Mapping of ticket fields for the SecureWorks CTP integration
Map the ticket and event fields to the fields in the security incident form.
For the mapping step, you must first ingest sample tickets and then ensure that all the relevant ticket fields are mapped to the appropriate place on the Security Incident Response form and then visualize the security incident in the preview section.
Mapping of the sample ticket fields involves the following:
- Fetching and populating of the sample data: See Ingesting the sample Secureworks tickets
- Mapping the ticket fields to the security incident: See Mapping Secureworks ticket fields to security incident response fields