ServiceNow Vulnerability Response: Change Management (Orlando, v10.0)
[Music] hi my name is Tommy Lamont I'm a senior technical consultant with service solutions today I will be showing you how you can easily create and manage change requests directly from the vulnerability response application in service now when using vulnerability response you get all the benefits of the NAB platform including direct access to the ITSM applications like change management this makes it simple to ensure that you're not only resolving vulnerabilities quickly but are following the correct process with the correct documentation the best way to ensure people are following your change process is to make it easy to follow with the link from vulnerability to change a change request to resolve vulnerabilities can be created in just a few clicks well now jump over into service now for a quick demo of what this functionality looks like what we're looking at here is a list of all our vulnerability groups you can see in this CR account column we already have some vulnerability groups that have changed requests related to them I'm going to go ahead and open one that does not yet have a change request related if we scroll down to the bottom of the vulnerability group form will see this change requests related tab this is where any change requests that are already related to the vulnerability group will be listed if you like you can add an already created change request to the vulnerability group if your change request was already created through another process this demo I'll show you what it looks like to create a new change request directly from the vulnerability group we come over here and click the create Change button and we are brought to this short form to fill out a couple pieces of information in order to get the change request created we have a couple options when doing this we can create a change request that applies to all vulnerable items in this group or we can build a filter if we only want to create the change request for a couple of honourable items maybe if you're only patching certain systems and not everything at once this case will do it for all vulnerable items you have the option to automatically add the CIS from the vulnerable items to the change request so we'll leave that checked you can also create either standard normal emergency changes we were to create a standard change you automatically get a pop-up here to select your standard change template that you already have defined in this case we're gonna create a normal change coming down here we can see that information was directly populated from the vulnerability group into this form to reduce the amount of data that you have to manually fill out and make this as painless as possible the only thing we have to do here is fill out our implementation plan and optionally we can then go ahead the assignment group from this field go ahead and a planned nd of next week and then we will click create change we'll be automatically taken over to the newly created change request you can see our information that we filled out in this form is automatically filled out on the change request now we can then simply click request approval scrolling down here we can see the CIS that we added from the vulnerable items were automatically populated on a change request we can then see our vulnerability group we were just on and also all the individual neural items we navigate back to our vulnerability group we can see that our change request now shows up in our change requests related field now that we have the link between the change request and the vulnerability group created the states can move in sync as well when the change request is moved to re-review state the vulnerability group can automatically be resolved and potentially trigger a rescan of the vulnerable items to confirm that the vulnerabilities are in fact gone with the seamless link between vulnerability response and change management you can ensure vulnerabilities are being resolved quickly and the resolution is properly documented this ensures that you not only have a secure environment but that staying compliant with change policies is easy while you are securing your environment thank you for listening and please don't hesitate to comment below or reach out to us with any questions or for assistance improving your company's security and getting maximum value out of ServiceNow [Music]
https://www.youtube.com/watch?v=9l-KpsIxlNU