---
sourceDocument: Zurich Security Management
sourceDocumentLink: https://www.servicenow.com/docs/r/zurich/security-management

 Release :

    - zurich

ft:locale :

    - en-US

ft:publication_title :

    - Zurich Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Proofpoint Integration for Security Operations

# Proofpoint Integration for Security Operations {#ariaid-title1}

Release version: Zurich  
Updated July 31, 2025  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read  
The Proofpoint SIR integration supports the ingestion of events from Proofpoint. SIR creates an incident for each ingested event which analysts can review or work on.
<br />

## Get started {#proofpoint-integration-secops-landing__cf-app-landing-get-started}

|-|-|
| [ExploreLearn about Proofpoint integration](https://www.servicenow.com/docs/Cti_q0vIfLg7qviL5MZ6sg "You can configure event profiles in SIR to ingest events from Proofpoint. SIR creates an incident for each ingested event which analysts can review or work on.") | [ConfigureConfigure Proofpoint for SIR Workspace](https://www.servicenow.com/docs/Rq0bh9lLJZLNjqDyzA~lAA "Configure your implementation of the Proofpoint Integration for Security Operations.") |
[ ]

{#proofpoint-integration-secops-landing__table_d4r_wdg_b2c}

