TuneUp Your Security
Guidance on platform security
Overview
Offered pursuant to the applicable Impact Accelerator Description available at https://www.servicenow.com/legal/servicenow-impact.html
What you get
- Security Assessment
- Provisioning of a temporary instance
- Review of customer's Security Center
- Security configuration assessment using ServiceNow HealthScan
- Simulation of recommended security configuration changes in temporary instance
- Customer Coaching Session #1 (up to 90 min)
Review of:
- Temporary instance
- Security configuration guidance
- ISC score
- Findings and recommendations
- Simulated recommended changes in temporary instance
- Customer Coaching Session #2 (Optional upon Customer request – up to 60 min)
- Opportunity for Q&A related to instance security configurations
Requested customer resources
| Customer Resource | Responsibilities |
|---|---|
| ServiceNow Security Lead- Required | Subject matter expert responsible for ServiceNow instance security. |
| Office of the CISO representative - Required | Responsible for the organizations security policies, processes, practices, and technologies. Helps guide the Platform Owner to align with security standards. |
| System Administrator(s) - Recommended | Maintains the stability and usability of the ServiceNow platform by performing application maintenance, managing support for cases related to ServiceNow applications, and contributing to ServiceNow software releases by delivering configuration tasks and features. |
| Enterprise Architect(s) - Recommended | Provides a holistic view of the organization’s strategy, processes, and other systems, including any necessary policy or organizational requirements. Helps guide the Platform Owner to align with technical or functional standards. |
| Developer(s) - Recommended | Writes code for the ServiceNow platform. |
Requested information/access
Please refer to the applicable Impact Accelerator Description available at https://www.servicenow.com/legal/servicenow-impact.html
Exceptions
This Impact Accelerator in its entirety or portions of the Impact Accelerator Activities may not be available to customers in the FedRAMP, NSC DOD IL5, or Australia IRAP-Protected data centers, to self-hosted customers, or in other restricted environments, or to managed service providers (except for their internal use).
ServiceNow is not responsible for implementing any of the recommended security configuration changes in Customer’s sub-production or production instances.