---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Viewing patch data for the Vulnerability Response patch orchestration integration with HCL BigFix

# Viewing patch data for the Vulnerability Response patch orchestration integration with
HCL BigFix {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 3 minutes to read

Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Viewing Patch Data for the Vulnerability Response Patch Orchestration Integration with HCL BigFix

This guide covers how to view patch data and related information through the Vulnerability Response Workspaces for the integration with HCL BigFix.
It details the roles required to access this data and the various views available in both the IT Remediation and Vulnerability Manager Workspaces.
Show full answer Show less  

## Key Features

* **Access Roles:** To view and configure patch data, users need the *snvulpatchorch.configurepatch* and *snvulpatchorch.readpatch* roles. The latter is inherited by roles such as *snvul.remediationowner* and *snvuln.vulnerabilityanalyst*.
* **IT Remediation Workspace:** View patches via Home and List views, allowing access to records for Preferred solutions, Vulnerable CI patches, and Patch Update records.
* **Vulnerability Manager Workspace:** Access patches from the Home view on watch topics and List view for remediation efforts, focusing on scheduled patch dates and applicable patches.
* **Classic Environment:** Navigate to All \> Vulnerability Response \> Patches to view Patch Update records.
* **Patch Data Details:** Information includes vulnerability solutions, remediation status, and device counts related to patches.

## Key Outcomes

By effectively utilizing the patch orchestration integration, customers can:

* Quickly access and manage patch data for improved vulnerability remediation.
* Monitor patch coverage and status through Performance Analytics dashboards, ensuring proactive management of vulnerabilities.
* Gain insights into scheduled patches, criticality, and compliance with remediation timelines.

This functionality enables organizations to enhance their security posture by efficiently managing patching processes and ensuring compliance with vulnerability management protocols.  
Patch data and patch rollup data, as well as vulnerability information and remediation
status of your vulnerabilities, are displayed on records in your instance.

## Viewing patch data in the Vulnerability Response Workspaces {#vr-bigfix-rollup__section_wh3_vqd_3sb}

Roles required:

* sn_vul_patch_orch.configure_patch role to configure and schedule patches
* sn_vul_patch_orch.read_patch to view (read only) patch information on records. This role is inherited with the sn_vul.remediation_owner and sn_vuln.vulnerability_analyst roles that are required for the IT Remediation and Vulnerability Manager Workspaces
{#vr-bigfix-rollup__ul_nky_qds_lsb}

In the IT Remediation Workspace, you can view patches:

* On the Home view, where you can click scorecards to view records for Preferred solutions on VIs, Vulnerable CIs, and Preferred Patches on VIs.
* On the List view, where you can view all Patch Update records (VPUs) from the Patches links, and the vulnerable items (VITs) that are assigned to you that have patches.

{#vr-bigfix-rollup__ul_ptc_yqd_3sb}

You can schedule patches from the following records:

* From Patch Update (VPU)
* Remediation task (RT)
* Discovered Item (SDI) records

{#vr-bigfix-rollup__ul_amf_vsd_3sb}

In the Vulnerability Manager Workspace, you can view patches:

* From the Home view on watch topics, where you can view preferred and potential patches, Patch scheduled dates, and, if the patch has been downloaded all on the Vulnerable Items tab.
* From the List view on remediation efforts, where you can view patch data on VI records from theVulnerable Items tab.

{#vr-bigfix-rollup__ul_okg_5rd_3sb}

From the classic environment view, navigate to AllVulnerability ResponsePatches.

