---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Examples for remediation task creation in the Security Exposure Management Workspace

# Examples for remediation task creation in the Security Exposure Management Workspace {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 5 minutes to read

Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Examples for Remediation Task Creation in the Security Exposure Management Workspace

This guide outlines the process of creating remediation tasks within the Security Exposure Management Workspace, detailing how records are grouped based on selected criteria during task creation.
Customers can manually create these tasks by selecting criteria and managing existing records effectively.
Show full answer Show less  

## Key Features

* **Grouping Criteria:** Users can select from various grouping criteria such as Assignment Group, Configuration Item, Vulnerability, and Risk Rating to organize records into remediation tasks.
* **Managing Existing Records:** Options are available to either skip records already in other tasks, transfer them to new tasks, or keep them in both old and new tasks.

## Key Outcomes

By understanding how to utilize the grouping criteria and manage existing records, customers can create tailored remediation tasks that enhance their security management processes. The scenarios illustrate how different criteria affect task creation:

* In Scenario 1, grouping by Assignment Group results in three distinct tasks without transferring records from existing tasks.
* Scenario 2 involves grouping by Assignment Group and Configuration Item, allowing records to be moved to new tasks as necessary.
* Scenario 3 allows for dual membership in tasks by grouping based on Assignment Group and Vulnerability.
* Scenario 4 similarly uses Assignment Group and Risk Rating to create new tasks while retaining records in their original tasks.

These structured approaches help streamline the remediation process and improve overall efficiency in managing vulnerabilities. Customers can expect a clearer organization of tasks and better resource allocation as a result.  
When you create remediation tasks manually in the Security Exposure Management Workspace, records are grouped into a remediation task based on the grouping criteria you select.
Consider the following example where 10 records are selected for remediation task creation. After providing the record selection details and a brief description, select the Grouping criteria according to your
requirement and then select how you want to manage the records that are already part of existing remediation tasks.  

## Remediation task creation based on the grouping criteria {#sem-create-remediation-task-examples__example_ijs_4lh_ydc}

{#sem-create-remediation-task-examples__table_dn5_tlh_ydc__entry__6}

| Vulnerable item id | Existing remediation tasks | Assignment group | Configuration item | Vulnerability | Risk rating |
|-|-|-|-|-|-|
| VIT10001 | VUL10021, VUL10022 | Remediation Manager | APSVR-NY-1672 | CVE-2018-9020 | 4 |
| VIT10002 | - | Vulnerability Response | DEV-IBM-NY-682 | CVE-2018-9020 | 2 |
| VIT10003 | VUL10021 | LDAP Admins | DEV-IBM-NY-682 | CVE-2012-5357 | 1 |
| VIT10004 | - | Remediation Manager | CRMBK-SD-4210 | CVE-2013-1710 | 4 |
| VIT10005 | VUL10022 | Vulnerability Response | DEV-IBM-NY-682 | CVE-2018-9020 | 2 |
| VIT10006 | - | Remediation Manager | CRMBK-SD-4210 | CVE-2013-1710 | 2 |
| VIT10007 | - | LDAP Admins | DEV-SAP-SD-9388 | CVE-2013-3906 | 1 |
| VIT10008 | - | LDAP Admins | DEV-IBM-NY-682 | CVE-2013-3906 | 1 |
| VIT10009 | - | Remediation Manager | CRMBK-SD-4210 | CVE-2013-1710 | 2 |
| VIT10010 | - | LDAP Admins | DEV-SAP-SD-9388 | CVE-2013-3906 | 4 |
[Table 1. Vulnerable items selected for remediation task creation]

{#sem-create-remediation-task-examples__table_dn5_tlh_ydc}

The following list shows how the records are grouped into remediation tasks based on the grouping criteria selected when creating the remediation task.

