---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Patch orchestration with the Vulnerability Response Workspaces

# Patch orchestration with the Vulnerability Response Workspaces {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read

Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Patch orchestration with the Vulnerability Response Workspaces

Patch orchestration with Vulnerability Response enables ServiceNow customers to efficiently manage patches and patch deployments for critical vulnerabilities across large asset groups.
This capability integrates scheduled imports from third-party patch vendors, vulnerability scanners, and solution integrations to centralize and streamline patch management.
Patch orchestration is supported in both the classic ServiceNow environment and the Vulnerability Response workspaces, providing correlated vulnerability and patch data rolled up and displayed across these interfaces.
Show full answer Show less  

## Key Features

* **Integration with patch vendors and scanners:** Supports integrations with tools such as HCL BigFix and Microsoft SCCM, enabling automated patch data imports and scheduling.
* **Multi-environment support:** Available in both classic and workspace environments, allowing flexible access and management options.
* **Patch scheduling:** Users can schedule patches directly from vulnerability and remediation records within the workspaces.
* **Visibility of patch data:** Patch information is available on various workspace views including scorecards, list views, home views, and remediation effort records for comprehensive tracking.

## Practical Requirements

* **Required applications:** Specific ServiceNow applications from the ServiceNow Store are necessary to enable patch orchestration in Vulnerability Response. Some require additional subscriptions.
* **User roles:** In addition to roles like `snvul.vulnerabilityanalyst` or `snvul.vulnerabilityadmin` for Vulnerability Response Workspaces, users must have roles specific to the patch orchestration integrations in use (e.g., HCL BigFix or Microsoft SCCM).

## Using Patch Orchestration in Workspaces

* **IT Remediation Workspace:** Access patch data via scorecards on the Home view and view all Patch Update records and assigned vulnerable items in the List view. Patches can be scheduled from Patch Update records, remediation tasks, or discovered items.
* **Vulnerability Manager Workspace:** Monitor patches on the Home view under Vulnerable Items with details on preferred/potential patches and scheduled dates. Patch data is also available on remediation effort records under the Vulnerable Items tab.

## Benefits for ServiceNow Customers

This patch orchestration capability within Vulnerability Response workspaces empowers customers to:

* Centralize patch management and vulnerability remediation across large asset groups.
* Leverage integrations with leading patch management solutions for automated data synchronization and scheduling.
* Gain visibility into patch statuses and remediation progress directly within their vulnerability management workflows.
* Streamline patch scheduling processes, reducing manual effort and improving security posture efficiently.  
You can manage patches and patch deployments for critical vulnerabilities for large groups of your assets with Patch orchestration with Vulnerability Response.

## Patch orchestration in the Workspaces {#vr-ws-patch-orch-overview__section_ent_ptq_psb}

Patch orchestration with the Vulnerability Response application uses scheduled imports
from third-party solution integrations, patch vendors, and vulnerability scanners.

Patch orchestration with the Vulnerability Response application is supported in both the
classic environment and the Vulnerability Response workspaces. Correlated data is rolled
up and displayed in both the workspaces and the classic environment. For an overview about
the features, requirements, and information about patch orchestration in the classic
environment, see [Patch orchestration with Vulnerability Response](https://servicenow-prod.fluidtopics.net/O9f7unRcbUQ_Gz7ZGorLBw "You can manage patches and patch deployments for critical vulnerabilities for large groups of your assets with Patch orchestration with Vulnerability Response. Vulnerability Response Patch Orchestration and the patch orchestration integrations are available on the ServiceNow Store.").

