logo

NJP

DevOps Vulnerability Integrations

DevOps Vulnerability Integrations

by Service-now.com

Organization-wide view of risk exposure for application vulnerabilities

0 installs 0 reviews v7.0.0 Scoped Application Free
Developer Instance Sub-Production

Install Trend

First tracked: 2024-10-30 Latest: 2026-09-09 (0 installs)
View Install Data
Date Install Count Change
2026-09-09 0 -

About

DevOps Vulnerability Integrations is an additional feature set that is available for ITSM Pro customers. You need to install this application separately besides installing DevOps Change Velocity. It helps you to connect your security tools to DevOps Change Velocity. It enables you to retrieve application vulnerabilities found during Dynamic Application Security Testing (DAST) or Static Application Security Testing (SAST) or Software Composition Analysis (SCA) scanning. These vulnerabilities are generally identified by third-party systems such as Veracode or other application vulnerability scanners that are available as out-of-the-box integrations for you to use.

Customers can use this extensible security framework to connect to any security tool that is not supported in the base system of their own. This will allow an organization-wide view of risk exposure for application vulnerabilities. They will have a complete track of application vulnerabilities right from the beginning of the development cycle. Code delivery becomes more reliable even with rapid iterations and, if incidents do arise, they can be resolved more quickly.

Key Features

- A new security integration framework and data model has been added specifically for application security tools. It is an extensible framework that also allows you to create custom integrations with any application security tools.
- Connect Checkmarx which is integrated with your CI/CD pipelines to DevOps Change Velocity to retrieve security scan results. This helps you determine how vulnerable your code is. Checkmarx scans that are configured on GitHub Actions, Jenkins, and Azure DevOps pipelines are supported in the base system. You can view the security scan results in the related list of a Change Request in your ServiceNow instance or in the Pipeline UI. You can use security results in defining change policies and conditions for change automation.

Version History (8)
v7.0.0 2026-06-16 17:37:36
Changed:  No code updates were made in this release. The release number has been updated to maintain consistency with changes in related DevO...
v6.3.0 2026-03-12 16:40:20
Changed:  No code updates were made in this release. The release number has been updated to maintain consistency with changes in related DevO...
v6.2.1 2026-08-07 20:21:48
Fixed: Security bug
v6.2.0 2025-12-11 16:08:20
New  Import-based evidence collection for GitLab and Jenkins Improve instance efficiency by skipping step-level pipeline processing f...
v6.1.0 2025-07-31 15:56:08
Changed No code updates were made in this release. The release number has been updated to maintain consistency with changes in related DevOps appl...
v6.0.0 2025-05-01 19:34:05
ChangedNo code updates were made in this release. The release number has been updated to maintain consistency with changes in related DevOps applic...
v5.1.0 2025-01-30 14:33:20
New Harness tool integration with ServiceNow Integrate the Harness orchestration tool with DevOps Change Velocity. This integration enables Se...
v5.0.0 2024-11-07 18:24:36
Changed No code updates were made in this release. The release number has been updated to maintain consistency with changes in related DevOps appl...

Support

ID: 67e8d79643aaa1102a5b3a2938b8f201 · Published: Jun 2026 · Updated: Sep 09, 2026