---
sourceDocument: Xanadu Operational Technology Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/xanadu/operational-technology

 Release :

    - xanadu

ft:locale :

    - en-US

ft:publication_title :

    - Xanadu Operational Technology Management

ft:clusterId :

    - optm

bundleId :

    - optm

workflow :

    - Technology


---

# Run scheduled jobs to perform Hardware Vulnerability Assessment

# Run scheduled jobs to perform Hardware Vulnerability Assessment {#ariaid-title1}

* Release version: Xanadu
* 
* Updated January 10, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read

Execute scheduled jobs to perform hardware vulnerability assessment.

## Before you begin

Role required: sn_otvr.vul_event_manager  
Hardware Vulnerability Assessment is based on the vulnerability assessment feature in Vulnerability Response. Before scheduling the jobs for HVA, navigate to AllVulnerability ResponseAdministrationIntegrations and run the following NVD integrations:{#jobs-hwd-vul-assessment__table_sbn_qlp_dt__entry__2}

| Integration | Description |
|-|-|
| NIST National Vulnerability Database Integration - API (CVE only) | Retrieves only NIST NVD vulnerability data (CVE). By default, this integration is automatically set to run daily. |
| NIST National Vulnerability Database Integration-API (CPE only) | Retrieves CPE data from NIST NVD. This integration is inactive by default. Activate this integration to capture CPE data that includes a formal name format, a method for checking names against a system, and a description format for binding text and tests to a name. This information is stored in Vulnerable Software. This integration is set to run daily and is inactive by default. For more information, see [Activate the NIST National Vulnerability Database--API (CPE only)](https://www.servicenow.com/docs/access?context=install-nvd&version=xanadu&pubname=xanadu-security-management&section=activate-nist-nvd-cpe-only-integration&ft:locale=en-US). |
| NIST National Vulnerability Database Integration-API (Unmapped CPE) | Retrieves CPE data associated with fetched CVE from NIST NVD. This integration is inactive by default. Activate this integration to capture CPE data that includes a formal name format, a method for checking names against a system, and a description format for binding text and tests to a name. This information is stored in an NVD vulnerability entry record related list. This integration is set to run On Demand and is inactive by default. For more information, see [Activate the NIST National Vulnerability Database--API (Unmapped CPE)](https://www.servicenow.com/docs/access?context=install-nvd&version=xanadu&pubname=xanadu-security-management&section=activate-nist-nvd-unmapped-cpe&ft:locale=en-US). |
[Table 1. NVD integrations]

{#jobs-hwd-vul-assessment__table_sbn_qlp_dt}  
For more information, see:

* [Understanding the NVD integrations](https://www.servicenow.com/docs/access?context=nvd-vuln-integration&version=xanadu&pubname=xanadu-security-management&ft:locale=en-US).
* [Install the Vulnerability Response Integration with the NIST National Vulnerability
  Database](https://www.servicenow.com/docs/access?context=install-nvd&version=xanadu&pubname=xanadu-security-management&ft:locale=en-US)
{#jobs-hwd-vul-assessment__ul_nr4_fxd_12c}

## About this task

You must perform the following scheduled jobs to detect firmware vulnerabilities of any OT devices in the inventory:

## Procedure

1. Navigate to Scheduled Vulnerability Assessment JobsConfigureScheduled Jobs.  
   Important:  
   * You must run Hardware Assessment - Full before you schedule the Hardware Assessment - Delta job. You can run the Hardware Assessment - Full job on demand.
   * You can schedule Hardware Assessment - Delta job to run daily, weekly, or according to your required frequency.
   {#jobs-hwd-vul-assessment__ul_rtx_k4c_12c}
2. Select Hardware Assessment - FullExecute Now.  
   This job performs an assessment on all OT devices in the inventory to detect any firmware vulnerabilities regardless of prior assessments.
3. Select Hardware Assessment - DeltaActive.  
   Select Run and choose a frequency from the list. The Hardware Assessment - Delta job runs according to the frequency that you select.

   This job performs incremental assessments, targeting only changes or updates since the last assessment run. It captures changes on firmwares, normalized contents, and vulnerabilities since the last successful run of
   the hardware vulnerability assessment. This job makes sure you can maintain continuous monitoring and timely updates.
{#jobs-hwd-vul-assessment__steps_ecd_gc2_12c}
**Related topics**   

* [Scheduled jobs](https://www.servicenow.com/docs/access?context=c_ScheduledJobs&version=xanadu&pubname=xanadu-platform-administration&ft:locale=en-US)

*[\>]: and then


