---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Configure

# Setting up, installing, and configuring the Configuration Compliance application {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Before you run the application in your ServiceNow AI Platform® instance, you must
first download and install the Configuration Compliance application from the ServiceNow® Store. This application is available as a separate
subscription.

Complete the following setup checklist steps listed in the following table prior to
installation. These setup tasks are required for a smooth installation and configuration.

For more information about released versions of the Configuration Compliance
application, as well as third-party and ServiceNow applications that are
compatible with it, see the [Vulnerability Response Compatibility Matrix and Release Schema
Changes \[KB0856498\]](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB0856498) article in the HI Knowledge Base.

For more information about getting entitlements for store apps, see [Security Operations and the ServiceNow Store](https://servicenow-prod.fluidtopics.net/jBa~11BcDnkn~s9DxBYDkw "Starting with Madrid, all Security Operations applications and supported integrations are available for download from the ServiceNow Store. This allows you to obtain new and updated features more rapidly. Before you can use any Security Operations applications, you must verify that you have entitlement to them (that is, you have valid licenses to use them), download them from the ServiceNow Store, and activate them.").
{#cc-configuring__table_wyt_b3p_v5b__entry__2}

| Setup tasks | Description |
|-|-|
| Verify that you have the required ServiceNow roles for your instance. | The following roles are required for installation, configuration, and verification of expected results: * If not already assigned, the System Administrator \[admin\] installs the application and assigns the Configuration Compliance Admin \[sn_vulc.admin\] role. * The Configuration Compliance Admin \[sn_vulc.admin\] oversees configuration and verifies expected results. * The Remediation Owner \[sn_vulc.remediation_owner\] reads and updates assigned records. The sn_vulc.remediation_owner role is also automatically assigned when any user is assigned the itil role. {#cc-configuring__ul_d2d_23p_v5b} |
| Supported integrations | Before you can use Configuration Compliance to remediate configuration items, you must install a third-party scanner integration and perform at least one network scan. Verify that the Vulnerability Response application is installed and activated prior to configuring supported third-party integrations. See [Install Vulnerability Response](https://servicenow-prod.fluidtopics.net/sB5D1~3XOF2DyOX7hmc5dA "Before you run the Vulnerability Response application in your ServiceNow AI Platform instance, you must get entitlement and download the application from the ServiceNow Store, install it on your ServiceNow AI Platform instance, and activate it."). To verify that integration applications are installed and activated, navigate to Subscription ManagementSubscriptions in your instance. The list displays the subscriptions your organization has purchased. For more information about third-party integrations and a list of supported products, see [Configuration Compliance integrations](https://servicenow-prod.fluidtopics.net/_iL~PfFqxkHILVBZI~5vsQ "Third-party integrations import configuration assessment findings, policies, tests, technologies, authoritative sources, test results along with other vulnerability data into the Configuration Compliance application."). |
[Table 1. Setup checklist tasks]

{#cc-configuring__table_wyt_b3p_v5b}  
Qualys Vulnerability Integration

* If the Qualys Vulnerability Integration is already installed on your system, and your API credentials are different than the ones you want to use for Configuration Compliance, go into Setup Assistant (in Vulnerability Response) and assign them to each Qualys PC integration.
* Navigate to Qualys Vulnerability IntegrationPrimary Integrations and edit the Qualys API Credentials field under the Qualys REST Details tab.
{#cc-configuring__ul_pl2_32d_w5b}

For more detailed information on the Qualys Vulnerability Integration, see [Understanding the Qualys Vulnerability Integration](https://servicenow-prod.fluidtopics.net/voPK7ViYvD_BP1vyXszRpQ "The Qualys product sensors collect the data and automatically send it to the Qualys application, which continuously analyzes and correlates the information. It easily integrates with Vulnerability Response as the Qualys Vulnerability Integration to map vulnerabilities to CIs and business services to determine impact and priority of potentially malicious threats.").

You are now ready to install the Configuration Compliance application. See [Install Configuration Compliance](https://servicenow-prod.fluidtopics.net/Dy94iiRvSm3x0kSosOba~g "Before you run Configuration Compliance in your ServiceNow AI Platform instance, you must first download and install the Configuration Compliance application from the ServiceNow Store. This application is available as a separate subscription.").

*[\>]: and then


