Combined ServiceNow Otto for Security Incident Response (SIR) (SIR) release notes for upgrades from Zurich to Australia
Summarize
Summary of Combined ServiceNow Otto for Security Incident Response (SIR) Release Notes for Upgrades from Zurich to Australia
This consolidated release notes document provides ServiceNow customers with essential information about upgrading the ServiceNow Otto for Security Incident Response (SIR) application from the Zurich release family to Australia. It covers new features, changes, activation, and important upgrade considerations to help customers prepare and maximize the value of their Security Incident Response capabilities using AI-driven automation and workflows.
Show less
Key Features
- Default Activation of Now Assist Skills and Agents (Zurich): Upon upgrade, multiple AI-driven skills and agents for summarization, resolution planning, correlation insights, quality assessment, and shift handover reporting are activated by default unless previously deactivated by the customer. These include workflows like "Wrap up security incident," "Resolve security incident," and agents handling EDR, observable analysis, and security metrics.
- Enhanced Incident Resolution Plan (Zurich Patch 7): Customers can now enrich AI-generated resolution plans by integrating their existing runbooks into the Security Incident Resolution Plan skill, providing greater context and precision.
- Agentic Workflows and AI Agents Role Configuration (Zurich Patch 4): Additional security role assignments are required for executing agentic workflows and AI agents, ensuring controlled access and execution.
- Generative AI for Quality Assessment (Zurich Patch 4): Automatically generate detailed, rule-based quality assessment reports for security incidents to improve incident handling and review processes.
- Shift Handover Reporting (Zurich Patch 1): AI agents assist analysts by generating and refining shift handover reports using natural language interaction, streamlining knowledge transfer between shifts.
- Security Operations Metrics Analysis (Zurich Early Availability): Agentic workflows enable security managers to analyze team performance metrics such as case volume, mean time to assign (MTTA), and mean time to resolve (MTTR) and receive improvement suggestions.
- Correlation Insights Enhancements: Correlation analysis is expanded beyond primary CIs and affected users to include multiple associated configuration items and users, accessible directly within the Security Incident Response Workspace.
- Natural Language AI Assistance: Analysts can interact with AI agents via natural language chat to generate incident resolution plans and receive guided assistance to close security incidents effectively.
Upgrade Considerations and Important Information
- Pre- and Post-Upgrade Tasks: Review and complete necessary tasks to ensure a smooth upgrade experience.
- Automatic Dependency Updates: When upgrading ServiceNow Otto for SIR, all dependent applications are updated automatically.
- AI Search Application Requirement: AI Search must be enabled to support recommended actions skills in security incident workflows. Verify AI Search status in your instance and contact support if not enabled.
- Skill Activation Behavior: Skills installed but never activated by the customer are enabled by default during upgrade unless previously manually deactivated.
Changes and Removals
No features or functionality were removed or deprecated between Zurich and Australia releases. Some enhancements like "Sightings search" and "Isolate host" capabilities were added to the incident resolution workflow to aid incident handling, but no updates were made in the Australia release itself.
Activation and Additional Requirements
- ServiceNow Otto for Security Incident Response (SIR) must be requested and installed from the ServiceNow Store.
- No new browser, localization, or accessibility requirements were introduced in the Australia release.
What You Can Expect
By upgrading to the Australia release, you will benefit from AI-enabled automation and enhanced workflows that help streamline security incident resolution, improve quality assessments, and facilitate operational reporting. The integration of your existing runbooks into AI workflows enhances resolution accuracy. Analyst collaboration is supported through natural language chat with AI agents, making incident management more efficient and insightful. Role-based security controls ensure that AI and agentic workflow execution is governed appropriately.
Consolidated page of all release notes for ServiceNow Otto for Security Incident Response (SIR) (SIR) from Zurich to Australia.
How to use this page
To help you prepare for your upgrade, we have combined the cross-family ServiceNow Otto for Security Incident Response (SIR) (SIR) release notes onto one page. Read this summary of the new features, changes, and updated information for your product from Zurich to Australia.
Important information for upgrading ServiceNow Otto for Security Incident Response (SIR) (SIR) to Australia
Before you upgrade to Australia, review these pre- and post-upgrade tasks and complete the tasks as needed.
| Release | Release notes |
|---|---|
Zurich |
Note: For more information, see AI assets on by defaultThe following Now Assist skills, agents, and agentic workflows for ServiceNow Otto for Security Incident Response (SIR) are activated by default: Skills
Agentic workflows
Agents
Note: Upgrading the Now Assist plugins activates any designated skills that were previously untouched by the customer.
When you update the ServiceNow Otto for Security Incident Response (SIR) (SIR) application, the dependency applications are automatically updated. For more information about required applications for ServiceNow Otto for Security Incident Response (SIR), see Supporting information. The AI Search application must be enabled so that the recommended actions skill works for security incidents with ServiceNow Otto for Security Incident Response (SIR). To verify that AI Search is enabled on your instance, navigate to . Contact support if the page indicates that AI Search isn’t enabled. |
Australia |
No updates for this release. |
New features
Between your current release family and Australia, new features were introduced for ServiceNow Otto for Security Incident Response (SIR) (SIR).
| Release | Release notes |
|---|---|
Zurich |
|
Australia |
No updates for this release. |
Changes
Between your current release family and Australia, some changes were made to existing ServiceNow Otto for Security Incident Response (SIR) (SIR) features.
| Release | Release notes |
|---|---|
Zurich |
|
Australia |
No updates for this release. |
Removed
Between your current release family and Australia, some ServiceNow Otto for Security Incident Response (SIR) (SIR) features or functionality were removed.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Deprecations
Between your current release family and Australia, some ServiceNow Otto for Security Incident Response (SIR) (SIR) features or functionality were deprecated.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Activation information
Review information on how to activate ServiceNow Otto for Security Incident Response (SIR) (SIR).
| Release | Release notes |
|---|---|
Zurich |
Install ServiceNow Otto for Security Incident Response (SIR) by requesting it from the ServiceNow Store. Visit the ServiceNow Store website to view all the available apps and for information about submitting requests to the store. For cumulative release notes information for all released apps, see the ServiceNow Store version history release notes. |
Australia |
No updates for this release. |
Additional requirements
If any additional requirements were introduced or changed for ServiceNow Otto for Security Incident Response (SIR) (SIR) we have noted them here.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Browser requirements
If any specific browser requirements were introduced or changed for ServiceNow Otto for Security Incident Response (SIR) (SIR) we have noted them here.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Accessibility information
Review details on accessibility information for ServiceNow Otto for Security Incident Response (SIR) (SIR), such as specific requirements or compliance levels.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Localization information
If there are specific localization considerations for ServiceNow Otto for Security Incident Response (SIR) (SIR) we have noted them here.
| Release | Release notes |
|---|---|
Zurich |
No updates for this release. |
Australia |
No updates for this release. |
Highlight information
If there are specific highlight considerations for ServiceNow Otto for Security Incident Response (SIR) (SIR) we have noted them here.
| Release | Release notes |
|---|---|
Zurich |
Zurich Patch
7
Zurich Patch 5
Zurich Patch 4
Zurich Patch 1
Zurich Early Availability
|
Australia |
No updates for this release. |