---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Integrate with other applications

# Integrating Application Vulnerability Response with other applications {#ariaid-title1}

* Release version: Australia
* 
* Updated March 13, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read

Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Integrating Application Vulnerability Response with other applications

Application Vulnerability Response (AVR) supports integration with third-party vulnerability management systems to enrich vulnerability data within your ServiceNow instance.
These integrations enable you to import and manage application vulnerability information from external systems and vendors, enhancing your ability to track and remediate vulnerabilities effectively.
Show full answer Show less  

## Third-party Integrations

AVR supports multiple third-party integrations, including but not limited to:

* Wiz Vulnerability Response Integration
* Fortify Vulnerability Integration
* GitHub Application Vulnerability Integration
* Invicti Vulnerability Integration
* Veracode Vulnerability Integration
* Black Duck Vulnerability Response Integration
* Manual ingestion of vulnerabilities
* Atlassian Jira Integration for agile issue creation

**Important:** AVR does not support multi-source integrations, so if multiple third-party integrations are active, there is no automatic deduplication of application vulnerable items across these sources.

## Relationship with CSDM Tables

AVR and related applications contribute to and consume data from Common Service Data Model (CSDM) tables. This interconnection allows other ServiceNow Security Operations products to leverage enriched vulnerability data, improving overall security management.

## Integration Processing and Performance

During integration operations, data is processed in paged import queue entries with a one-hour processing limit per entry. To manage long processing times and avoid timeouts, AVR versions 18.2.4 and later send periodic timestamps (heartbeats) indicating active processing status.

If an import queue entry exceeds the one-hour limit without progress (based on the Last Record Processed timestamp), the system will time out the entry to prevent delays.

Two system properties control this behavior:

* **snseccmn.recordthresholdheartbeat:** Sets how many records are processed before sending a heartbeat.
* **snseccmn.maximumheartbeatdelay:** Defines the maximum allowable time without a heartbeat before timing out.

## Managing and Running Integrations

Integrations are typically scheduled to run automatically but can be executed manually as needed. To run an integration manually, users require the **snvul.appreadintegrations** role and can navigate to:

*All \> Application Vulnerability Response \> Administration \> Integrations*

From there, select the desired integration and click **Execute Now**.  
Vulnerability Response includes support for third-party integrations.

## Third-party integrations {#avm-integrations__section_k3d_nzy_mbb}

Application vulnerability integrations help enrich the application vulnerability data on your instance by retrieving data from external systems and vendors. See the following overview topics for more information about supported integrations:

* [Wiz Vulnerability Response Integration](https://servicenow-prod.fluidtopics.net/aekuuwJ9iIMNyepexD5scw "Import vulnerability and compliance data from Wiz scanners into your ServiceNow AI Platform instance to help you get deeper insights into your cloud infrastructure risks. These integrations provide you with a comprehensive assessment of your overall cloud security posture and help you drive remediation actions directly from your instance.")
* [Fortify Vulnerability Integration](https://servicenow-prod.fluidtopics.net/Ua~e5pANzgi~D2xgaYrzcw "The Fortify Vulnerability Integration uses data imported from the Fortify product to help you determine the impact and priority of flaws in your code.")
* [GitHub Application Vulnerability Integration](https://servicenow-prod.fluidtopics.net/MbOi_yWO4ClJ8gEPxICBWw "The GitHub Application Vulnerability Integration imports Static application security testing (SAST) and Software Composition Analysis (SCA) data to help you view vulnerability alerts in the repositories in your GitHub environment.")
* [Invicti Vulnerability Integration](https://servicenow-prod.fluidtopics.net/Mu_fL94Ze3w7jH6sd6KtZg "The Invicti Vulnerability Integration uses application data imported from the Invicti product to help you determine the impact and priority of flaws in your code.")
* [Veracode Vulnerability Integration](https://servicenow-prod.fluidtopics.net/UaJdOAyH3lz8Z703obNHTg "The Vulnerability Response Integration with Veracode application uses data imported from the Veracode product to help you determine the impact and priority of flaws in your code.")
* [Vulnerability Response Integration with Black Duck](https://servicenow-prod.fluidtopics.net/JqhOcjL1NmWv7pQUNe5ODg "The Vulnerability Response integration with Vulnerability Response Integration with Black Duck uses the data that is imported from the Black Duck Software Composition Analysis (SCA) tool to help you determine the impact and priority of the flaws in your code.")
* [Manual ingestion of vulnerabilities for Application Vulnerability Response](https://servicenow-prod.fluidtopics.net/JqBpUPzUkr33JrujG7RXYg "Security professionals and application testers can create and manage the application penetration test findings within the Penetration Testing Workspace.")
* [Atlassian Jira Integration](https://servicenow-prod.fluidtopics.net/cmCLwGl6beN5RwzHfE0PQw "The Atlassian Jira integration with Vulnerability Response enables you to leverage different issue-tracking and agile management tools for tracking efforts of vulnerability remediation.")  
  Important:  
  In the Vulnerability Manager Workspace, you can create an agile issue manually using the [list action](https://servicenow-prod.fluidtopics.net/faF33fqOIp98D_1M~4Cuiw "When a list action: Create Jira Issue is triggered, records that match the rule configuration criteria should be considered for “Create Jira Issue” and those records should be ingested into the sn_vul_agile_tool_manifest table with the mapping selected in the configuration rule.") and [form action](https://servicenow-prod.fluidtopics.net/jL2M2xkFTLVzhGd_VGVsFQ "Create an agile issue manually using form action. If the record is matched with any configuration rule condition, then a pop-up box will be populated with values that are selected in the configuration rule and if it does not match any criteria then the user will be allowed to select values for pre-defined fields.") to track the remediation of AVITs and RTs.

