Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Send data from SIR Workspace to TISC

Learn how the data is collaborated and shared between the Threat Intelligence Security Center (TISC) and Security Incident Response (SIR) Workspaces by following the procedures explained in the following sections.

  • System properties to send data
    Review the system properties for TISC integrations to combine with SIRW. You can configure these properties to control how both applications manages the integrations.
  • Add security incident to TISC case
    Add security incidents to TISC case records.
  • Add observables to TISC Case
    Add observables to TISC case records.
  • Send Observables to TISC
    Using this feature the security analyst can push the observables data from SIR to TISC. Using the TISC Context, you can check if the observables are present in TISC, if not security analyst can push the data whenever required.
  • Send Threat Lookup to TISC
    Using this feature the security analyst can push the threat lookup data from SIR to TISC. Using the TISC Context, you can check if the threat lookup results are present in TISC, if not security analyst can push the data whenever required.
  • Send Sighting Search to TISC
    Using this feature the security analyst can push the sighting search data from SIR to TISC. Using the TISC Context, the analyst can check if the sighting search data is present in TISC, if not the security analyst can push the data whenever required.
  • Send Observable Enrichment to TISC
    Using this feature the security analyst can push the sighting search data from SIR to TISC. Using the TISC Context, the analyst can check if the sighting search data is present in TISC, if not the security analyst can push the data whenever required.

Parent Topic:TISC integration within SIR Workspace