Skip to content
Release: Australia · Updated: 2026-03-27 · Official documentation · View source

Enable security incidents for vulnerabilities

Access threat intelligence context for security incidents directly within the Security Incident Response Workspace. TISC context helps you understand related threats and make informed decisions during incident response.

Before you begin

Roles required:

  • sn_sec_tisc.analyst
  • sn_si.analyst

About this task

Security incidents enable tracking and management of remediation efforts for vulnerabilities in TISC, supporting prioritized response and maintaining auditability. For more information, see Create Security Incident from a Vulnerability Record.

Procedure

  1. Navigate to Workspaces > Security Incident Workspace.

  2. Select the Security Incidents icon on the workspace.

  3. Navigate to Lists > All.

  4. Open a security incident record.

  5. Navigate to the TISC Context section.

    The Vulnerabilities entry point provides access to information about threat objects related to the selected vulnerability.

  6. Select View Related Info to explore associated vulnerability data.

    This displays a list of related threat objects associated with the vulnerability, including threat actors, attack patterns, campaigns, cases, vulnerability entries, and vulnerability assessments.

  7. Select any object to view the corresponding record in the TISC workspace.

Parent Topic:TISC integration within SIR Workspace

Related topics

Define Vulnerability

Create Remediations

Create Vulnerability Assessment from a Vulnerability