---
sourceDocument: Australia Security Management
sourceDocumentLink: https://www.servicenow.com/docs/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Summarize a security incident

# Summarize a security incident {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Understand the context of a security incident with the Security Incident summarization generative AI skill.

## Before you begin

You can summarize a security incident in the legacy Core UI (UI16) and in the Security Incident Response Workspace. There must be a minimum of 50 words in the fields that are used for the input data to summarize an incident using generative AI. For more information about the input fields, see [Inputs and triggers](https://www.servicenow.com/docs/sQ~bNfdkGhQFZCY9pyidmw "You can configure some of the inputs or triggers for a generative AI skill. Inputs or triggers permit you to determine how and when a skill is used.").

Roles required: sn_si.analyst, sn_si.manager, or sn_si.basic

## About this task

Important:  
This generative AI skill is turned on by default. The skill will be automatically available to appropriate role users for the application. For more information, see [AI agents, skills, and agentic workflows on by default](https://www.servicenow.com/docs/access?context=now-assist-skills-on-by-default&version=australia&pubname=australia-intelligent-experiences&ft:locale=en-US).

## Procedure

1. In the legacy Core UI, navigate to AllSecurity IncidentIncidents and open a security incident that is assigned to you.
2. Alternatively, navigate to AllSecurity IncidentSecurity Incident Response Workspace and open a security incident that is assigned to you.
3. On the Overview tab, select Summarize.  
   * The generated summary is displayed in a banner at the top of the security incident record in legacy Core UI16.
   * The generated summary is displayed on the Overview tab in the Security Incident Response Workspace.
   {#summarize-security-incident-now-assist-sec-incident__ul_b1t_fnr_1cc}
4. **Optional:** Select from the following options after the summary is generated.  
   Summaries generated by AI might miss key details. You might prefer to review the summary for accuracy and completeness before you proceed.

   | Option | Description |
   | View details about the summary | Select the information icon (![Information icon]()) next to the Security Incident summarized by ServiceNow Otto. |
   | Save the summary information by adding it to the incident work notes | 1. Select Share to work notes. 2. Verify the AI-generated content in the modal for accuracy and make any edits. 3. Select Save to work notes. {#summarize-security-incident-now-assist-sec-incident__ol_id2_vhr_1cc} |
   | Expand or collapse the summary | Select the expand icon (![Expand icon.]()) or collapse icon (![Collapse icon.]()) next to Share to work notes to expand or collapse the summary. |
   | Provide feedback | Select the helpful icon (![Helpful icon.]()) for positive feedback. Select the not helpful icon (![Not helpful icon.]()) if the summary wasn't helpful. Note: Feedback improves the generative AI model and can help to improve future versions of this skill. |
   | Copy the summary | Select the copy icon (![Copy icon.]()) to copy the summary to the clipboard. |
   |-|-|

   {#summarize-security-incident-now-assist-sec-incident__choicetable_n3k_shr_1cc}

*[\>]: and then