* For more information about the supported integrations with patch vendors, see [Understanding the HCL BigFix patch orchestration integration with Vulnerability Response](https://servicenow-prod.fluidtopics.net/h73nSOqPqd59_wefnz5Itg "You can manage patches and patch deployments for critical vulnerabilities for large groups of assets with the Vulnerability Response patch orchestration integration with the HCL BigFix product.") and [Vulnerability Response patch orchestration integration with Microsoft SCCM](https://servicenow-prod.fluidtopics.net/PZV21C07W_aS_du2IqIsmA "The Vulnerability Response integration with the Microsoft System Center Configuration Manager (SCCM) supports patch management and deployment for critical vulnerabilities across your assets.").
* For information about how to schedule patches form records in the workspaces, see [Schedule patches with the Microsoft SCCM integration with Vulnerability Response](https://servicenow-prod.fluidtopics.net/ICSNEk5GUD2iIdu31RucDA "Schedule patches from Patch Update and Remediation task records in the Vulnerability Response application in your ServiceNow AI Platform instance.") and [Schedule patches with the Vulnerability Response patch orchestration integration HCL BigFix](https://servicenow-prod.fluidtopics.net/uzwJZqlPHQELoz5Nn0rvYw "Schedule patches from Patch Update and Remediation task records in the Vulnerability Response application in your ServiceNow AI Platform instance.").
{#vr-ws-patch-orch-overview__ul_wwc_stq_psb}

## Available versions of applications and dependencies required for the patch
orchestration integration {#vr-ws-patch-orch-overview__section_lqf_rbp_hsb}

To view patch Orchestration data and available updates (patches) in the workspaces in Vulnerability Response, the following applications are required. All applications listed are
available in the ServiceNow® Store. Some applications require separate
subscriptions. See [Patch orchestration with Vulnerability Response](https://servicenow-prod.fluidtopics.net/O9f7unRcbUQ_Gz7ZGorLBw "You can manage patches and patch deployments for critical vulnerabilities for large groups of your assets with Patch orchestration with Vulnerability Response. Vulnerability Response Patch Orchestration and the patch orchestration integrations are available on the ServiceNow Store.").

## Roles required {#vr-ws-patch-orch-overview__section_orz_kby_rsb}

In addition to the sn_vul.vulnerability_analyst or sn_vul.vulnerability_admin roles
required for the Vulnerability Response Workspaces, users need roles that are specific to
the patch orchestration integrations you are using to view data and schedule patches. See
the following supported integrations for more information about these roles.

See [Understanding the HCL BigFix patch orchestration integration with Vulnerability Response](https://servicenow-prod.fluidtopics.net/h73nSOqPqd59_wefnz5Itg "You can manage patches and patch deployments for critical vulnerabilities for large groups of assets with the Vulnerability Response patch orchestration integration with the HCL BigFix product.")
and [Vulnerability Response patch orchestration integration with Microsoft SCCM](https://servicenow-prod.fluidtopics.net/PZV21C07W_aS_du2IqIsmA "The Vulnerability Response integration with the Microsoft System Center Configuration Manager (SCCM) supports patch management and deployment for critical vulnerabilities across your assets.").

## Patch data in the Vulnerability Response Workspaces {#vr-ws-patch-orch-overview__section_vb5_kfj_rsb}

In the [IT Remediation Workspace](https://servicenow-prod.fluidtopics.net/kl4_xDHEVmF1jpL7AeKbFw "The IT Remediation Workspace is intended for IT remediation owners and IT groups. It is composed of home and list views as well as data visualizations that you can click that let you see the remediation tasks you've been assigned and how many records assigned to you have solutions."), you can
view patch data in the workspaces:

* On the Home view, click scorecards to view records for Preferred solutions on VIs, Vulnerable CIs, and Preferred Patches on VIs.
* On the List view, view all the Patch Update records (VPUs) and the vulnerable items that are assigned to you that have patches from the available links.

{#vr-ws-patch-orch-overview__ul_j1j_kgj_rsb}

You can schedule patches from the following records:

* Patch Update (VPU)
* Remediation task (RT)
* Discovered Item (SDI)

{#vr-ws-patch-orch-overview__ul_ov4_pgj_rsb}

In the [Vulnerability Manager Workspace](https://servicenow-prod.fluidtopics.net/aHQ5WybAPU9_0JY_MR70Vg "As a vulnerability manager and analyst, get a unified view of all the vulnerability types in the Vulnerability Manager Workspace. You can see host, application, and container vulnerabilities and configuration issues, create watch topics across these vulnerabilities and misconfigurations, create remediation efforts and remediation tasks."), you can view patches:

* From the Home view on watch topics on the Vulnerable Items tab, you can view preferred and potential patches, Patch scheduled dates, and other information.
* From the List view on remediation effort records, you can view patch data on VIT records on the Vulnerable Items tab.
{#vr-ws-patch-orch-overview__ul_i2s_5gj_rsb}

