---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/pt-BR/security-management

 Release :

    - australia

ft:locale :

    - pt-BR

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Working with TISC Context

# Working with TISC Context {#ariaid-title1}

* Versão de lançamento: Australia
* 
* Atualizado 12 de mar. de 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 min. de leitura

TISC context facilitates viewing threat intelligence data such as observables within the security incident response workspace.

This helps security analysts to detect, investigate, and respond to security incidents more effectively from the workspace.

TISC Context in Security Incident Response workspace allows the security analysts to add security incidents or observables to TISC Case(s) directly from the workspace, also view the enrichment results, and view observables related
information which are related threat actors, attack patterns, campaigns, and so on.  
Using this section, you can do the following:

1. Associate observables to a TISC case.
2. View associated observables information.
3. View observables enrichment results.

{#working-with-tisc-context__ol_wzf_zss_dcc}For more detailed information and procedure, see the following sections, and for more information on how the integration works between TISC and SIR workspaces, see [TISC integration with SIR Workspace](https://servicenow-prod.fluidtopics.net/LntevdViJHag33wa~xJjGQ "TISC integration with SIR automatically attaches the context on the observables within the security Incident workspace for the Security analysts. Any new observables from SIR can be sent to TISC for further analysis by CTI team using the UI actions provides on the screens.") in [Threat Intelligence Security Center](https://servicenow-prod.fluidtopics.net/B7Ab~f7xsiHTBmgT5jONTg "The Threat Intelligence Security Center (TISC) platform provides technology solution for aggregation, management and operationalization of threat intelligence.").
* **[Add observables to TISC Case](https://servicenow-prod.fluidtopics.net/q15HyhNf28~4Ph94k49EvQ)**   
  Use this section to add security incidents or observables to a TISC case.
* **[View related info from TISC](https://servicenow-prod.fluidtopics.net/v_iwimoLB_jUHU9Cdd71tA)**   
  Use this section to view the related info such as related threat actors, attack patterns, campaigns, and cases from TISC in SIR workspace.
* **[View Enrichment Results](https://servicenow-prod.fluidtopics.net/jQClUqBFmZFlPe1MPPARVw)**   
  Use this section to view the observables enrichment results such as Threat Lookup Results, Sightings, and Observable Enrichment Results from TISC in SIR workspace.

