Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Create quick filters for Security Incidents and Response Tasks lists

Create quick filters to create reusable, predefined filters that appear on the security incidents and response tasks list pages enabling security analysts to filter the list items without adding the filter conditions each time.

Before you begin

Role required: sn_si.admin

Procedure

  1. Navigate to Workspaces > Security Incident Response Workspaces > Administration.

  2. Navigate to Quick Filters > Filters.

  3. On the Filters page, select New.

  4. On the Create New Quick Filters, fill in the fields.

      
    NameName for the filter.
    ActiveOption to set the filter active.
    TableThe table on this filter is to be applicable.
    OrderControls the display order of this filter. Lower sequence numbers appear first.
    ConditionsUse the condition builder to define the criteria to be filtered.
  5. Select Save.

Result

The newly created filter is saved and appears on the Filter page.

Parent Topic:Configuring SIR Workspace

Related topics

Set up view of SIR Records

Configure SI design time investigation

SIR Workspace Related Records

Define the new Risk Score Calculator Rules

Configure Shift Handover

Security Incident Response conference call integration

Configure report templates in Security Incident Response

On-Call scheduling in Security Incident Response

Category management in Security Incident Response

View and update Security Incident Response system properties

Timeline in Security Incident Response Workspace