Creating Security Incidents

The Incidents log tab can also be used to create cybersecurity incidents. To create and work with cybersecurity incidents, the user needs certain role permissions (for more details, see the User Roles and Role Permissions section).

To create an incident, click Create incident. and provide the following parameters:

Name

Description

Name

The name of the cybersecurity incident.

Type

The incident type.

By default, two incident types are available: a security incident and a task. Additional incident types can be defined under Settings ➜ Incident settings ➜ Incident types. For more details, see the section Incident Settings.

Priority

Assign a priority to the incident:

  • Low

  • Normal

  • Important

  • Critical.

Assignee

Add an assignee to the incident.

Watchers

Provide a list of employees who will watch the incident and receive an alert on any updates to it.

Attachments

Attach files here related to the incident.

Description

Enter a description of the incident.