Integration with QRadar Vulnerability Manager

IBM QRadar Vulnerability Manager integrates with IBM QRadar Risk Manager to help you prioritize the risks and vulnerabilities in your network.

You must have the correct license capabilities to perform the following scanning operations. If you need assistance to obtain a new or updated license key, contact your local sales representative or IBM Customer Support (www.ibm.com/support/).

Risk policies and vulnerability prioritization

You can integrate QRadar Vulnerability Manager with QRadar Risk Manager by defining and monitoring asset or vulnerability risk policies.

When the risk policies that you define in QRadar Risk Manager either pass or fail, vulnerability risk scores in QRadar Vulnerability Manager are adjusted. The adjustment levels depend on the risk policies in your organization.

When the vulnerability risk scores are adjusted in QRadar Vulnerability Manager, administrators can do the following tasks:
  • Gain immediate visibility of the vulnerabilities that failed a risk policy.

    For example, new information might be displayed on the QRadar dashboard or sent by email.

  • Re-prioritize the vulnerabilities that require immediate attention.

    For example, an administrator can use the Risk Score to quickly identify high-risk vulnerabilities.

If you apply risk policies at an asset level in QRadar Risk Manager, then all the vulnerabilities on that asset have their risk scores adjusted.