---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/pt-BR/security-management

 Release :

    - australia

ft:locale :

    - pt-BR

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Upload Secure File Attachments

# Upload Secure File Attachments {#ariaid-title1}

* Versão de lançamento: Australia
* 
* Atualizado 12 de mar. de 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 min. de leitura

Use this section to understand on how to upload the secure file attachments to the case(s).

## Antes de Iniciar

Role required: sn_sec_tisc_secure_file_access, sn_sec_tiscadmin  
Nota:  
Secure Files related lists is only displayed when you have the user role, sn_sec_tisc.secure_file_access.

## Procedimento

1. Navigate to WorkspacesThreat Intelligence Security Center.
2. Click Threat Analyst Workbench icon.
3. Go to Case ManagementAll Cases.  
   All the cases are displayed.
4. Select any case.
5. Go to ArtifactsSecure Files related lists.
6. Click Upload Secure File button.
7. Click Add File to add the attachments.
8. Select the files and click Upload Secure File(s) button.  
   The file attachments are uploaded.

9. Click Download Secure Files to download the attachments.  
   The attachments are available in the zip format.
10. Alternatively, you can download the file by navigating to the details page of the secure file record.  
    Nota:  
    * All the secure attachments are encrypted and stored in the system using Key Management Framework (KMF). For more information, see [Attachment Encryption](https://servicenow.com/docs/bundle/vancouver-platform-security/page/administer/encryption/concept/c_EncryptionSupport.html).
    * If users have subscription for ServiceNow Integration Hub Professional Pack Installer, secure files are compressed in zip format and also encrypted and stored
    {#secure-file-attachments__ul_kvm_zrv_tzb}
**Conceitos relacionados**   

* [Workbench Overview](https://servicenow-prod.fluidtopics.net/BxRrCkVykGCQyjBDrI2wKA "The Workbench Overview page consists of the Case Tasks and Cases that are under Threat Analysts and their team.")
* [Working with Investigation Canvas](https://servicenow-prod.fluidtopics.net/HeoRr1z6I5GiSB~iPUlI2A "The Investigation Canvas is a key significant feature, which provides more valuable information for the Threat Intelligence (TI) analysts. It provides a structured framework by mapping one to one or one to many relationships and visualizing information related to observables, indicators of compromise (IOCs), or entities.")  
**Tarefas relacionadas**   

* [Creating cases using Threat Analyst Workbench](https://servicenow-prod.fluidtopics.net/BkboBOaYgCb1cKiFxs6fIA "Cases are used to track information about a campaign or threat actor threatening your organization. After a case is created, you can add artifacts that allow you to review and analyze all related information from a single case or case task.")
* [Creating case task using Threat Analyst Workbench](https://servicenow-prod.fluidtopics.net/Fa6vmiopz_b_2u~YmVPCcg "Create case tasks to associate with case(s).")
* [Add artifacts to case(s) or case task(s)](https://servicenow-prod.fluidtopics.net/lr6RBrQR_mqpNgQY48XIDw "After you have created a case, you can view or add artifacts, such as security incidents, CIs, and indicators of compromise, to the case. These artifacts act as clues in solving the case.")
* [Run Enrichment Actions within a case](https://servicenow-prod.fluidtopics.net/IVjcFPCWl9J4pWLJDjbsWw "Use this section to understand how enrichments actions are performed on case(s).")
* [View Case Reports](https://servicenow-prod.fluidtopics.net/a~1zOP7od7Cwni_GsYpiVQ "Use the case reports feature to generate reports related to the cases. These reports include post investigation report or an executive summary report.")
* [Create a security incident from a TISC case](https://servicenow-prod.fluidtopics.net/v0QoNQ2LXPZzMaOUtVCR6A "Create security incidents and associate observables to the security incidents from a TISC case.")

