Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

GRC request exception form fields

The following table shows the field descriptions for the GRC request exception form.

FieldDescription
PolicyVulnerability Management policy that you’re requesting an exception for.
Control objectiveControl objectives that are associated with the policy that you selected. If a policy isn’t selected, all the control objectives are listed.
Valid fromDate when the exception starts. The default value is the current date. This date can't be in the past.
Valid untilDate that the policy exception expires and the state of the vulnerable item or group changes from Deferred to Open.Note: The number of days that the policy exception is valid can't exceed the Maximum exception duration (days) that you set for the policy in Policy and Compliance. For more information, see Create a policy.
ReasonReason for requesting an exception.
JustificationDetails that are related to the reason why this request is being made. This field must be filled in by the remediation owner.