---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Perform an assessment

# Perform an assessment {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read

After you've created the vulnerability assessment record and updated the risk attribute fields, run an assessment of the event record.

## Before you begin

Role required: sn_vul_analyst.vul_event_manager

## About this task

Perform an initial assessment after an event for a vulnerability of interest has been created and determined to present risk to systems and data. The purpose of this activity is to further analyze the threat by updating the
risk assessment with an in-depth exposure
assessment.

## Procedure

1. Navigate to WorkspacesVulnerability Assessment WorkspaceVulnerability Assessment.
2. Select the relevant record from the list of vulnerability assessment event records.
3. Select Assess to run the vulnerability assessment.  
   The Vulnerability Response - Process vulnerability assessment event background job is initiated and a relevant notification displays.
4. Select View Status on the notification to view the status of the running job.
5. Select Save.  
   The Assessments tab displays assessment details. When the assessment is processed the VITs or AVITs associated with the vulnerable entries or CVEs display in the Vulnerable Items or the Application Vulnerable Items tab.

## Result

* Vulnerable items or TPEs related to the associated CVEs are fetched during assessment. The CIs related to the vulnerable items are also identified and display in the Affected Configuration Items table.
* If you configure a CI filter on the assessment record, the assessment collects only the configuration items that meet the filter conditions. If no CI filter is configured, the assessment collects all CIs related to the associated CVEs and affected products.
* If the associated CIs do not exist in the affected CI table, the identified CIs are added to the table and the Has vulnerable item field value is set to True, and the Source field's value is set to Scanner.
* If the CI already exists in the affected CI table, only the Has vulnerable item field value is set to True and the Source fields value for the CI remains the same as when the assessment record was created.
* If vulnerable items are created after the assessment a Vulnerability Assessment scheduled job is run to update the affected CIs table and the source of the CI.
{#perform-initial-assesment__ul_q35_ryb_hzb}

## What to do next

* [Assign a priority and exposure level to the vulnerability assessment record](https://servicenow-prod.fluidtopics.net/mT7btpSRCxAFf~cAVSZKwQ "Manually assign priority and exposure level to the vulnerability assessment record.")
* [Add affected CIs to the assessment record](https://servicenow-prod.fluidtopics.net/J~lVJtxrHiH3licaSDH_Dg "Manually add the CIs in your organization that you think should be associated with the vulnerability assessment record but do not display in the affected CIs after initial assessment.")
* [Create vulnerable items for the affected CI or affected software component](https://servicenow-prod.fluidtopics.net/w1IqDjMciAY~Ld7krvuJnQ#vr-va-ws-create-vi "Create vulnerable items (VIs) or application vulnerable items (AVITs) from the Vulnerability Assessment Workspace. Vulnerability analysts analyze the list of VIs and recommend solutions and patches that help the IT team to patch these vulnerabilities.")
* [Add related link to the assessment record](https://servicenow-prod.fluidtopics.net/Hj7EBJrFlUJdFxemqVheWQ#add-related-links-vr-va-ws-record "Add additional links and information related to the assessment record.")
{#perform-initial-assesment__ul_dcq_zfy_fzb}
**Related concepts**   

* [Assessment tab](https://servicenow-prod.fluidtopics.net/tiCIzdV7v_4xWNo0LEDjGQ "Review the assessment results in the assessment tab. After you perform an assessment of the vulnerability event, the record is correlated against the data from Software Bill of Materials and Software Asset Management and displayed with visualisations.")
* [Overview tab](https://servicenow-prod.fluidtopics.net/8lm96MChVnMFjccIEcbP7A "Overview of the assessment details display in the Overview tab. After you perform the initial assessment the record is correlated against the data from Software Bill of Materials and Software Asset Management and displayed with visualisations.")

*[\>]: and then


