List view in SIR Workspace
Summarize
Summary of List view in SIR Workspace
The List view in SIR Workspace provides ServiceNow security analysts and managers with a centralized interface to efficiently manage Security Incidents, Response Tasks, Phishing Emails, Assessments, and Shift Handover records. It enables quick access through pre-applied filters and customizable columns, facilitating rapid identification and handling of relevant records.
Show less
Key Features
- Security Incidents: View incidents filtered by categories such as Assigned to Me, Assigned to Team, Unassigned, All Open, and All. Analysts can configure columns, assign multiple incidents to users, delete, create new incidents, apply quick filters, refresh the list, and export data in Excel, CSV, JSON, or PDF formats.
- Response Tasks: Similar functionality to Security Incidents, allowing analysts to manage tasks with filters like Assigned to Me, Assigned to Team, Unassigned, and All Open. Tasks can be assigned, created, filtered quickly, refreshed, and exported.
- Phishing Emails: Displays all phishing emails sorted by last update. Analysts can report phishing emails directly from the list, delete emails, and export the list in various formats.
- Assessments: Lists pending and all assessments required for post-incident review, enabling analysts to take necessary actions.
- Shift Handover Records: Lists records assigned to teams or all records, supporting roles such as Admin, Security Analyst, and Security Manager. Users with appropriate roles can add or modify draft content; others have view-only access.
- Quick Filters: Easily accessible filters for Security Incidents and Response Tasks that allow analysts to rapidly focus on items needing immediate attention.
- Personalization: Analysts and managers can tailor list views for Security Incidents, Response Tasks, and Phishing Emails according to their preferences.
Key Outcomes
- Improved incident and task management through filtered views and quick actions such as assignment, creation, and bulk closure.
- Enhanced productivity by enabling analysts to open records in new tabs, apply quick filters, and export data for reporting or offline analysis.
- Streamlined Shift Handover process with role-based access to create, edit, and view handover records.
- Efficient phishing email handling, including reporting and deletion directly from the list.
- Support for post-incident reviews via accessible assessments lists.
The list view consists of the security incidents, response tasks, phishing emails, and assessments.
The list view has pre applied filters such as Assigned to Me, Assigned to Team, Unassigned, All Open, All, and so on.
Using these list categories and filtered lists, analysts can quickly find the required Security Incidents and Response Tasks records that they need to work on.
To get to the list view, you need to click the list icon (). When you click a record in a list view, the record opens in a new tab.
List types
The following gives you an example view of the lists.
The list pane contains the following sections:
| List item | Description | Capability |
|---|---|---|
| Security Incidents | View the list of security incidents and navigate to the desired incident to start working on them. The following lists are available:
|
|
| Shift Handover Records | View the list of Shift Handover records. The following lists are available:
|
Shift Handover supports the following three roles:
|
| Response Tasks | View the list of response tasks and navigate to the desired response task to start working on them. The list view contains:
|
|
| Phishing Emails | View the list of all Phishing emails. The list view will be sorted based on the last update. |
|
| Assessments | View the list of assessments needed to perform post incident review.
|
Take assessments. |