Vulnerability Management Support
Learn how a new vulnerability is created in TISC with a related vulnerability in VR.
Before you begin
Role required:
- System Administrator (view, create or edit)
- sn_sec_tisc.admin (view)
About this task
When new vulnerability is created in TISC and there is a related vulnerability in VR.
- If VR vulnerability(v2) score is > 8 OR VR vulnerability(v3) score is > 8.
- Total VI’s associate to it are greater than 0.
Procedure
Navigate to All > Threat Intelligence Security Center > Administration.
Select Automated Flows.
Select Vulnerability Management Support action link to view the respective rule details in the flow designer.
View the flow designer action for the following trigger:
When new vulnerability is created in TISC and there is a related vulnerability in VR.If the percentage of total VI’s remediated that are associated to that vulnerability is 100%, then:
- Add a tag called Remediated to the observable.
Else, enrich the observable data with available capabilities:
Create a remediation task for VR.
Notify the concerned VR team’s regarding it.
Vulnerability management support
Parent Topic:Working with automated flows
Related topics
Automated sharing of high-risk IOC's with trusted partners
Automatically add threat intelligence to a TAXII collection
Create vulnerability assessment for zero day
Analyze, assess, and disseminate observables
Analyze and assess threat IoC’s
Zero-day vulnerability tracking