Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Upload Secure File Attachments

Use this section to understand on how to upload the secure file attachments to the case(s).

Before you begin

Role required: sn_sec_tisc_secure_file_access, sn_sec_tisc.admin

Note: Secure Files related lists is only displayed when you have the user role, sn_sec_tisc.secure_file_access.

Procedure

  1. Navigate to Workspaces > Threat Intelligence Security Center.

  2. Click Threat Analyst Workbench icon.

  3. Go to Case Management > All Cases.

    All the cases are displayed.

  4. Select any case.

  5. Go to Artifacts > Secure Files related lists.

  6. Click Upload Secure File button.

  7. Click Add File to add the attachments.

  8. Select the files and click Upload Secure File(s) button.

    The file attachments are uploaded.

Image omitted: tisc-upload-secure-file.png
Secure file attachments
  1. Click Download Secure Files to download the attachments.

    The attachments are available in the zip format.

  2. Alternatively, you can download the file by navigating to the details page of the secure file record.

    Note:

    • All the secure attachments are encrypted and stored in the system using Key Management Framework (KMF). For more information, see Key Management Framework.
    • If users have subscription for ServiceNow Integration Hub Professional Pack Installer, secure files are compressed in zip format and also encrypted and stored

Parent Topic:Threat Analyst Workbench

Related topics

Workbench Overview

Creating cases using Threat Analyst Workbench

Summarize a Case with Now Assist for Threat Intelligence Security Center

Creating case task using Threat Analyst Workbench

Working with Investigation Canvas

Add artifacts to case(s) or case task(s)

Run Enrichment Actions within a case

Generate a Case Report using generative AI

Generate a Case Report using a template

Create a security incident from a TISC case

Using playbooks