Using Unified Security Exposure Management
Unified Security Exposure Management provides a comprehensive platform for managing vulnerabilities and ensuring compliance across your organization. By unifying workflows across Vulnerability Response (VR), Application Vulnerability Response (AVR), Container Vulnerability Response (CVR), and Configuration Compliance (CC), you can view all findings in one place, streamline workflows and improve overall efficiency.
- Create a dashboard in the Findings view page
As a vulnerability manager and analyst, create a configured dashboard using the visualization library widgets, and use the active widgets to drill down to specific findings. - Evaluate vulnerability exposure data with Security Exposure 360
Use the Security Exposure 360 agentic workflow to review vulnerability data about your environment. Vulnerability analysts and remediation owners can enter questions in plain language and receive comprehensive answers about host, container, and test results vulnerabilities. - Exploring AI Security Exposure Management
AI Security Exposure Management is a part of the Unified Security Exposure Management product suite of applications. AI Security Exposure Management integrates with third-party AI security products to help you manage various types of potential AI exposure across your environment. - Generate vulnerability insights with generative AI
Use the Security Exposure Management (SEM) Insights generative AI skill to provide contextual summaries and actionable recommendations in the Security Exposure Management (SEM) Workspace. Use insights based on exposure data, threat intelligence, remediation status, and asset context to surface dynamic insights for Findings views. Help admins, analysts, and vulnerability managers prioritize critical risks and take immediate remediation actions. - Retrieve Vulnerability and exposure data with generative AI
Chat with an AI agent to get help with your questions about Vulnerability Response host and Application Vulnerability Response findings (vulnerable items and application vulnerable items). - Assess your vulnerability exposure with generative AI
Chat with an AI agent to help you assess the potential exposure of your configuration items and your business services to vulnerabilities. - Identify duplicate vulnerable items with generative AI
Use the Vulnerable item de-duplication generative AI skill to identify the primary (first-found) vulnerable items for configuration items along with duplicate vulnerable items that are imported by your vulnerability scanners. - Approval recommendations using generative AI
Learn more about the how the Approval Recommendation generative AI skill arrives at its approval recommendations and the sources it uses to generate them. - Suggest vulnerability solutions with generative AI
Use generative the Approval Recommendation generative AI skill to help your analysts find potential preferred solutions from third-party vendors for the vulnerabilities on your assets. - Analyze vulnerability remediation status with generative AI
Chat with an AI agent to help you gain insights into your monthly remediation compliance metrics for vulnerable items. - Creating an API connector with generative ai
Use the SPC Setup Connector generative AI skill in USEM to help your developers quickly and automatically create an API connector that you can publish and use in the Security Posture Control workspace. This skill automatically selects an API template, populates request and header parameters, and maps sample response attributes to SPC attributes based on API documentation you provide. - Reclassify unclassed hardware
Reclassify unclassed hardware by updating the lookup rules. - Bulk edit in the Security Exposure Management Workspace
In the Security Exposure Management Workspace, the bulk edit feature enables you to update multiple findings simultaneously, streamlining the management and remediation process. - Use the List view in the Security Exposure Management Workspace
As a vulnerability manager, security manager and analysts, you can view remediation progress on records, drill down into findings, and view the status of their approval requests and exceptions. - Create a remediation task manually in the Security Exposure Management Workspace
You can create remediation tasks manually from the findings on the List page of Security Exposure Management Workspace. You can also create remediation tasks from the drill-down lists that appear when you click on the visualizations on the Home page. - Enable or disable the import of test results for a Qualys test group
In Security Exposure Management Workspace control the import of the test results for the tests in a Qualys test group by using the Enable/Disable import button, which is available in the test group's record view. - Modify the severity for a CVE or TPE
As a vulnerability manager or analyst, you can modify the severity level of Common Vulnerability Entry (CVE) or Third-party Entry (TPE) in the Security Exposure Management Workspace. - Use Remediation Effort records
When Vulnerability managers and analysts create remediation efforts (REs), remediation Tasks (VUL) are automatically assigned to IT teams for remediation. - Approve or reject requests in the Security Exposure Management Workspace
Approve or reject requests that are submitted by remediation owners. - Add a compensating control to the library
As a Vulnerability Manager or Analyst, add a list of compensatory controls to the Compensating Controls library in the Security Exposure Management Workspace, which can be applied for the risk reduction of host vulnerable items and remediation tasks. - Examples for remediation task creation in the Security Exposure Management Workspace
When you create remediation tasks manually in the Security Exposure Management Workspace, records are grouped into a remediation task based on the grouping criteria you select. - Exception Management Overview
When your organization can't comply with a published finding or security policy, standard, or guideline, you can request an exception. Exception management entails requesting, reviewing, approving, or rejecting exceptions to a finding or remediation task (RT) that can’t be remediated. - Unified Approvals View
The approval process in Security Exposure Management for vulnerability and compliance exceptions is unified to simplify workflows, improve visibility, and streamline actions for Approvers. - Employee service center for Vulnerability Response
Employee Service Center provides a standardised approval experience and process for Business Unit Heads, Service Owners, and IT Heads, who may not regularly log in to USEM. It enables them to manage approvals from a central location, such as Employee Center Approval Requests, ensuring that requests are routed to the right approvers, decisions are tracked transparently, and actions are completed efficiently. This improves operational efficiency, accountability, and the overall approver experience. - Unified Approval Rules Overview
The approval rules and approval configuration are unified to provide a consistent approach to managing approval workflows. - Create a change request in the Remediation view
From a remediation task (VUL, AVUL, CVUL, or CRG), create a change request. Alternatively, add a remediation task to an existing change request.