Skip to content
Release: Australia · Updated: 2026-05-20 · Official documentation · View source

Activate the Threat Hunting Playbook

By default, the Threat Hunting playbook is deactivated. Activate it in Workflow Studio to initiate the playbook automatically for the applicable Case records.

Before you begin

Role required: admin

About this task

Activate the playbook to initiate it for the applicable Case records.

Procedure

  1. Navigate to All > Workflow Studio.

  2. In Playbooks, open the Threat Hunting playbook.

  3. To test run the playbook, select Test and enter a case record.

  4. Select Activate.

Related topics

Threat Hunting Playbook

Use the Threat Hunting Playbook