Frequently Asked Questions

ServiceNow CMDB Integration: Features & Capabilities

What is the CyCognito integration with ServiceNow CMDB?

The CyCognito integration with ServiceNow CMDB is a certified solution that enables organizations to synchronize external asset data discovered by CyCognito with ServiceNow's Configuration Management Database (CMDB). This integration allows for automatic creation, updating, and deletion of Configuration Items (CIs) in ServiceNow based on the status of external assets, ensuring that the CMDB remains current and comprehensive. (Source)

How does the CyCognito-ServiceNow CMDB integration improve asset management?

The integration provides end-to-end synchronization between CyCognito and ServiceNow CMDB, allowing organizations to automatically manage their complete asset inventory. It ensures that both internal and external assets are visible and up-to-date, reducing manual effort and the risk of errors in asset tracking. (Source)

What features does the CyCognito CMDB integration offer?

Key features include the ability to configure integration profiles, periodic asset retrieval to keep the CMDB current, detailed asset information display, visualization of asset relationships, configurable app settings, and process monitoring with the ability to cancel running processes. (Source)

How does the integration help with incident response?

By ensuring that security teams have access to the most current asset information, the integration enables rapid identification and response to potential threats. This is especially valuable in complex environments where manual asset management can be slow and error-prone. (Source)

What is the benefit of asset relationship visualization in ServiceNow CMDB?

The integration displays relationships between related assets, providing a comprehensive view of the asset ecosystem. This helps organizations understand dependencies and potential impact areas, improving both asset management and incident response. (Source)

How does process monitoring work in the CyCognito-ServiceNow integration?

The integration includes a process monitor that tracks ongoing processes and allows users to cancel running processes if necessary, providing greater control and transparency over integration activities. (Source)

How can organizations get started with the CyCognito CMDB integration?

Organizations can install the CyCognito CMDB Integration application directly from the ServiceNow Store. This enables them to quickly deploy and configure the integration for their environment. (ServiceNow Store)

What is the Service Graph architecture and how does CyCognito support it?

The CyCognito certified integration supports ServiceNow's latest Service Graph architecture, which enhances data modeling and integration capabilities within the CMDB. This ensures robust, scalable, and future-proof asset management. (Source)

How does the Identification and Resolution Engine (IRE) in CyCognito's integration help reduce ticket duplication?

The Identification and Resolution Engine (IRE) incorporated in the CyCognito-ServiceNow integration streamlines issue management by reducing ticket duplication, allowing for faster resolution of critical issues and more efficient incident response. (Source)

Can the CyCognito-ServiceNow integration be customized for specific organizational needs?

Yes, users can configure the CyCognito Integration Profile and various app settings within ServiceNow to tailor the integration to their specific requirements and optimize performance. (Source)

General Features & Capabilities

What products and services does CyCognito offer?

CyCognito offers a comprehensive platform for external attack surface management, including continuous asset discovery, automated security testing, exploit intelligence, vulnerability management, cloud security, and application security. Solutions include External Exposure Management (EASM), Continuous Security Testing (Autopt), Cyber Asset Inventory (CAASM), Vulnerability Management (UVM), Cloud Security (CNAPP), and Application Security (AppSec). (Source)

What integrations does CyCognito support?

CyCognito integrates with leading security and IT platforms such as Armis, Palo Alto Networks, Tenable, Wiz, Axonius, CrowdStrike, Cobalt, JupiterOne, ServiceNow, Splunk, Zendesk, and Jira. These integrations enable automated workflows and centralized information across vulnerability management, incident management, asset management, SIEM/SOAR/XDR, cloud security, and ticketing solutions. (Source)

What are the core problems CyCognito solves?

CyCognito addresses challenges such as unknown or unmanaged assets (shadow IT), excessive alert noise, manual security processes, scaling security operations, prioritizing risks, blind spots in inherited or third-party environments, and verifying remediation of security issues. (Source)

How does CyCognito help with vulnerability management?

CyCognito provides proactive vulnerability management by continuously discovering, testing, and prioritizing vulnerabilities based on real risks in your attack surface. It automates evidence collection, maps findings to compliance controls, and streamlines remediation workflows. (Source)

Does CyCognito support cloud asset discovery and security?

Yes, CyCognito's Cloud Connector provides automatic, continuous coverage of all cloud assets for AWS, Azure, and GCP, ensuring that cloud environments are included in external attack surface management. (Source)

How does CyCognito automate security testing?

