Vulnerability Management permissions - Configure Vulnerability Management permission, which provides a centralized view of vulnerabilities in your organization. - Administrator Guide - Cortex XSIAM - Cortex - Security Operations

Cortex XSIAM 3.x Documentation

Product
Cortex XSIAM
Creation date
2025-07-15
Last date published
2026-06-16
Category
Administrator Guide
Abstract

Configure Vulnerability Management permission, which provides a centralized view of vulnerabilities in your organization.

Controls access to Vulnerability Management, which provides a centralized view of vulnerabilities across your organization to track, prioritize, and remediate discovered CVEs and exposures.

Note

Requires a Cloud Posture Security, Cloud Runtime Security, Attack Surface Management (ASM), Exposure Management, or Cortex XSIAM Premium license. How users access and utilize these features depends on your license.

  • Cloud Posture Security, Cloud Runtime Security, or Cortex XSIAM Premium licenses: Go to Posture ManagementVulnerability Management. Grants access to Vulnerability Issues, Vulnerable Assets, Vulnerabilities by CVE, Vulnerability Intelligence, and Emerging Vulnerabilities.

  • Exposure Management license: Go to Exposure ManagementVulnerability Management. Contact Customer Support to enable this feature.

  • ASM license (without other licenses): Go to ModulesAttak Surface.. Grants access only to Vulnerability Policies.

For more information, see Vulnerability Management.

Permission

Description

Roles Example

None

No access to Vulnerability Management pages, such as Vulnerability Issues, Findings, CVEs, and Vulnerability Policies.

View

Read-only access to Vulnerability Management pages, such as Vulnerability Issues, Findings, CVEs, and Vulnerability Policies.

  • SOC Tier 1 and 2 Analysts: Needs visibility into vulnerabilities for initial triage; should not modify rules or policies.

  • Threat Hunter: Needs read access for threat research and correlation; typically does not modify rules or policies.

View/Edit

Full access to manage vulnerability issues (change status, assign, change severity), create/edit vulnerability policies (where relevant).

  • SOC Tier 3 Analyst: Senior analysts who can manage vulnerability issue lifecycle.

  • Security Engineer: Configures vulnerability remediation workflows.