags without needing IRM roles.

## Access to Reports and Roles

The Operational Resilience Workspace landing page displays separate reports tailored for BCM Professional and IRM Professional users. General reports are accessible to all Operational Resilience users.

**Role requirements for report access include:**

* **BCM reports:** Roles such as snoperres.bcmopresadmin, snoperres.bcmopresmanager, and snoperres.bcmopresuser control creation, management, and participation in BCM and Operational Resilience activities.
* **IRM reports:** Roles like snoperres.irmopresadmin, snoperres.irmopresmanager, and snoperres.irmopresuser govern access and participation in IRM and Operational Resilience activities.

These roles ensure that users have appropriate permissions to view and manage resilience data according to their responsibilities.  
You can view resilience metrics for services or business services, and pillars on the landing page of the Operational Resilience Workspace.

## Services, Business services, and Pillars overview {#opres-ws-homepage-overview__section_xj3_xyq_z5b}

The landing page displays a summary of the resilience metrics for the services or business services and pillars.  
The landing page of the Operational Resilience Workspace displays the following tabs:

* Services overview tab---Displays an overview of the status of the services in your organization. The Service (CMDB) Main node configuration fetches service-related data. Resilience metrics for the services, including their operational status, completed activities, red flags, and suggestions for improvements, are displayed on this tab. For information on the resilience metric displayed on the Services overview tab, see [Services overview tab](https://servicenow-prod.fluidtopics.net/Fl145qgFxY5i6b9jvDBTcw "The Services overview tab in the Operational Resilience Workspace provides a comprehensive summary of active services, highlighting any red flags or urgent issues, status of resilience activities like assessments, scenario analysis, self-attestations. It also offers suggestions for mitigating top risks or vulnerabilities and strengthening top controls.").
* Business services overview tab---Displays the status of the business services in your organization. The Opres with CSDM header Main node configuration sets up the business services-related data. Resilience metrics for the business services, including their operational status, completed activities, red flags, and suggestions for improvements, are displayed on this tab. For information on the resilience metric displayed on the Business services overview tab, see [Business services overview tab](https://servicenow-prod.fluidtopics.net/O9za0BH204czyiCuPqXOUQ "The Business services overview tab in the Operational Resilience Workspace provides a summary of active business services. It highlights red flags, urgent issues, and the status of resilience activities like assessments, scenario analysis, and self-attestations. It also offers suggestions for mitigating top risks or vulnerabilities and strengthening top controls.").
* Pillars overview tab---Displays the status and metrics of the pillars in your organization. For information on the resilience metric displayed on the Pillars overview tab, see [Pillars overview tab](https://servicenow-prod.fluidtopics.net/YYfEK0KPL46Nd5pw7l7yWA "A pillar is a foundational element that supports your organization's operational resilience. You can map business services and processes to these pillars in the Operational Resilience application to establish relationships and monitor their status on the dashboard in the Operational Resilience Workspace.").
{#opres-ws-homepage-overview__ul_kws_r4x_nvb}

Existing customers typically use the Service (CMDB) Main node configuration, while new customers use the OpRes with CSDM header Main node configuration. Depending on the setup done by your administrator, either the
Services overview or the Business services overview tab, is shown on the landing page.

Administrators or UI Builder administrators can show or hide these tabs from the Workspace view based on organizational needs. For information on how to display or hide either the Services overview or Business services overview tab, see [Show Business services overview tab in Workspace view](https://servicenow-prod.fluidtopics.net/C~wHzoToYdxDGaDFe8WxCQ "Starting with Release 20.1.x, the Services overview and Business services overview tabs are displayed on the landing page of the Operational Resilience Workspace. Administrators or UI Builder administrators can show or hide one of these tabs from the Workspace view based on organizational needs.").

