Integrate Microsoft Defender for IoT (On-premises Management Console) with the ServiceNow® Operational Technology Manager application to import devices, connections, and sensor appliances
- Import Microsoft Defender for IoT sensors into the Network IDS (NIDS) class and take advantage of NIDS metadata assignment capabilities.
- OT devices detected by sensors with validated NIDS records will be imported and assigned the metadata on the NIDS record automatically.
- When Industrial Process Manager is also installed, sites can be assigned to detected OT devices, and access can be restricted to users on a per-site basis.
- Support for importing OT-specific attributes, including zone and Purdue Model, to define the different levels of critical infrastructure.
- Connection details of detected communication between OT devices are imported as relationships, which can be used to understand the context of any OT device.
- Embedded OT Control Modules are created with relationships to the parent OT Control System, which can also be used to understand the context.
- Data from additional sources like ServiceNow Discovery and Microsoft SCCM can be updated in the multisource CMDB.
- Sensors located on IT networks (for example, in data centers) can be designated as “IT” and appropriate Configuration Item records and relationships can be created.
Fixed:
- Updated with various bug fixes
- CMDB CI Class Models
- Operational Technology Manager
- Industrial Process Manager – provides site assignment and equipment model entity mapping capabilities
Using this plugin to import Operational Technology (OT) devices from Microsoft Defender for IoT requires a license from ServiceNow – please refer to the OT Subscription Unit Overview here: https://www.servicenow.com/content/dam/servicenow-assets/public/en-us/doc-type/legal/ot-servicenow-subscription-unit-overview.pdf
Note – this integration is for Microsoft Defender for IoT on-prem version (previously called CyberX) and does not support the Azure / cloud-based SaaS version.
Supports Microsoft Defender for IoT Sensor versions:
- 22.2.3.22
- 22.2.5.9
Supports Microsoft Defender for IoT (on-premises) Central Manager versions:
- 10.5.2
- 10.5.2