TuneUp Your Security

  • Release version: Washingtondc
  • Updated February 1, 2024
  • 1 minute to read
  • Guidance on platform security

    Overview

    TuneUp Your Security provides Impact customers with insight into their existing ServiceNow instance security configurations, instance security leading practices, and a demonstration on which instance security settings may be enabled to further enhance instance security. It aims to help customers better understand security configuration changes in the context of ServiceNow’s published security guidance.
    Note:
    This Accelerator is available in Guided, Advanced, and Total Packages.

    Offered pursuant to the applicable Impact Accelerator Description available at https://www.servicenow.com/legal/servicenow-impact.html

    What you get

    Security Assessment
    • Provisioning of a temporary instance
    • Review of customer's Security Center
    • Security configuration assessment using ServiceNow HealthScan
    • Simulation of recommended security configuration changes in temporary instance
    Customer Coaching Session #1 (up to 90 min)

    Review of:

    • Temporary instance
    • Security configuration guidance
    • ISC score
    • Findings and recommendations
    • Simulated recommended changes in temporary instance
    Customer Coaching Session #2 (Optional upon Customer request – up to 60 min)
    Opportunity for Q&A related to instance security configurations

    Requested customer resources

    Table 1. Customer resource and responsibilities
    Customer Resource  Responsibilities 
    ServiceNow Security Lead- Required Subject matter expert responsible for ServiceNow instance security.
    Office of the CISO representative - Required Responsible for the organizations security policies, processes, practices, and technologies. Helps guide the Platform Owner to align with security standards.
    System Administrator(s) - Recommended Maintains the stability and usability of the ServiceNow platform by performing application maintenance, managing support for cases related to ServiceNow applications, and contributing to ServiceNow software releases by delivering configuration tasks and features.
    Enterprise Architect(s) - Recommended Provides a holistic view of the organization’s strategy, processes, and other systems, including any necessary policy or organizational requirements. Helps guide the Platform Owner to align with technical or functional standards.
    Developer(s) - Recommended Writes code for the ServiceNow platform.

    Requested information/access

    Please refer to the applicable Impact Accelerator Description available at https://www.servicenow.com/legal/servicenow-impact.html

    Exceptions

    This Impact Accelerator in its entirety or portions of the Impact Accelerator Activities may not be available to customers in the FedRAMP, NSC DOD IL5, or Australia IRAP-Protected data centers, to self-hosted customers, or in other restricted environments, or to managed service providers (except for their internal use).

    ServiceNow is not responsible for implementing any of the recommended security configuration changes in Customer’s sub-production or production instances.