logo

NJP

Mitigation Controls Monitoring

Mitigation Controls Monitoring

by Service-now.com

Monitor assets for the presence of MITRE mitigations for various threats and vulnerabilities.

0 installs 0 reviews v4.2.2 Scoped Application Free (integration tables[28] not counted) 28 tables
Developer Instance Sub-Production

Install Trend

First tracked: 2025-01-02 Latest: 2026-09-09 (0 installs)
View Install Data
Date Install Count Change
2026-09-09 0 -
134 days of no change
2026-04-27 6 -6
223 days of no change
2025-09-15 5 +1
20 days of no change
2025-08-25 4 +1
167 days of no change
2025-03-10 3 +1

About

Mitigation controls monitoring automatically identifies how security tools such as endpoint protection (EDR) and web application firewall (WAF) are configured in your environment and what MITRE techniques are mitigated as a result. These mitigations are mapped to vulnerabilities so that your vulnerability managers can automatically reduce risk scores for vulnerable items based on available mitigation controls.  

Key Features

The following use cases are supported:

- Mitigation controls policies included with the application that help you identify various mitigations present on your assets based on how different security controls and tools are configured.
- Identify if your assets have Web Application Firewall (WAF) protection.
- Automatically map the WAF mitigation to vulnerable items by analyzing the policy signatures in the firewall and the Common Vulnerabilities and Exposures (CVE) information.
- Identify exploit mitigation controls from endpoint protection or Endpoint Detection and Response (EDR) tools like CrowdStrike and Microsoft Defender for Endpoint.
- Automatically map the EDR exploit mitigation controls to relevant vulnerable items by analyzing the vulnerability information and the EDR mitigation control configuration.
- Populate vulnerable items with relevant attributes that can be used in your Vulnerability Response risk calculator rules.
- Monitor assets for internal security compliance standards by creating custom mitigation control policies using advanced configuration data from EDR tools.
- View a mitigation controls summary on the dashboard and drill down to see the underlying assets.
- Supported Web Application Firewall tools include F5 Big-IP and AWS WAF.
- Supported Endpoint Protection or EDR tools include CrowdStrike and Microsoft Defender for Endpoint.

Version History (8)
v4.2.2 2026-06-16 17:12:38
The following enhancements and changes support internal security directives: Enhancements to the Mitigation Controls Monitoring tables to align wi...
v4.2.0 2026-04-09 15:40:42
  Fixed: Inconsistent behaviors in multi-tenant environments that resulted in support for only a subset of the application's tables that are ...
v4.1.4 2025-12-11 15:10:55
Fixed Choice values for integration_type/sn_sec_int_integration are no longer removed during the installation of Mitigation Controls Monitoring.
v4.0.3 2025-07-31 15:43:49
Changed: The labels on the form view for the mitigation control details record associated with vulnerable item records (VITs) have been enhanced fo...
v4.0.2 2025-05-01 18:57:14
Fixed Enhanced handling of VM–Server relationships via the CI Relationship [cmdb_rel_ci] table, enabling accurate population of mitigation detail...
v3.0.1 2025-04-03 13:32:51
Fixed: F5 Big-IP integrations timing out with the Mid Server.
v3.0.0 2025-01-30 16:18:39
New: The SentinelOne Integration for mitigation controls monitoring is supported. Field mitigation mode added to distinguish between detect and pr...
v2.0.1 2024-11-07 16:25:00
New: Initial release. Added support for Microsoft Defender for Endpoint as a source for mitigation control information. Supporting documentation:...

Support

ID: 012239330c868e10d94cd01b34bf61cb · Published: Jun 2026 · Updated: Sep 09, 2026