Run the Auditor to scan your instance and find incorrect security definitions. It provides findings you can correct to help improve the security posture of your instance.

Important:

Instance Security Center (ISC) has reached the end of sales as of September 2024, and is no longer supported or available for new activation.

ServiceNow Security Center (SSC) is the recommended solution going forward. For more information, see Instance Security Center to ServiceNow Security Center migration.

The Auditor performs a “full-body” assessment of your instance health that analyzes your system configuration. For security scans, it compares your current security configuration to best practice definitions, and to security property compliance values.

From an instance security standpoint, it provides insights and recommendations into what you should continue doing, and where you might be able to improve. These insights and recommendations help you answer the following questions:
  • Are the appropriate security-related properties set?
  • Is the High Security plugin enabled?
  • Do the right access control rules exist?

Run the Auditor and analyze scan results

  1. To run the Auditor, click Audit on the Instance Security Center home page.
  2. When it completes, open Scan Results to review and analyze the security findings.
  3. To review the detail for a specific scan result, double-click the result number. This information includes its status, scan type, execution time, and error messages.
  4. Each of the Auditor findings contains resolution details, and a URL to product content about how to address them. Follow the documented guidelines to resolve the issues in each of the findings.