Integrating Container Vulnerability Response with other applications
Summarize
Summary of Integrating Container Vulnerability Response with Other Applications
This guide outlines how to enhance Container Vulnerability Response by integrating it with various applications, enabling you to gather and analyze vulnerability data for deployed container images in runtime environments. The integration enriches vulnerability data with contextual information from ServiceNow’s Kubernetes discovery, allowing visibility into relevant Kubernetes entities within your Configuration Management Database (CMDB).
Show less
Key Features
- Integration with container security products for real-time vulnerability data retrieval.
- Enrichment of vulnerability data with runtime context including hosts, Kubernetes clusters, services, and namespaces.
- Comprehensive reporting dashboard for insights into vulnerability and remediation trends.
- Integration capabilities with applications such as Palo Alto Networks Prisma Cloud Compute, Atlassian Jira, and Tenable Vulnerability.
- Ability to create and track agile issues for remediation of Container Vulnerability Indicator Threats (CVITs) and Remediation Tasks (RTs) in the Vulnerability Manager Workspace.
Key Outcomes
By integrating Container Vulnerability Response with other applications, you can achieve a streamlined process for vulnerability management, enabling quicker identification and resolution of vulnerabilities. You can expect improved data processing with periodic heartbeats to monitor integration status, and better handling of potential timeouts through the Last Record Processed field, ensuring efficient data flow and management.
Extend the capabilities of Container Vulnerability Response by integrating with other applications.
Container Vulnerability Response integrates with container security products to pull vulnerability data for those images which are deployed to runtime. It then enriches the vulnerability data with the runtime contextual information such as hosts, Kubernetes clusters, services, and namespaces where these container images are deployed. With ServiceNow’s Kubernetes discovery, you can see the references created from vulnerabilities to the relevant Kubernetes entities in your Configuration Management Database (CMDB). In addition to enriching the metadata, ServiceNow also offers a comprehensive reporting dashboard to provide insights into the vulnerability and remediation trends.
- Vulnerability Response Integration with Palo Alto Networks Prisma Cloud Compute integration
- Understanding the Atlassian Jira integration with Vulnerability Response
- Understanding the Tenable Vulnerability Integration
-
Important:In the Vulnerability Manager Workspace, you can create an agile issue manually using the list action and form action to track the remediation of CVITs and RTs.
Additional notes for integrations
- sn_sec_cmn.record_threshold_heartbeat: Defines the number of processed records, after which the heartbeat (timestamp) is sent to the import queue entry.
- sn_sec_cmn.maximum_heartbeat_delay: Defines the time after which the import queue entry must be timed out.