Request an exception for multiple records (VITs, AVITs, CVITs or TRs) concurrently using the bulk edit feature instead of manually selecting each record.

Before you begin

Role required:
  • sn_vul.vulnerability_analyst, or sn_vul.vulnerability_admin for host vulnerable items (VITs)
  • sn_vul.app_sec_manager for application vulnerable items (AVITs)
  • sn_vul_container.vulnerability_analyst or sn_vul_container.vulnerability_admin for container vulnerable items (CVITs)
  • sn_vulc.admin for configuration test results (TRs)

About this task

When you request an exception for one or more records from the Bulk edit modal, a remediation task is created with the selected records.
Note: The Application Vulnerable Items (AVITs) from the scanners with the Manage exceptions in ServiceNow parameter set to false are not updated.
  • If you select AVITs from various scanners, some with the Manage exceptions in ServiceNow parameter set to true and other set to false, the AVITs linked to the scanners with he Manage exceptions in ServiceNow parameter set to false are not updated.
  • If you select AVITs from only the scanners with the Manage exceptions in ServiceNow parameter set to false, the Defer option does not appear in the State field in the Bulk Edit modal.

Procedure

  1. Navigate to Workspaces > Vulnerability Manager Workspace.
  2. On the List page, open the Active or All list in one of the following lists:
    • Host Vulnerable items
    • Container Vulnerable items
    • Application Vulnerable items
    • Configuration Test Results
  3. Perform one of the following:
    • Select the check box next to each item if you want to use the Only Selected Items option in the Record selection field.
    • Apply filters if you want to use the All records that match filter option in the Record selection field.
  4. Select the Bulk Edit button.
  5. On the form, fill in the following fields to request an exception for multiple records (VITs, AVITs, CVITs, or TRs) simultaneously.
  6. Click  Edit.
  7. On the Take Questionnaire modal, answer the questions and click  Submit.
    A remediation task is created containing the records that you selected. Your request is submitted for approval and the State of the records changes to  In Review.
    Note: The Take Questionnaire modal appears only when the questionnaire is enabled for exception requests in the Exception Management form. For more information on configuring a questionnaire for exception requests, see Configure Exception Management for Vulnerability Response, Configure Exception Management for Application Vulnerability Response, and Configure Exception Management for Container Vulnerability Response.

    The approver receives an email notification about your request.

Result

In the Vulnerability Manager Workspace, on the List page, navigate to Exceptions > All, open the corresponding state change approval record (VCA#) and check the status of your request in the Approval state column:
Approval state Result
Approved The state of the Remediation task transitions to Deferred with the given Reason as sub-state. The state and reason are rolled down to the records.
Rejected The state of the Remediation Task and its records doesn’t change.

In the Activity stream of a record or remediation task, you can view the entire workflow of your request.