---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/pt-BR/security-management

 Release :

    - australia

ft:locale :

    - pt-BR

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Checklist for MSIM setup

# Checklist for MSIM setup {#ariaid-title1}

* Versão de lançamento: Australia
* 
* Atualizado 12 de mar. de 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 3 min. de leitura

Before using the ServiceNow®
Major Security Incident Management (MSIM) application, download the application from the ServiceNow® Store.
Track your progress with the setup, installation, and configuration from the following table.  
Nota:  
The roles assigned for Major Security Incident Management application are listed in the further following sections, for more information, see [Major Security Incident Management roles](https://servicenow-prod.fluidtopics.net/gve3li9S6EJIlpmqE24gIg "Assign roles to ensure that users can perform all necessary actions within the MSIM application.").  
Use the following checklist to guide you through the end-to-end steps to install and configure Major Security Incident Management application.{#msim-checklist__table_k5l_nk1_rpb__entry__2}

| Setup task | Description |
|-|-|
| Verify that the Major Security Incident Management application is installed and activated from the ServiceNow® Store. | Major Security Incident Management v1.1.1 is available on ServiceNow® Store. Follow these instructions: [downloading an application from the ServiceNow Store](https://servicenow-prod.fluidtopics.net/aNNDupFN_Z_eiVHUY0P2wQ "Downloading an application from the ServiceNow Store for the first time involves a number of easy steps. Some of the steps are performed on the ServiceNow Store and some in your instance."). |
| Verify that the following applications are installed in the given order. | The following applications will be installed by default after you install Major Security Incident Management application in the current application release version: * File Explorer Core for Security Operations v1.1.1 * Microsoft SharePoint File Explorer Connector for Security Operations v1.1.1 * File Explorer Component for Security Operations v1.0.0 * Microsoft Teams Chat Connector for Security Operations v1.0.0 * Chat core for Security Operations v1.0.0 * Major Security Incident Response v1.1.1 * Collab Chat EVAM card for MSIM workspace v1.0.0 (This application is set up only for the UI visualizations in the application background for Major Security Incident Management workspace) * Task Organizer UI Component for Major Security Incident Management workspace 1.0.0 * Security Incident Response v12.8.1 {#msim-checklist__ul_jq4_pff_rpb} |
| Verify that the user roles are assigned to Major Security Incident as appropriate. | The following roles are involved throughout the incident life-cycle of Major Security Incident remediation process: * MSI Administrator \[sn_msi.workspace_admin\] * MSI Manager \[sn_msi.workspace_manager\] * MSI Responder \[sn_msi.workspace_responder\] {#msim-checklist__ul_ury_hlz_ypb}For more detailed information on each role, see [Major Security Incident Management roles](https://servicenow-prod.fluidtopics.net/gve3li9S6EJIlpmqE24gIg "Assign roles to ensure that users can perform all necessary actions within the MSIM application."). |
| Verify that you have successfully setup Microsoft SharePoint v1.0.0 configuration. | Microsoft SharePoint manages sites, folders, files, groups, and users in Microsoft SharePoint. Add Microsoft SharePoint data to your ServiceNow® instance. To do this, you must have to setup Graph and Rest connections. For information, see [Microsoft SharePoint spoke v1.1.2](https://www.servicenow.com/docs/access?context=sharepoint-online-spoke&version=australia&pubname=australia-integrate-applications&ft:locale=en-US) documentation on how to setup REST and Graph connections Configuration. Establish Graph and REST connection to connect to your ServiceNow® instance from Microsoft SharePoint. |
| Verify that you have created a Microsoft SharePoint site to create a document library. | Create a Microsoft SharePoint site, if required or you can use an existing site to create the document library. |
| Verify that you have created a document library under the Microsoft SharePoint site. | Create a dedicated document library under a new or existing Microsoft SharePoint site. |
| Verify that required permissions are provided to the users and assigned to the required user groups in the Microsoft SharePoint. | Manage access from Microsoft SharePoint site to different users and user groups. |
| Verify that you have created and configured Microsoft SharePoint Drive and necessary configuration settings. | To verify the drive configurations, setup Microsoft SharePoint File Explorer Connector, Folder, and File Actions and Folder Templates: * [Configure File Explorer Repository Drive](https://servicenow-prod.fluidtopics.net/cUDW1WHNjmkCwnSBpCwVQw "The Microsoft SharePoint connector provides various capabilities to be implemented in Microsoft SharePoint File Explorer features by managing and tracking the file metadata."): Create connection from Microsoft SharePoint to ServiceNow® instance. * [Configure Folder and File Action Settings](https://servicenow-prod.fluidtopics.net/b~PgudWK1qKP1~l3A6v2Ww "Configure the folder and file actions you would like to be enabled from the File Explorer component on the Major Security Incident Management workspace, using the Folder and File Action Settings setup page. As an MSI Administrator, you can control the individual Folder and File Actions displayed on the File Explorer Component."): Configure and control the individual Folder and File Actions displayed on the File Explorer Component. * [Create Folder Templates](https://servicenow-prod.fluidtopics.net/q1sBs2cfcNllJ6VvwIQJ3g "Use Folder Templates to automatically create unique folders for different Major Security Incident types. The folder templates within the File Explorer Component are used to create a base folder structure for the security incident in the Microsoft SharePoint."): Configure to create unique folders for different Major Security Incident types. {#msim-checklist__ul_f3z_ldl_2qb} |
| Verify that you have successfully established a connection to Microsoft Teams Chat Connector application. | To establish Microsoft Teams Chat Connector application connection with ServiceNow® instance, follow the procedure explained here: [Establish MS Teams Graph connection on ServiceNow AI Platform](https://servicenow-prod.fluidtopics.net/UuPzx_dq6X7YsJSbQ13L9Q "Integrate ServiceNow AI Platform instance and Microsoft Teams account by establishing a Microsoft Teams Graph connection."). |
| Verify that you have configured Microsoft teams with ServiceNow AI Platform® instance and created connections and credentials configurations. | To verify Microsoft Teams configuration with ServiceNow® instance, follow the procedure as explained here: * [Establish MS Teams Graph connection on ServiceNow AI Platform](https://servicenow-prod.fluidtopics.net/UuPzx_dq6X7YsJSbQ13L9Q "Integrate ServiceNow AI Platform instance and Microsoft Teams account by establishing a Microsoft Teams Graph connection.") * [Create a chat channel template](https://servicenow-prod.fluidtopics.net/eND7xfu5eoOmuoN5en1z3A "Configure Chat Teams and Channel Templates to create chat teams and channels to collaborate, track the chat conversations, and add users and user groups to those Chat Channels. These Channel templates are created in the Microsoft Teams when a major security incident is promoted.") {#msim-checklist__ul_h1j_sgl_2qb} |
| Verify that the Major Security Incident Administration - Configuration settings are successful. | As an MSI Administrator, you must be able to: * Determine whether security analysts can propose and promote the incident and link other security incidents. * Enable or disable the notifications when an incident is proposed or promoted. Ability to edit default template messages. * Configure security tags that appear on the security analyst interface to differentiate the incidents that have been proposed as a major security incident candidate or promoted to a major security incident. {#msim-checklist__ul_d1f_fdh_rpb} |
| Verify that the Major Security Incident Administration - Notifications settings are successful. | As an MSI Administrator, trigger email notifications when a security incident is proposed and are sent to all those users and groups who are configured to the notifications list. For more information, see [Set notification preferences for MSIM](https://servicenow-prod.fluidtopics.net/ICaaAGyk1HSUvAgJfP7E_A#msim-admin-notifications "Automate the email notification process and notify the users when a security incident is either proposed or promoted to a major security incident candidate."). |
[Tabela 1. Checklist]

{#msim-checklist__table_k5l_nk1_rpb}
**Conceitos relacionados**   

* [Major Security Incident Management](https://servicenow-prod.fluidtopics.net/U~NnLVU69awtNwfE5I7B3g "Track and manage various activities that are typically part of resolving a major security incident through Major Security Incident Management. Through an intuitive workspace, incident managers and those working on an incident can propose and promote incidents to major incidents, track major security incident activities, and easily collaborate with colleagues.")  
**Referência relacionada**   

* [Get started with MSIM](https://servicenow-prod.fluidtopics.net/cjRoN4QxUJ84RicdclcgeA "Review the following information before you start working with Major Security Incident Management.")
* [Major Security Incident Management roles](https://servicenow-prod.fluidtopics.net/gve3li9S6EJIlpmqE24gIg "Assign roles to ensure that users can perform all necessary actions within the MSIM application.")

