SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

What is Incident Severity Scale?

I see it as u_severity_scale Reference but no idea what it is and has no values.I have other fields for severity, service condition, priority and urgency so I'm confused what Severity Scale was meant for or how it can be used?

Resolved! Open Table with Sort

Hello,I am attempting to modify a module to load a table sorted by item number in ascending order to enhance performance. Despite setting the link type to URL and configuring the arguments, the module continues to use user preferences to load the vul...

gatesjj2 by Tera Contributor
  • 947 Views
  • 2 replies
  • 1 helpfuls

SIEM Auto Technique Extraction Rule

Hi,We have an API from Sentinel which creates records directly into the sn_si table as Security Incident. This integration passes the MITRE Technique T numbers into a custom "techniques" field today as well as the Tactic numbers into a different cust...

Rash99 by Tera Contributor
  • 1664 Views
  • 7 replies
  • 0 helpfuls

Auto Technique extraction rule for Azure Sentinel

We have integrated the Azure Sentinel with ServiceNow for Security Incident creation, and it also passes the Tactic and Technique information. We have enabled the MITRE ATT&CK matrice (Enterprise) and the associated techniques, however, this is only ...

Need to fetch custom fields from sentinel to SIR Servicenow

Hi Team, We have configures bidirectional integration for Microsoft Azure Sentinel and SIR ServiceNow ,there is a requirement to fetch custom field on sentinel called as site_name we want to map it to Business Unit of SIR record . while checking azur...

Pooja P by Tera Contributor
  • 983 Views
  • 3 replies
  • 0 helpfuls

Resolved! Azure Sentinel Integration - Configuration Item (CI) mapping

Hello! Scenario: We have already implemented the SecOps integration with Sentinel and our current CMDB uses both IP or hostname as identifierQuestion 1: What is the best "Azure Sentinel Source Fields" to map to the "ServiceNow Configuration Item" fie...

Map entities from Sentinel to ServiceNow

Hi ServiceNow Community, I am currently working with mapping entities from Sentinel to ServiceNow using the plugin called Microsoft Sentinel (x_mioms_azsentinel). The problem is that the entities on the Sentinel tickets are being mapped to Work notes...

theabb by Tera Contributor
  • 1539 Views
  • 2 replies
  • 0 helpfuls