---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Requesting and approving an exception for a remediation task

# Requesting and approving an exception for a remediation task {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

You can request to defer the remediation of a remediation task for a specified period. Users who are a part of the approver group can approve exception requests.  
Note:  
Starting with v14.9 of Configuration Compliance, the following terms have been renamed:{#cc-ex-mgmt-request-approve__entry__2}

| Terminology prior to v14.9 | Terminology v14.9 onwards |
|-|-|
| Test Result Group | Remediation Task |
| Group Rules | Remediation Task Rules |
| Policy | Test group |
[Table 1. Changes in terminology]

To request or approve exception requests, see:

* [Request an exception for a remediation task in Configuration Compliance](https://servicenow-prod.fluidtopics.net/bMQpP6TcbUWv_2Q4cOGzTA "Request an exception to defer the remediation of a remediation task for a specified period if it can’t be remediated immediately.")
* [Approve an exception request in Configuration Compliance](https://servicenow-prod.fluidtopics.net/apLQ6i6mcK1aOHnm40_u6g "Approve exception requests for remediation tasks that can't be remediated immediately. You must assess these requests for risk and then approve them for deferral until they can be remediated.")
{#cc-ex-mgmt-request-approve__ul_pph_xv2_3nb}  
Note:  
Email notifications are sent at every stage of exception management, providing the status and other details of a request. For example, when an exception is requested, the requester receives an email confirming that the request
is raised. The approver also receives an email stating that an exception has been requested.

Starting from v14.11 of Configuration Compliance, you can configure the time frames for approving exceptions, along with email notifications for both the approver and requester after a set number of days. When a request is raised, the test result changes to In-Review status and a state change record is created. If the approver doesn't respond within the configured time frame, the test result reverts to Open status. The previous state is stored in the backup_state field. For more information, see [Configure approval rules for Exception Management](https://servicenow-prod.fluidtopics.net/2qnBR86wWLeVhdcl7TH_5w "Starting with Vulnerability Response v15.0, use the flow designer to approve exception requests for exception management, exception rules, and false positive management. If you are deploying Vulnerability Response (VR) for the first time, the flow designer is enabled by default.").

