The eMASS Spoke connects ServiceNow with the DoD Enterprise Mission Assurance Support Service (eMASS) to streamline and automate Risk Management Framework (RMF) processes. The eMASS Spoke allows users to perform assessments and complete actions associated with system records directly within ServiceNow, eliminating the need for manual updates and duplicate data entry. With support for POA&M management, control compliance tracking, and hardware/software baselines, the spoke provides a seamless, secure integration that accelerates ATO timelines and ensures continuous alignment with the latest eMASS API and DoD cybersecurity standards.
This release of the eMASS Spoke introduces compatibility with eMASS API version 3.22. It also enhances all action inputs with data type validation and informative tooltips, in addition to now supporting the following actions:
- Add device scans in a system
- Add one or many hardware assets in a system
- Add one or many software assets in a system
- CMMC Assessment Requirement Objectives Details
- CMMC Assessment Requirements Compliance Summary
- CMMC Assessment Security Requirements Details
- CMMC Assessment Status Summary
- Coast Guard System FISMA Metrics
- Delete one or many hardware assets in a system
- Delete one or many software assets in a system
- Get hardware baseline for a system
- Organization Migration Status Summary
- System Application Findings Details
- System Application Findings Summary
- System ATC/IATC Details
- System Connectivity/CCSD Details
- System Connectivity/CCSD Summary
- System Critical Assets Summary
- System FISMA Metrics
- System Migration Status Summary
- System Questionnaire Details
- System Questionnaire Summary
- Update one or many hardware assets in a system
- Update one or many software assets in a system
This release of the eMASS Spoke introduces compatibility with eMASS API version 3.22. It also enhances all action inputs with data type validation, error handling, and informative tooltips, in addition to several new actions.
eMASS:
- Register for a PKI Key with the eMASS development team. The eMASS API requires a client certificate (SSL/TLS, DoD PKI only). Every call to the eMASS REST API will require the use of the agreed upon public key certificate and API key.
- Users are required to log-in to eMASS and grant permissions for a client to update data within eMASS on their behalf. This is only required for actionable requests (PUT, POST, DELETE). The Registration Endpoint and all GET requests can be accessed without completing this process with the correct permissions.
ServiceNow:
- Plugins:
- ServiceNow IntegrationHub Action Step - JSON Parser