Vulnerability Response for Microsoft Defender for IoT (On-premises Management Console)
The Vulnerability Response for Microsoft Defender for IoT (On-premises Management Console) uses data imported from Microsoft Defender for IoT (On-premises Management Console) to enable risk-based action with the production process context.
Use the Vulnerability Response for Microsoft Defender for IoT (On-premises Management Console) application to track, prioritize, and resolve vulnerabilities on devices used in the production process.
Key Features
- Import CVEs associated with OT devices from Microsoft Defender for IoT (On-Premises Management Console) and create vulnerable items (VITs) to provide a single view of OT devices vulnerability data with production process context.
- Run imports of newly detected vulnerabilities automatically on your own schedule.
Using assignment rules for VITs can be automatically routed for remediation to local site-based teams to take risk-based action.
Install the Vulnerability Response for Microsoft Defender for IoT (On-premises Management Console)
You can install the Vulnerability Response for Microsoft Defender for IoT (On-premises Management Console) if you have the admin role. The application includes installs related ServiceNow® Store applications and plugins if they are not already installed.- Assign Vulnerability Response for Microsoft Defender for IoT (On-premises Management Console) roles
Assign roles to your users so that you can control their access to the features, capabilities, and data in the Vulnerability Response for Microsoft Defender for IoT (On-premises Management Console) application. - Run the National Vulnerability Database integration
Run the National Vulnerability Database (NVD) integration to import data from the National Institute of Standards and Technology (NIST) NVD product. Running the NVD integration helps you determine the severity and details of Common Vulnerabilities and Exposures (CVEs) found in your environment. - Configure the Vulnerability Response for Microsoft Defender for IoT (On-premises Management Console)
Configure the record for the Vulnerability Response for Microsoft Defender for IoT (On-premises Management Console) integration. - Configure import schedules
Configure the import schedules to access the Microsoft Defender for IoT records. - Configure the system ID of the OT Vulnerability Response integration
Configure the system ID to import integration records fully after the Microsoft SGC Connections integration. - Configure Auto-Close Stale Detections
Enable Auto-Close Stale Detections to automatically close stale vulnerable detections not recently found by your third-party integrations.
Parent Topic:Operational Technology Vulnerability Response Integrations