{#avm-integrations__ul_nx1_jb3_vzb}  
Note:  
Multi-source integrations are not supported in Application Vulnerability Response. Third-party integrations are treated separately. If more than one third-party integration application is in use in your environment, there is no application vulnerable item
(AVI) deduplication across integrations.

## Vulnerability Response applications and CSDM tables {#avm-integrations__id_gkd_tzh_q2c}

The Vulnerability Response, Application Vulnerability Response, third-party vulnerability integrations and Software Bill of Materials applications manage (contribute data to) CSDM tables. These applications also use data from CSDM tables that other applications generate. Several ServiceNow products, therefore, benefit from and add value to these Security Operations applications. See [Vulnerability Response applications and CSDM tables](https://servicenow-prod.fluidtopics.net/CZ4qzzPgaYYJ6UkJzQAHiQ "The Vulnerability Response, Application Vulnerability Response, third-party vulnerability integrations and Software Bill of Materials applications manage (contribute data to) CSDM tables. These applications also use data from CSDM tables that other applications generate. Several ServiceNow products, therefore, benefit from and add value to these Security Operations applications.") for more information.

## Additional notes for integrations {#avm-integrations__section_aw5_cnz_wvb}

During integration execution, multiple processes are generated, and data is received in the form of pages. Each process can contain one or more import queue entries with attached data in pages. These entries must process the data within the one-hour time limit. However, if the payload size is large, the processing time may exceed one hour or get stuck, resulting in an integration timeout error. The integration continues to process the data despite the timeout error. To avoid this miscommunication, starting from version 18.2.4 of Application Vulnerability Response, timestamps (heartbeats) are sent periodically to indicate if the queue is active and processing data. The Last Record Processed field in the Import Queue Entry page is updated based on the count of records the import queue creates or updates. In case an import queue entry exceeds the one-hour time limit, the system checks the Last Record Processed field to see if it is also older than one hour. If it is, this indicates that the import queue entry is stuck, and it is timed out to prevent any further delays in processing.  
Note:  
The Last Record Processed field is updated based on what is defined in the following system properties:

* sn_sec_cmn.record_threshold_heartbeat: Defines the number of processed records, after which the heartbeat (timestamp) is sent to the import queue entry.
* sn_sec_cmn.maximum_heartbeat_delay: Defines the time after which the import queue entry must be timed out.
{#avm-integrations__ul_g23_sgw_dyb}

Vulnerability integrations for Application Vulnerability Response are configured to run on a scheduled basis. However, you can run them manually when needed.

Role required: sn_vul.app_read_integrations

1. Navigate to AllApplication Vulnerability ResponseAdministrationIntegrations.
2. Open the record for the integration that you want to run.
3. Click Execute Now.
{#avm-integrations__ol_ivd_2y1_n2c}

*[\>]: and then


