To configure Vulnerability Response roles, perform the following procedure.

Procedure

  1. Log in to your ServiceNow instance.
  2. Go to the Roles page using the ServiceNow Search menu on the left side of the page.
  3. Find and open the sn_vul.vulnerability_admin role (Vulnerability Admin).
    Note: The sn_vul.vulnerability_admin role contains the x_vmw_cb_connector.admin role.
  4. Scroll down and click the Edit button.
    Note: If the Edit button is not visible, add the scope of the application.
  5. Search for roles to be added.
  6. Select and double-click each role to move it to the Contains Roles List.
  7. To sn_vul.vulnerability_admin, add the sn_vul.vulnerability_admin roles:
    Users who have this role will have the following permissions:
    • Can read, write, update and delete any record in the Configuration Profiles
    • Can read, write, update and delete any record in the Vulnerability Profiles
    • Can read, write, update and delete any record in the Integration Instances
    • Can read, write, update and delete any record in the Vulnerable Item
    • View Application Logs
    • Access Support Contact
  8. Repeat Steps 3-6 to add the sn_vul_read_all role to Carbon Black Cloud Analysts (x_vmw_cb_connector.analyst1, x_vmw_cb_connector.analyst2, x_vmw_cb_connector.analyst3).
    Users who have this role will have the following permissions:
    • Can read the records of Configurations
    • Can read the records of Vulnerable Items