---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Escalate a security incident

# Escalate a security incident {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

If an escalation path exists for a security incident, the Escalate button is
available in the security incident header.

## Before you begin

Role required: sn_si.admin

You must have an escalation group created to see this
button. See [Create a Security Operations user-defined escalation group](https://servicenow-prod.fluidtopics.net/cxn0R6H6AssWkUUSoV0Yjw "Escalate a security incident to any group associated with the incident using Escalations.") for more information.

## Procedure

1. Navigate to AllSecurity IncidentShow Open Incidents.
2. Open the incident you want to escalate.
3. Select the Escalate button.
4. Choose an escalation group.
5. Enter a reason for the escalation.
6. Select Submit.  
   Updates Assignment Group and Assigned to on the security incident.

*[\>]: and then