Scenario1: Grouping criteria is selected as "Assignment group" and Managing records in other remediation tasks is selected as "Skip records for the new remediation tasks"
:   The records with the same assignment group are grouped into one remediation task. The records that are already part of existing remediation tasks are not added to the new remediation tasks. Here, three remediation tasks are
    created, each containing the records that are assigned to the Remediation Manager, LDAP Admins, and Vulnerability Response assignment groups.{#sem-create-remediation-task-examples__table_mbl_z4h_ydc__entry__2}

    | Remediation tasks created | Records in the remediation task |
    |-|-|
    | Remediation task 1 - VUL10001 | This remediation task contains the records that are assigned to the Remediation Manager assignment group: * VIT10004 * VIT10006 * VIT10009 {#sem-create-remediation-task-examples__ul_pck_fph_ydc} The VIT10001 record will not be moved to the VUL10001 remediation task. |
    | Remediation task 2 - VUL10002 | This remediation task contains the VIT10002 record that is assigned to the Vulnerability Response assignment group. The VIT10005 record will not be moved to the VUL10002 task. |
    | Remediation task 3 - VUL10003 | This remediation task contains the records that are assigned to the LDAP Admins assignment group: * VIT10007 * VIT10008 * VIT10010 {#sem-create-remediation-task-examples__ul_z1h_4ph_ydc} The VIT10003 record will not be moved to the VUL10003 remediation task. |
    [Table 2. Remediation task created in scenario 1]

    {#sem-create-remediation-task-examples__table_mbl_z4h_ydc}

Scenario 2: Grouping criteria is selected as "Assignment group and configuration item" and Managing records in other remediation tasks is selected as "Transfer records to the new remediation tasks"
:   The records with the same configuration item that are assigned to the same assignment group are grouped into a remediation task. The VIT10001, VIT10003, and VIT10005 records are removed from their old remediation tasks and
    moved to the new remediation tasks. Here, five remediation tasks are created.{#sem-create-remediation-task-examples__table_pvs_gyh_ydc__entry__2}

    | Remediation tasks created | Records part of remediation task |
    |-|-|
    | Remediation task 1 - VUL10004 | This remediation task contains the records that are assigned to Remediation owner assignment group and with APSVR-NY-1672 configuration item. * VIT10001 {#sem-create-remediation-task-examples__ul_z4v_jq3_ydc} The VIT10001 record will be removed from the VUL10021, and VUL10022 remediation tasks. |
    | Remediation task 2 - VUL10005 | This remediation task contains the records that are assigned to Vulnerability Response assignment group and with DEV-IBM-NY-682 configuration item. * VIT10002 * VIT10005 {#sem-create-remediation-task-examples__ul_mcg_qq3_ydc} The VIT10005 record will be removed from the VUL10022 remediation task. |
    | Remediation task 3 - VUL10006 | This remediation task contains the records that are assigned to LDAP Admins assignment group and with DEV-IBM-NY-682 configuration item. * VIT10003 * VIT10008 {#sem-create-remediation-task-examples__ul_htg_zq3_ydc} The VIT10003 record will be removed from the VUL10021 remediation task. |
    | Remediation task 4 - VUL10007 | This remediation task contains the records that are assigned to Remediation Manager assignment group and with CRMBK-SD-4210 configuration item. * VIT10004 * VIT10006 * VIT10009 {#sem-create-remediation-task-examples__ul_vht_mr3_ydc} |
    | Remediation task 5 - VUL10008 | This remediation task contains the records that are assigned to LDAP Admins assignment group and with DEV-SAP-SD-9388 configuration item. * VIT10007 * VIT10010 {#sem-create-remediation-task-examples__ul_owz_tr3_ydc} |
    [Table 3. Remediation tasks created in scenario 2]

    {#sem-create-remediation-task-examples__table_pvs_gyh_ydc}

Scenario 3: Grouping criteria is selected as "Assignment group and vulnerability" and Managing records in other remediation tasks is selected as "Keep records in both the current and new remediation tasks"
:   The records with the same vulnerability that are assigned to the same assignment group are grouped into a remediation task. The VIT10001, VIT10003, and VIT10005 records will be added to their respective new remediation tasks
    without being removed from their old remediation tasks.Here, five remediation tasks are created.{#sem-create-remediation-task-examples__table_mjh_dt3_ydc__entry__2}

    | Remediation tasks created | Records part of remediation task |
    |-|-|
    | Remediation task 1 - VUL10009 | This remediation task contains the records that are assigned to Remediation owner assignment group and with CVE-2018-9020 vulnerability. * VIT10001 {#sem-create-remediation-task-examples__ul_njh_dt3_ydc} The VIT10001 record will remain part of VUL10021, and VUL10022 remediation tasks as well. |
    | Remediation task 2 - VUL10010 | This remediation task contains the records that are assigned to Vulnerability Response assignment group and with CVE-2018-9020 vulnerability. * VIT10002 * VIT10005 {#sem-create-remediation-task-examples__ul_ojh_dt3_ydc} The VIT10005 record will remain part of VUL10022 remediation task as well. |
    | Remediation task 3 - VUL10011 | This remediation task contains the records that are assigned to LDAP Admins assignment group and with CVE-2012-5357 vulnerability. * VIT10003 {#sem-create-remediation-task-examples__ul_pjh_dt3_ydc} The VIT10003 record will continue to be part of the VUL10021 remediation task also. |
    | Remediation task 4 - VUL10012 | This remediation task contains the records that are assigned to Remediation Manager assignment group and with CVE-2013-1710 vulnerability. * VIT10004 * VIT10006 * VIT10009 {#sem-create-remediation-task-examples__ul_qjh_dt3_ydc} |
    | Remediation task 5 - VUL10013 | This remediation task contains the records that are assigned to LDAP Admins assignment group and with CVE-2013-3906 vulnerability. * VIT10007 * VIT10008 * VIT10010 {#sem-create-remediation-task-examples__ul_rjh_dt3_ydc} |
    [Table 4. Remediation tasks created in scenario 3]

    {#sem-create-remediation-task-examples__table_mjh_dt3_ydc}

Scenario 4: Grouping criteria as "Assignment group and risk rating" and Managing records in other remediation tasks is selected as "Keep records in both the current and new remediation tasks"
:   The records with the same risk rating that are assigned to the same assignment group are grouped into a remediation task. The VIT10001, VIT10003, and VIT10005 records will be added to their respective new remediation tasks
    without being removed from their old remediation tasks. Here, five remediation tasks are created.{#sem-create-remediation-task-examples__table_s3w_q53_ydc__entry__2}

    | Remediation tasks created | Records part of remediation task |
    |-|-|
    | Remediation task 1 - VUL10014 | This remediation task contains the records that are assigned to Remediation owner assignment group and with 4 risk rating. * VIT10001 * VIT10004 {#sem-create-remediation-task-examples__ul_t3w_q53_ydc} The VIT10001 record will continue to be part of VUL10021and VUL10022 remediation tasks. |
    | Remediation task 2 - VUL10015 | This remediation task contains the records that are assigned to Vulnerability Response assignment group and with 2 risk rating. * VIT10002 * VIT10005 {#sem-create-remediation-task-examples__ul_u3w_q53_ydc} The VIT10005 record will continue to be part of VUL10022 remediation task. |
    | Remediation task 3 - VUL10016 | This remediation task contains the records that are assigned to LDAP Admins assignment group and with 1 risk rating. * VIT10003 * VIT10007 * VIT10008 {#sem-create-remediation-task-examples__ul_v3w_q53_ydc} The VIT10003 record will continue to be part of VUL10021 remediation task. |
    | Remediation task 4 - VUL10017 | This remediation task contains the records that are assigned to Remediation Manager assignment group and with 2 risk rating. * VIT10006 * VIT10009 {#sem-create-remediation-task-examples__ul_w3w_q53_ydc} |
    | Remediation task 5 - VUL10018 | This remediation task contains the records that are assigned to LDAP Admins assignment group and with 4 risk rating. * VIT10010 {#sem-create-remediation-task-examples__ul_x3w_q53_ydc} |
    [Table 5. Remediation task created in scenario 4]

    {#sem-create-remediation-task-examples__table_s3w_q53_ydc}
**Related tasks**   

* [Create a remediation task manually in the Security Exposure Management Workspace](https://servicenow-prod.fluidtopics.net/GMasaY5j4np1kod0YiEdTg "You can create remediation tasks manually from the findings on the List page of Security Exposure Management Workspace. You can also create remediation tasks from the drill-down lists that appear when you click on the visualizations on the Home page.")

