---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Add Early Warning criteria to a risk rule

# Add Early Warning criteria to a risk rule {#ariaid-title1}

* Release version: Australia
* 
* Updated July 9, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Add the Early Warning flag or Admiralty score as a weighted criterion in a risk rule to prioritize vulnerable items based on vulnerability intelligence data.

## Before you begin

The Early Warning for Security Exposure Management plugin must be installed and at least one integration run must have completed so that Early Warning fields are available in the risk rule criteria builder.

Role required: sn_sec_calculator.admin

## Procedure

1. Navigate to WorkspacesSecurity Exposure Management Workspace.
2. In the navigation pane, select Administration.
3. Under the Configurations section, locate Risk calculators tile.
4. Select Review to open the Risk calculator page.
5. Open the risk rule to which to add the criterion, such as Default Risk Rule.  
   The risk rule form opens showing the existing criteria, condition logic, and the Criteria section where you add new scoring inputs.
6. In the Criteria section, select + New criteria.  
   A new criteria row expands with fields for Reference table, Table, Field, and Weightage %.
7. In the Reference table field, select Vulnerable Item --\> Vulnerability.
8. In the Table field, select National Vulnerability Database Entry.
9. In the Field dropdown, type <kbd class="ph userinput">armis</kbd> to filter the field list, then select the desired Armis Early Warning field.  
   Available Armis Early Warning fields include the early warning flag and the admiralty score. To apply a weight based solely on whether early warning is enabled, select the early warning flag field. To incorporate confidence
   level, select the admiralty score field and configure it as an additional condition.
10. In the Weightage % field, enter the percentage weight to assign to this criterion.
11. Select Update to save the new criterion.

## What to do next

To preview how the updated risk rule scores existing vulnerable items, select Preview in the Criteria section before saving the rule.
**Related tasks**   

* [Define fields and weights for the risk rule for Unified Security Exposure Management risk calculators](https://servicenow-prod.fluidtopics.net/_rGD5l29QxKdjvNVNzr75Q "Customize risk rule parameters and weights to generate risk scores that reflect your organization's specific finding and asset data. By selecting relevant fields for the risk rule, you can create an effective risk scoring framework that meets your organization's unique needs.")

*[\>]: and then


