Robust SecurityOps tool
Use Cases and Deployment Scope
We were using ServiceNow Configuration Management Data Base (CMDB) and ticketing modules hence it was somewhat logical for us to have the ServiceNow Security Operations module to have seamless integration and consequently operational efficiency. In addition, I have built incident response automation playbooks using this module.
Pros
- Excellent integration with ticketing and CMDB module
- Ability to manage configuration changes to minimize security impact
- Can build incident response playbooks for scenarios
- Automation of workflows inside of security operations for escalations specifically
Cons
- Even though I mentioned that we built incident response playbooks, we found the learning curve to be steep, having drag and drop or something similar to this would be appreciated
Likelihood to Recommend
Tight integration across ticketing, CMDB and ServiceNow Security Operations workflows automation module definitely stand out. In addition, the mean time to detection has reduced in my organization leading to a more efficient security operations with less burnout.