CyCognito's Automated Security Testing (AST) continuously applies payload-based testing techniques across the entire external attack surface, simplifying testing processes and enhancing security posture. (Source)

What technical documentation is available for CyCognito?

CyCognito provides a range of datasheets and resources covering platform overview, automated security testing, discovery and contextualization, prioritization and remediation, exploit intelligence, vulnerability management, cloud connector, and more. These resources are available in the Knowledge Hub.

How easy is it to implement CyCognito and its integrations?

CyCognito is designed for rapid deployment with minimal setup. It does not require agents or sensors, and its autonomous mapping and continuous discovery features allow organizations to start gaining value almost immediately. (Source)

What customer feedback has CyCognito received regarding ease of use?

Customers consistently praise CyCognito for its intuitive platform and ease of use. For example, Stefan Romberg, Global CISO, stated that CyCognito became a cornerstone of their security setup due to its automatic asset detection, continuous vulnerability analysis, and comprehensive, user-friendly platform. (Source)

Use Cases & Benefits

Who can benefit from CyCognito's ServiceNow CMDB integration?

Organizations using ServiceNow ITSM and CMDB, especially those seeking unified visibility of internal and external assets, benefit from this integration. It is particularly valuable for IT and SecOps teams that require a single source of truth for asset, risk, and management data. (Source)

What business impact can organizations expect from using CyCognito?

Organizations can save up to $500,000 annually by reducing dependency on manual penetration testing and bug bounty programs. CyCognito also reduces critical findings from about 25% to 0.1%, streamlines workflows, and improves overall security posture. (Source)

What industries are represented in CyCognito's case studies?

CyCognito's case studies span industries such as gaming, media, education, hospitality, and telecommunications, demonstrating the platform's versatility in addressing cybersecurity challenges across sectors. (Source)

Can you share a specific customer success story involving CyCognito?

Scientific Games used CyCognito to uncover hidden assets and obsolete devices, gaining visibility into attack vectors previously missed. This enabled them to reduce risk and improve security workflows. (Read the full case study)

What pain points does CyCognito address for security teams?

CyCognito helps address pain points such as difficulty identifying shadow IT, alert fatigue from excessive non-actionable alerts, inefficiencies in manual processes, challenges in scaling security operations, and lack of tools for verifying remediation. (Source)

How does CyCognito help organizations achieve compliance?

CyCognito supports compliance with frameworks such as ISO27001:2022, NIST 800-171 R2, PCI-DSS v4, and CIS CSC by automating evidence collection and mapping findings to relevant controls. It also provides early warning of compliance violations and integrates with asset inventory and security testing workflows. (Source)

What security and compliance certifications does CyCognito hold?

CyCognito is SOC 2 Type II and ISO 27001 certified, demonstrating robust security controls and adherence to stringent information security management practices. (Source)

Competition & Comparison

How does CyCognito compare to Tenable ASM?

CyCognito offers continuous outside-in discovery and automated validation, providing up to 20× more visibility and focusing on the top 0.01% of risks. Tenable ASM relies on manual input and passive scanning, which can leave blind spots. (Source)

What differentiates CyCognito from Qualys?

CyCognito focuses on external attack surface management with autonomous, seedless discovery, uncovering up to 20× more exposures than Qualys, which primarily offers vulnerability management tools and requires manual input. (Source)

How does CyCognito compare to Microsoft Defender EASM?

CyCognito autonomously discovers hidden assets and provides rapid vulnerability scanning, while Microsoft Defender EASM requires manual input and lacks comprehensive discovery. CyCognito offers seedless discovery, actionable insights, and continuous monitoring. (Source)

What are the advantages of CyCognito over Palo Alto Networks Cortex Xpanse?

CyCognito uses NLP, ML, and a graph data model for business mapping, providing 20× more visibility and automated pentesting with 100,000+ modules. Cortex Xpanse relies on manual mapping and has limited testing and prioritization capabilities. (Source)

How does CyCognito's approach to asset discovery differ from competitors?

CyCognito uses seedless, autonomous discovery to identify unknown or unmanaged assets, including shadow IT and forgotten services, without requiring manual input or asset lists. This approach uncovers up to 20× more exposures than traditional tools. (Source)

What types of organizations use CyCognito?

CyCognito is trusted by leading global enterprises including Tesco, Colgate-Palmolive, Panasonic, Ströer, Hitachi, Storebrand, Bertelsmann, Wipro, Adama, Berlitz, Asklepios, Scientific Games, Agoda, Altice, and Sleep Number. (Source)

Technical Requirements & Support

What resources are available to help implement CyCognito?

