---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/pt-BR/security-management

 Release :

    - australia

ft:locale :

    - pt-BR

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Configure and Enable CrowdStrike Falcon Intelligence integration

# Configure and Enable CrowdStrike Falcon Intelligence integration {#ariaid-title1}

* Versão de lançamento: Australia
* 
* Atualizado 12 de mar. de 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 min. de leitura

Before you can use the CrowdStrike Falcon Intelligence, you must download it from the ServiceNow Store and add the appropriate Client ID and Client Secret.

## Antes de Iniciar

Role required: sn_sec_tisc.admin

* Threat Intelligence Security center application must be installed and activated.
* Obtain the API Client ID and API Client Secret under your CrowdStrike Falcon Intelligence profile.
* In the CrowdStrike Falcon Intelligence portal API Scopes, enable the Read setting for Indicators (Falcon Intelligence).
{#crowdstrike-intelligence__ul_nh2_cc4_tzb}

## Procedimento

1. Using your instance, access Threat Intelligence Security Center.
2. [Download the integration from the ServiceNow Store](https://servicenow-prod.fluidtopics.net/aNNDupFN_Z_eiVHUY0P2wQ "Downloading an application from the ServiceNow Store for the first time involves a number of easy steps. Some of the steps are performed on the ServiceNow Store and some in your instance.").
3. Navigate to WorkspacesThreat Intelligence Security Center.
4. Select IntegrationsEnrichment IntegrationsAll Integrations.
5. Alternatively, you can navigate to IntegrationsEnrichment IntegrationsAll IntegrationsThreat Lookup.
6. Click Configure New Enrichment to configure CrowdStrike Falcon Intelligence integration.
7. Fill in the fields on the Configure New Enrichment form.  
   {#crowdstrike-intelligence__table_iqf_n4p_tzb__entry__2}

   | Field | Description |
   |-|-|
   | Name | Enter a name for the new enrichment integration. For example, CrowdStrike Falcon Intelligence. |
   | Vendor Name | Name of the vendor. The details of the selected vendor is populated by default. For example, CrowdStrike Falcon Intelligence. |
   | Integration Type | Type of integration that you selected. For example, Threat Lookup. |
   | Description | Enter the description for the new enrichment integration. |
   | Integration Configuration ||
   | Client ID | The client ID that you obtained from CrowdStrike. |
   | Client Secret | The client secret key that you obtained from CrowdStrike. |
   [Tabela 1. Enrichment Integration]

   {#crowdstrike-intelligence__table_iqf_n4p_tzb}
8. Click Save.  
   The integration details are validated, and by default the CrowdStrike Falcon Intelligence integration's status is disabled.
9. Click Enable to enable the CrowdStrike Falcon Intelligence integration.
{#crowdstrike-intelligence__steps_fjb_ctp_tzb}

## Resultado

After it is configured, CrowdStrike Falcon Intelligence can be selected for performing lookups on observables in Threat Intelligence Security Center.

