---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Edit security tags

# Edit security tags for the Microsoft Exchange Online integration {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read

You can edit the names and colors of the security tags in your ServiceNow AI Platform® instance for the Microsoft Exchange Online
integration. These security tags help you quickly identify when email search either
completes or fails. They also identify when requests to delete emails are initiated and when
the email items are successfully deleted.

## Before you begin

By default, the security tags are enabled in your ServiceNow AI Platform®
instance if you select the Display Tags option during the
configuration step. You can edit tag colors and names, and assign tags to security
tag groups to help you organize them in your ServiceNow AI Platform®
instance. For example, you can change the colors of tags so that the start tag of a
capability is one color, and the completion tag is another color to match the other
security tags that are enabled in your ServiceNow AI Platform® instance.
These different colors can help you quickly identify when workflows start and are
successfully completed. If you decide that you do not need a specific tag, without
disabling tagging for the integration, you can also disable a single tag from the
tag record. If disabled, this tag is no longer displayed on the related security
incidents. For more information on how to set up security tag groups and tags, see
Set up security tag groups and tags on the [Servicenow Product Documentation
website](https://www.servicenow.com/docs).

Role required: sn_si.admin

## Procedure

1. Navigate to AllSecurity OperationsIntegrationsExchange Online Settings.
2. Click the Additional Settings tab to select it.
3. On the tab that is displayed, if the Display Tags option is cleared, select it to display tag names.
4. With the tag names displayed, to the right of a tag, click the information icon.  
5. In the Security Tag dialog that is displayed, click Open Record.
6. In the record that is displayed, edit the fields.

   | Option | Description |
   | Name | Unique name for the security tag. |
   | Color | Security tag color. Select a color from the choice list. |
   | Security Tag Group | Name of the security tag group. Click the information icon to view the available groups. Default is Metatag group. |
   | Enforce restricted access | Select this option to assign read and write roles needed by users to read or write to records that have this security tag. Default is cleared. |
   | Order | Specify the order the tag appears on forms or within a list. Default is 100. To set the order on the list, enter a value. For example, 100, 200, 300, 400. The tag with the lowest the number is displayed first on the list. The profile with the highest number is displayed last. |
   | Active | Turn this tag on or off. Default is selected (active) |
   | Description | Description for the tag. |
   |-|-|

   {#ms-edit-tags__choicetable_ohy_xpv_bgb}
7. Click Update to save your changes.  

   You have now successfully edited the tag record for a security tag.
**Previous topic:** [Recover deleted emails on the Microsoft Exchange Online service](https://servicenow-prod.fluidtopics.net/YsIGrjLvp71w3nK4MfH~tA "(Optional) As a Microsoft Exchange Administrator, you can recover deleted emails if your incident remediation requires that you to recover the emails deleted by the workflow of this integration.")  
**Next topic:** [Microsoft Exchange On-Premises integration](https://servicenow-prod.fluidtopics.net/TQFEOMHQFLs0lPMnN3FTMQ "The Microsoft Exchange On-Premises integration provides tools for security analysts to contain and eradicate phishing and spear phishing email threats in on-premises instances.")

*[\>]: and then