CyCognito provides a Knowledge Center, Support Portal, and a dedicated Customer Success Team to assist with implementation, strategy, and best practices. (Knowledge Center) (Support Portal) (Customer Success Team)

Does CyCognito require agents or sensors for deployment?

No, CyCognito does not require the deployment of agents or sensors, making it simple to integrate into your environment and enabling rapid time-to-value. (Source)

Where can I find more information about CyCognito's security and compliance practices?

CyCognito's Trust Center provides transparency regarding data processing practices, security and compliance reports, and certifications. (Trust Center)

What technical documentation is available for the ServiceNow CMDB integration?

Technical documentation for the CyCognito-ServiceNow CMDB integration, including setup guides and best practices, is available through CyCognito's Knowledge Hub and the ServiceNow Store listing. (Knowledge Hub) (ServiceNow Store)

Back to Blog

Optimizing Asset Management and Incident Response: CyCognito’s New Integration with ServiceNow CMDB

Effective asset management and rapid incident response are crucial for maintaining cybersecurity defenses. To address these needs, and building on its previous Vulnerability Response module integration, CyCognito has announced a new certified integration with ServiceNow's Configuration Management Database (CMDB). This integration enhances asset visibility and streamlines management, offering a significant boost to organizations' security postures by facilitating quick assessment and response to configuration and asset changes.

The Integration

Historically, CMDB solutions have only provided visibility into internal assets and their configuration. The integration between CyCognito and ServiceNow CMDB brings end-to-end synchronization for managing an organization's complete asset inventory. By synchronizing CyCognito assets with ServiceNow Configuration Items (CIs) in the CMDB, organizations can now automatically create, update, and delete CIs based on the status of external assets acquired through the CyCognito CMDB Integration. This dynamic synchronization ensures that the CMDB is always up-to-date with the latest asset information, facilitating quick assessment and response to configuration and asset changes.

Features and Benefits

The CyCognito CMDB Integration facilitates the periodic retrieval of external assets from the CyCognito platform and populates them into ServiceNow CMDB. It also displays the relationship between the related assets, providing a comprehensive view of the asset ecosystem.

Figure 1. CyCognito dashboard showing external assets by category within the ServiceNow console

  • Ability to configure CyCognito Integration Profile in ServiceNow: Users can set up and customize the integration to meet their specific needs.
  • Periodic Asset Retrieval: The integration fetches assets on a regular basis to ensure the CMDB remains current.
  • Detailed Asset Information: Users can view comprehensive details of the fetched assets within ServiceNow CMDB.
  • Asset Relationship Visualization: The integration displays relationships between related assets, enhancing visibility and management.
  • Configurable App Settings: Users can tune the integration by configuring various app settings to optimize performance and functionality.
  • Process Monitoring: The integration includes a process monitor to track ongoing processes and allows for the cancellation of running processes if necessary.

Enhancing Incident Response

By integrating with ServiceNow CMDB, CyCognito ensures that security teams have access to the most current information, allowing them to quickly identify and respond to potential threats. This integration is particularly beneficial in complex environments where manual asset management can be time-consuming and error-prone.

Figure 2.  CyCognito dashboard showing external assets vulnerabilities and risk ratings within the ServiceNow console

Integration in Use

One of the world’s leading global information services companies standardized with the ServiceNow ITSM platform. The main reason for the standardization was to ensure that IT and SecOps had one source of truth about their assets, risks, and management tools. Working with CyCognto to discover their external attack surface then required that CyCognito provide integration into their ServiceNow CMDB, giving them visibility to internal and external assets. The Cycognito certified integration supports the latest Service Graph architecture and incorporates an Identification and Resolution Engine (IRE) to streamline issue management and reduce ticket duplication allowing for faster resolution to the most critical issues. 

CyCognito's latest integration with ServiceNow CMDB represents a significant step forward in enhancing both asset management and cybersecurity. By leveraging the combined strengths of these platforms, organizations can achieve greater visibility, improved management of internal and external assets, and a stronger defense against security threats.  To get started, visit the ServiceNow Store to install the CyCognito CMDB Integration application.


Request a free scan

See Exactly What Attackers See

Get a free scan of your attack surface and gain valuable insight into your organization's risk posture by allowing CyCognito to discover, contextualize, and test externally .

Request a Scan
Top Attack Paths