---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/pt-BR/security-management

 Release :

    - australia

ft:locale :

    - pt-BR

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Affected users in cases

# Affected users in cases {#ariaid-title1}

* Versão de lançamento: Australia
* 
* Atualizado 12 de mar. de 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 min. de leitura

You can create a new case from one or more affected users in the User \[sys_user\] table.
You can also add users to existing cases.
* **[Create a case from affected users](https://servicenow-prod.fluidtopics.net/DBMvL_4T7zXywkR8Z6_nJA)**   
  You can create a security case from affected users in the User \[sys_user\] table. After the affected users have been used to create a new case, you can use Security Case Management to analyze the data.
* **[Add affected users to existing cases](https://servicenow-prod.fluidtopics.net/MoYno1PmpabkJIpNL6lrFA)**   
  You can add affected users to one or more existing cases. After the user records have been added to cases, you can use Security Case Management to analyze the data.

**Conceitos relacionados**   

* [IoCs and observables in cases](https://servicenow-prod.fluidtopics.net/_WoUgujo3o~x90Wa_xmxmQ "In Threat Intelligence, you can create cases from IoCs and observables, as well as add IoCs and observables to existing cases. You can also create observables directly from a case.")
* [Security incidents in cases](https://servicenow-prod.fluidtopics.net/Zfap2dy4fL1vzzmTNLrWlw "In Security Incident Response, you can create cases from security incidents, CIs, and affected users, as well as add those artifacts to existing cases.")
* [Configuration items in cases](https://servicenow-prod.fluidtopics.net/M92V2ILIbpljG6V6Tm9NJw "You can create a new case from one or more configuration items (CI) in the Configuration Item [cmdb_ci] table. You can also add CIs to existing cases.")