## Patch Update records in the VR Workspaces and in the classic environment view {#vr-bigfix-rollup__section_xvm_b2s_lsb}

Patch data and patch rollup data and status are displayed on records in your instance.
Patch records are included as part of the patch orchestration feature of this integration
with Vulnerability Response. View Patch (VPU) records in Vulnerability Response
Workspaces from the List view in the IT Remediation Workspace. Patch Update records in both
the classic view and Vulnerability Response Workspaces includes the following data:

* Vulnerability solution data and information from patch vendors imported by the Vulnerability Solution Management application.
* Source Remediation Status that includes the total number of devices that have the a given vulnerability that can be fixed by a patch and any devices that are missing updates.
* Remediation Status that includes % of VIs remediated and the total VIs that have a patch as a preferred patch.
* Associated Devices, Vulnerable Items, Patch Deployments and Patch Requests on the Related Links on records in the class view. This data is displayed on tabs on records in the Vulnerability Response Workspaces.
* Patch Requests that remediation owners have submitted for approval.
{#vr-bigfix-rollup__ul_u4l_l2s_lsb}

## State rollup on vulnerable item records {#vr-bigfix-rollup__section_dvh_14c_3sb}

For more information about state rollup to records, see [Patch data and state rollup for patch orchestration in Vulnerability Response](https://servicenow-prod.fluidtopics.net/aHV5JfQdovyUrcgpYUJ39w "Starting with v16.1 of Vulnerability Response patch data and states are rolled up to Patch Update and other records in the Vulnerability Response application.").

## Records that roll up active VI counts {#vr-bigfix-rollup__section_zld_ypd_3sb}

To avoid rolling up all the patches to all the vulnerabilities, the scheduled job only picks up changes to the active VI count. These count changes and related data are rolled up to the following records in Vulnerability Response:

* VIT
* RT
* Vulnerability solution
* Patch Update
{#vr-bigfix-rollup__ul_u5y_1ms_lsb}

## Viewing data for patches without solutions {#vr-bigfix-rollup__section_t3v_4pd_3sb}

For more information about viewing patches without solutions, see [View patches without solutions in Vulnerability Response](https://servicenow-prod.fluidtopics.net/hr4XKhmE3zraJ1QgDndJfg "Starting with v16.0 of Vulnerability Response, for patches that have no solutions after an import, the system then searches for patch IDs in the vulnerability reference data so that you can view these patches on vulnerability records.").

## Patch data on the Vulnerability Response {#vr-bigfix-rollup__section_mlj_q1q_rsb}

The Vulnerability Management (PA) and CISO dashboards are included with a subscription with
the Performance Analytics for the Vulnerability Response application. If you have a
subscription for Performance Analytics, but do not have a patch orchestration integration
installed, the remediation tab is displayed on the CISO dashboard, but it is not populated
with data.

For the Vulnerability Management (PA) dashboard, navigate to AllVulnerability ResponseOverview. Click the Remediation tab and scroll to the bottom of
the page to view Patch Updates data: patches scheduled and not scheduled, patches missing
their target dates, and weekly counts.

For the CISO Dashboard, navigate to AllVulnerability ResponseCISO Dashboard. With the Overview tab selected, scroll to the bottom of the page to view
Patch Coverage data: Criticality, patches scheduled and not scheduled, and patches missing
their target dates.

For more information about the Vulnerability Response dashboards, see [Using the default Vulnerability Response dashboards](https://servicenow-prod.fluidtopics.net/7CWrXrkODPOWTK5kxwdqUQ "The Vulnerability Response overview dashboard (Vulnerability Management) provides an executive view into vulnerabilities and vulnerable items, helping the Vulnerability Admin pinpoint areas of concern quickly. The Vulnerability Response remediation dashboard (Vulnerability Remediation) allows a remediation specialist to focus on the remediation tasks and vulnerable items they own."), [Patch orchestration with the Vulnerability Response Workspaces](https://servicenow-prod.fluidtopics.net/qhYi4lIn5cGt2G5ombcCNw "You can manage patches and patch deployments for critical vulnerabilities for large groups of your assets with Patch orchestration with Vulnerability Response."), and [Viewing patch orchestration data on the Vulnerability Response dashboards](https://servicenow-prod.fluidtopics.net/d2Kqa8fLzXACQcbCmeFjuQ "Starting with v16.1, you can view patch update data in the classic environment on the dashboards that are included with the Vulnerability Response application.").

*[\>]: and then


