Automated Rescan Workflow for SPM Integrations

Prerequisites

To utilize this workflow, you must have one of the following integrations configured:

Steps

1. Status Synchronization and Mapping

Within your specific integration settings (ServiceNow or Palo Alto or Jira):

  • Enable Status Synchronization
  • Map the "Closed" status (or similar name) to the "Resolved" status within the SPM platform.

2. Account Preference Activation

To trigger the automation, a setting must be enabled:

  1. Navigate to Settings > Account > Account Preferences.
  2. Enable the following setting: “Enable automatic rescan for findings with Remediation Status resolved. When a finding gets its Remediation Status to resolved, rescan will be automatically triggered.”

Workflow

Once configured, the following automated sequence occurs:

  1. A user closes a ticket or incident within ServiceNow or Palo Alto Cortex or Jira
  2. The integration automatically updates the finding's Remediation Status to "Resolved" in the SPM platform.
  3. The platform detects the "Resolved" status and immediately triggers a rescan to validate if the security issue has been successfully remediated.
Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Please sign in to leave a comment.