Create a New Remediation Goal

Required Tenable Vulnerability Management User Role: Basic User, Scan Operator, Standard, Scan Manager, or Administrator

Remediation goals can be static or dynamic. Static remediation goals have a fixed due date, whereas dynamic goals do not have a fixed due date, but you must meet the goal within a specified time period or must be in an ongoing state.

For example, configure a dynamic remediation goal to ensure that Log4J findings must not exist in the system. You can configure this remediation goal as Ongoing and if the count of Log4J findings becomes greater than zero, then the goal fails.

To create a new remediation goal:

  1. In the upper-left corner, click the Menu button.

    The left navigation plane appears.

  2. In the left navigation plane, in the Act section, click Remediation.

    The Remediation page appears. By default, the Remediation Projects tab is active.

  3. Click the Remediation Goals tab.

    The Remediation Goals page appears.

  4. In the upper-right corner, click Create Remediation Goal.

    The Create a Remediation Goal page appears.

    On the left side of the page, you can select from the following and click Next after each selection:

    Option Actions
    Name
    • In the Goal Name box, type a name for the remediation goal.

    • In the Description box, type a description for the remediation goal.

    Conditions

    In the Findings Filters section, the following filters are selected by default.

    • Severity is not equal to Info

    • State is not equal to Fixed

    Note: You can select up to a maximum of five filters.

    You can modify the existing filters or add new filters to the list with AND and OR options.

    Tip: Tenable Vulnerability Management shows the findings count based on the filters in the Scope.

    1. Under Findings Filters, click Select Filters.

      The Select Filters drop-down box appears.

    2. Click the filter you want to apply.

      The filter appears in the Finding Filters box.

    3. In the filter, click the button.

      A list of filter value and operator options appears.

    4. In the first drop-down box, select the operator you want to apply to the filter.

    5. In the second drop-down box, select one or more values to apply to the filter.

    6. Select Match All from the drop-down box. By default, Tenable Vulnerability Management sets the filter to Match All.

    Goal Due Date

    Select and configure one of the following options:

    Note: Tenable Vulnerability Management determines the remediation goal type based on the due date option you configure. If you configure options for Within number of days or Ongoing,Tenable Vulnerability Management creates the goal as a dynamic goal. If you select By fixed date, Tenable Vulnerability Management creates the goal as a static type.

    • Within number of days — The number of days within which the goal must be complete.
    • By fixed date — The date by when you must complete the goal.

    • Ongoing — An ongoing goal is a remediation goal always in progress and must always be met. This option is selected by default.

    For more information, see Fixed-Scope and Ongoing Remediation Goals.

  5. Click Save.

    Tenable Vulnerability Management saves the remediation goal.