---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Request exceptions for remediation tasks and records in the Vulnerability Manager Workspace

# Request exceptions for remediation tasks and records in the Vulnerability Manager Workspace {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

From the Vulnerability Manager Workspace, vulnerability managers and analysts can request exceptions and false positives for a remediation task (VUL, AVUL, CVUL or CRG) and record (VIT, CVIT, AVIT or CTR). You can also split a remediation task
and create change requests.
Role required:

* sn_vul.vulnerability_analyst, or sn_vul.vulnerability_admin for host vulnerable items (VITs)
* sn_vul.app_sec_manager for application vulnerable items (AVITs)
* sn_vul_container.vulnerability_analyst or sn_vul_container.vulnerability_admin for container vulnerable items (CVITs)
* sn_vulc.admin for configuration test results (CTRs)
{#vr-ws-exceptions-split-VMGR-ws__ul_y3l_fwm_2bc}  
Note:  
Starting with v19.0 of Vulnerability Response, the following terms have been renamed:{#vr-ws-exceptions-split-VMGR-ws__entry__2}

| Terminology prior to v19.0 | Terminology v19.0 onwards |
|-|-|
| Test Result Groups | Remediation Tasks |
| Configuration Issues | Configuration Test Results |
| Policy | Test group |
[Table 1. Changes in terminology]

In the Vulnerability Manager Workspace, you can perform the following on the records and remediation tasks:

* Split a remediation task (VUL, AVUL, CVUL, and CRG).
* Request an exception for a record (VIT, AVIT, or CVIT) or remediation task (VUL, AVUL, CVUL, or CRG).
* Request a policy exception for records (VIT, AVIT, or CVIT) or remediation task (VUL, AVUL, CVUL, or CRG).
* Request risk reduction for a host vulnerable item (VIT) and remediation task (VUL)
* Create a change request for remediation task (VUL, CVUL, or CRG).
* Request a false positive for record (VIT, AVIT, or CVIT) or remediation task (VUL, AVUL, CVUL or CRG).  
  Note:  
  You can raise false positive requests for a set of test results from a remediation task (CRG).
{#vr-ws-exceptions-split-VMGR-ws__ul_ykh_ymc_dbc}

You initiate these UI actions from records in the Vulnerability Manager Workspace, the same way remediation owners perform these tasks in the IT Remediation Workspace.  
See the following topics for more information:

* [Request a false positive for a vulnerable item or remediate task](https://servicenow-prod.fluidtopics.net/p4KWSnJ679hjoYagUtsFLw "Indicate a false positive request for host vulnerable item (VIT), application vulnerable item (AVIT), container vulnerable item (CVIT), or remediation task (VUL, AVUL, CVUL or CRG) in the IT Remediation Workspace. A false positive is a condition where a scanner incorrectly reports that a vulnerability exists in the system due to situations such as an incorrect classification, improper logic, or an algorithm in the scanner.")
* [Request an exception in the IT Remediation Workspace](https://servicenow-prod.fluidtopics.net/u8048LRMppDaxV9c9jKGkg "Request an exception for the host vulnerable item (VIT), application vulnerable item (AVIT), container vulnerable item (CVIT) and remediation task (VUL, AVUL, CVUL, or CRG) from the IT Remediation Workspace.")
* [Request risk reduction for a vulnerable item or remediation task](https://servicenow-prod.fluidtopics.net/YMFrQBxshcQZEz5fyQt00w "Request a reduction in risk for a host vulnerable item or a remediation task in the IT Remediation Workspace."){#vr-ws-exceptions-split-VMGR-ws__li-risk-reduction-vmws}
{#vr-ws-exceptions-split-VMGR-ws__li-risk-reduction-vmws}
* [Split a remediation task in the IT Remediation Workspace](https://servicenow-prod.fluidtopics.net/N_xLIcgupxJNIxlxqApO5Q "From a remediation task (VUL, AVUL, CVUL, or CRG), identify a subset of records and create a new remediation task for them.")
* [Create a change request in the IT Remediation Workspace](https://servicenow-prod.fluidtopics.net/2YRZRrAyQGMEmEgDccN_pw "From a remediation task (VUL, AVUL, CVUL, or CRG), create a change request. Alternatively, add a remediation task to an existing change request.")
* [Request an exception using GRC: Policy and Compliance Management in the IT Remediation Workspace](https://servicenow-prod.fluidtopics.net/38yXIXvAYsp_tE4vjSqz2w "Request a policy exception for the host vulnerable item (VIT), application vulnerable item (AVIT), container vulnerable item (CVIT) or remediation task (VUL, AVUL, CVUL, or CRG) from the IT Remediation Workspace.")
* [Request a false positive for a set of test results](https://servicenow-prod.fluidtopics.net/9T5M2iBeWsbq2DdCFr4fUg "Raise a false positive request for a set of test results within a remediation task in the IT Remediation Workspace.")
{#vr-ws-exceptions-split-VMGR-ws__ul_pzr_nkb_pqb}
**Related concepts**   

* [Exception Management overview](https://servicenow-prod.fluidtopics.net/txU~YaMq864yK0gXuFo7xA "When your organization can't comply with a published vulnerability management or security policy, standard, or guideline, you can request an exception. Exception management entails requesting, reviewing, approving, or rejecting exceptions to a vulnerable item (VI) or remediation task (RT) that cannot be remediated according to the policy.")
* [Configuration Compliance Exception Management overview](https://servicenow-prod.fluidtopics.net/e~SV_zcAo5mGFmUjf3cUfQ "When your organization can't comply with a published vulnerability management or security policy, standard, or guideline, you can request an exception. Exception management entails requesting, reviewing, approving, or rejecting exceptions for a remediation task that cannot be remediated according to the policy.")  
**Related tasks**   

* [Request bulk exception in the Vulnerability Manager Workspace](https://servicenow-prod.fluidtopics.net/FrQxWrSlJMo6g0Fuc2z~EQ "Request an exception for multiple records (VITs, AVITs, CVITs or TRs) concurrently using the bulk edit feature instead of manually selecting each record.")
* [Bulk edit for false positive in the Vulnerability Manager Workspace](https://servicenow-prod.fluidtopics.net/x~p_g0PPce1XvDT_s6bO8g "Mark one or more records (VITs, AVITs, CVITs, or TRs) as false positive concurrently using the bulk edit feature from the Vulnerability Manager Workspace instead of manually selecting each item.")

