Configure Tenable Security Center

Last Updated: December 19, 2024

Required User Role: Administrator

To configure Tenable Security Center in ServiceNow:

  1. Log in to your ServiceNow instance.

  2. Navigate to Tenable Connector for Assets > Connectors.

    The Tenable Connector appears.

  3. Navigate to your already existing connector whose Tenable product is Tenable Security Center.

  4. From the Module drop-down box, you can select Asset, ITSM, or SGC for Tenable.

    Note: By default, the connector’s name is populated.

    Note: For the Asset Module, you can select the Pull Assets or Push Assets Tenable Job Type. For the ITSM Module, you can select Pull Vulnerabilities as the Tenable Job Type.

  5. In the Conditions > Configuration Item Source Table dropdown, select the table on which you want the query to run in order to export the assets to Tenable Security Center.

    Note: By default, this value is set to cmdb_ci. For the group type Static IP Address, the Configuration Item Source Table should be the parent table of "CMDB CI IP Address."

  6. In the Conditions > Group Name text box, enter the name of the group.

    Note: This named group is created in Tenable Security Center while pushing the assets records. You can identify these records based on the group name on the platform.

  7. In Conditions > Group Type dropdown, select DNS or Static IP Address, based on which type of data you would like to push.

    Note: For Static IP Address, you need to set the IP Version and IP’s To Send options. Only unique IP addresses are stored on the Tenable Security Center. However, in the Tenable job’s Total Record field, you may see more records than the number actually stored on the platform. This discrepancy occurs because the job does not check for uniqueness, whereas the platform does. The scheduled job first retrieves the record from the selected table, then checks the parent-child relationship in the cmdb_rel_ci table. If the relationship is not satisfied, the IP is not pushed to the platform. If the relationship is satisfied, the child IP is pushed to the platform.

  8. In the Conditions > Conditions dropdown, apply the filter conditions on the Configuration Item Source Table that you have selected.

  9. If you selected the ITSM Module, configure the following parameters:

  10. Note: The Name text box is automatically populated based on the name of the connector and Job Type.

  11. Click Submit.

Next steps: