Send Observable Enrichment to TISC
- UpdatedJul 31, 2025
- 3 minutes to read
- Zurich
- Security Incident Response
Using this feature the security analyst can push the sighting search data from SIR to TISC. Using the TISC Context, the analyst can check if the sighting search data is present in TISC, if not the security analyst can push the data whenever required.
Before you begin
Role required: sn_si.analyst
Procedure
Related Content
- System properties to send data
Review the system properties for TISC integrations to combine with SIRW. You can configure these properties to control how both applications manages the integrations.
- Add security incident to TISC case
Add security incidents to TISC case records.
- Add observables to TISC Case
Add observables to TISC case records.
- Send Observables to TISC
Using this feature the security analyst can push the observables data from SIR to TISC. Using the TISC Context, you can check if the observables are present in TISC, if not security analyst can push the data whenever required.
- Send Threat Lookup to TISC
Using this feature the security analyst can push the threat lookup data from SIR to TISC. Using the TISC Context, you can check if the threat lookup results are present in TISC, if not security analyst can push the data whenever required.
- Send Sighting Search to TISC
Using this feature the security analyst can push the sighting search data from SIR to TISC. Using the TISC Context, the analyst can check if the sighting search data is present in TISC, if not the security analyst can push the data whenever required.