## Third-party Risk Management (TPRM) integration {#opres-ws-homepage-overview__section_g1c_cxg_wfc}

Starting with Operational Resilience, release 21.0.x, you can track third-party risk assessments as red flags. Red flags appear in the Operational Resilience reports and the overview pages for business services, service offerings, and business processes.  
TPRM risk assessments are integrated into Operational Resilience if they meet the following conditions:

* The risk rating is Very High (using the overridden risk rating if applicable).
* The risk rating is valid beyond the current date.
* The state is one of the following: Generating observations, Responses received, or Finalizing with third party.
* The risk assessment applies to either the Company or an engagement.

{#opres-ws-homepage-overview__ul_rz2_1yg_wfc}Opening a third-party risk assessment from Operational Resilience displays the same view as when accessed directly from the Vendor Management Workspace.

To view Related lists and Red flags data in the Operational Resilience Workspace, you must have appropriate user roles as explained in this section.

TPRM is not installed
:   If TPRM is not installed, Operational Resilience users cannot access risk red flags without the IRM roles.

TPRM is installed
:   However, if TPRM is installed, Operational Resilience users can access both risk red flags and Third-party Risk Management red flags because they are assigned the TPRM viewer role. The TPRM viewer role includes risk viewer capabilities, thus eliminating the need for IRM roles.

For information on the roles required to view related lists and red flags data, see the "Roles to view related lists and Red flags data" table in [Create Service form](https://servicenow-prod.fluidtopics.net/My~C9mCC~oIqJqGHOlxgAQ "Use the Create New Service form in Operational Resilience Workspace to set up a business service and configure its related lists.").

## Displaying reports for different user roles {#opres-ws-homepage-overview__section_ndy_32v_zzb}

Separate reports are displayed in the Operational Resilience Workspace landing page for BCM Professional and IRM Professional users.

## Enhanced roles for accessing the reports {#opres-ws-homepage-overview__section_upb_qj4_2fb}

The roles installed with Operational Resilience now contain the relationship for BCM Professional and IRM Professional users.

All Operational Resilience users can access general reports on the landing page.

The roles required to access the BCM and IRM reports in the Operational Resilience Workspace are explained in the following table.
{#opres-ws-homepage-overview__table_fry_wq4_bgc__entry__4}

| Type of reports | Required roles | Information | Contains |
|-|-|-|-|
| BCM reports | sn_oper_res.bcm_opres_admin | Users with this role can create and delete both operational resilience activities and BCM activities. | * sn_oper_res.admin * sn_bcm.bcm_opres_manager {#opres-ws-homepage-overview__ul_vd5_js4_bgc} |
| BCM reports | sn_oper_res.bcm_opres_manager | Users with this role can create both operational resilience activities and BCM activities. | * sn_oper_res.manager * sn_bcm.bcm_opres_user {#opres-ws-homepage-overview__ul_ctt_qs4_bgc} |
| BCM reports | sn_oper_res.bcm_opres_user | Users with this role can participate in both operational resilience activities and BCM activities. | * sn_oper_res.user * sn_bcm.viewer {#opres-ws-homepage-overview__ul_gb2_5s4_bgc} |
| IRM reports | sn_oper_res.irm_opres_admin | Users with this role can create and delete both operational resilience activities and IRM activities. | * sn_oper_res.admin * sn_bcm.irm_opres_manager {#opres-ws-homepage-overview__ul_ull_zs4_bgc} |
| IRM reports | sn_oper_res.irm_opres_manager | Users with this role can create both operational resilience activities and IRM activities. | * sn_oper_res.manager * sn_bcm.irm_opres_user {#opres-ws-homepage-overview__ul_zzk_dt4_bgc} |
| IRM reports | sn_oper_res.irm_opres_user | Users with this role can participate in both operational resilience activities and IRM activities. | * sn_oper_res.user * sn_compliance.reader * sn_risk.reader {#opres-ws-homepage-overview__ul_o2r_gt4_bgc} |
[Table 1. Roles to access the reports]

{#opres-ws-homepage-overview__table_fry_wq4_bgc}


