Platform Analytics Solutions for Vulnerability Management
Summarize
Summary of Platform Analytics Solutions for Vulnerability Management
Platform Analytics Solutions provide prepackaged Performance Analytics and Reporting content for managing vulnerabilities within the ServiceNow AI Platform. This solution allows users to track vulnerabilities from analysis and detection through to containment or remediation, enabling efficient reporting and performance tracking.
Show less
Key Features
- Performance Analytics Content: Includes dashboards specifically designed for Vulnerability Management and a CISO dashboard, though it requires separate subscription from the ServiceNow Store.
- Reporting Capabilities: Users can filter reports by assignment group, exploits, risk rating, or state, providing tailored insights into vulnerability management.
- Role Requirements:
- ServiceNow AI Platform administrator (admin) for installation and system property adjustments.
- Performance Analytics administrator (paadmin) for reviewing indicators, dashboards, and sharing insights with stakeholders.
- Real-Time Data Visualization: Access to real-time reports on the Vulnerability Management dashboard to monitor critical items and facilitate quick remediation.
Key Outcomes
By implementing the Platform Analytics Solutions for Vulnerability Management, customers can enhance their ability to manage security vulnerabilities effectively. This includes improved visibility into performance metrics, streamlined remediation tasks, and the capability to make informed decisions based on real-time data analytics. It is recommended to set up and test the Analytics and Reporting Solutions in a non-production instance prior to deployment in a production environment.
Platform Analytics Solutions contain prepackaged Performance Analytics and Reporting content for use with other ServiceNow AI Platform products. This Analytics and Reporting Solution permits you to track the volume, performance and progress of vulnerabilities from initial analysis and detection to containment, or remediation. You can filter reports by assignment group, exploits, risk rating, or state.
The Performance Analytics for Vulnerability Response content pack is not automatically installed with the Vulnerability Response application. It is available on the ServiceNow Store as a separate subscription.
- Vulnerability Management (PA) dashboard
- Vulnerability Management Chief Information Security Officer (CISO) dashboard
Required roles, installation, and viewing the dashboards
- ServiceNow AI Platform administrator (admin): Install and activate this Analytics and Reporting Solution and make any necessary changes to system properties.
- Performance Analytics administrator (pa_admin): Review the indicators, breakdowns, widgets, and dashboards. Set up and start data collection. Share the dashboards with appropriate stakeholders.
To install this application, see Install and configure the Performance Analytics for Vulnerability Response [PA] application.
Analytics and Reporting Solutions provide all the configuration records required to analyze default applications. Customize these records for use in your production environment.
To view the vulnerability Management (PA) dashboard, navigate to
To view the Vulnerability Management CISO dashboard, navigate to
Key terms
- Performance analytics (PA)
- Solution that creates management dashboards, reports on KPIs and metrics, and answers key business questions to help increase quality and reduce costs.
- Vulnerable item (VI)
- A security vulnerability reported by a third-party vulnerability scanner that is present on a configuration item (CI).
- Remediation task
- Remediation tasks are created and assigned automatically to IT teams based on the group that is associated with the vulnerable items in a remediation effort. IT teams and remediation owners view remediation tasks in the IT Remediation Workspace. See Vulnerability Response Workspaces for more information
- PA indicator
- Defines a performance measurement taken at regular intervals of a business service, activity, or organizational behavior, for example, Non-Deferred Overdue Critical Vulnerable Items.
- PA indicator source
- Data sets that filter records from one table or database view, for example, VI Active.
View data visualizations in real-time
- Overview tab - Vulnerable Items by Assignment Group
- Vulnerable CIs tab
- Vulnerable Configuration Items (CIs) without Owners
- Retired or Stolen CIs with Active VIs
- Exceptions tab
- Deferred Vulnerable Items by Reason
- Deferral Requests About to Expire
- Deferred Vulnerable Items by CIO Manager
- Remediation tab - Unassigned Vulnerable Items
For more information, see View Performance Analytics for Vulnerability Response [PA] reports in real time.