Note:
This app version is intended for Unified Security Exposure Management (USEM), a significant architectural upgrade to the Vulnerability Response applications.
If you are currently using Vulnerability Response and upgrading to USEM for the first time, you must use the Migration assistant for Unified Security Exposure Management to ensure a safe and successful upgrade. For full details, please refer to the KB2556844 and documentation before proceeding.
If you do not intend to upgrade to USEM, please select a version below 30.x when installing or upgrading.
The Vulnerability Response Integration with Palo Alto Prisma Cloud application facilitates ingestion of policies and alerts from Prisma Cloud, as tests and test results respectively, in the Configuration Compliance application. With the right configuration, the test results can be managed seamlessly by assigning appropriate risk scores, and grouping and assigning them to relevant users and groups.
The Vulnerability Response Integration with Palo Alto Prisma Cloud enriches the compliance data on your instance by retrieving data from Prisma Cloud.
A series of scheduled jobs invokes the integrations automatically. You can also run these scheduled jobs manually. These scheduled jobs simplify the test results remediation life cycle by keeping the instance updated by retrieving data periodically from Prisma Cloud.
New
- Modified integrations to adopt the standardized data model and modularized feature sets from Configuration Compliance.
- The Administration Console now displays a tile to review integration status runs when the Palo Alto Prisma Cloud integration for security operations is installed.
- The following dependent plugins and applications must be installed and activated. These applications are available from the ServiceNow Store.
- Security Support Common
- Vulnerability Response
- Vulnerability Response and Configuration Compliance for Containers
- Configuration Compliance
- Prisma Cloud Platform integration tasks require the following roles:
- sn_vul_prismacloud.configure_integration: Ability to read, write, and delete the records.
- sn_vul_prismacloud.read_integration: Ability to read the records.
- Refer to the Vulnerability Response Compatibility Matrix and Release Schema Changes in the Supporting links section for more information about application compatibility.