---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Mapping of ticket fields for the SecureWorks CTP integration

# Mapping of ticket fields for the SecureWorks CTP integration {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Map the ticket and event fields to the fields in the security incident form.

For the mapping step, you must first ingest sample tickets and then ensure that all the
relevant ticket fields are mapped to the appropriate place on the Security Incident Response form and then visualize the security incident in the preview
section.  
Mapping of the sample ticket fields involves the following:

* Fetching and populating of the sample data: See [Ingesting the sample Secureworks tickets](https://servicenow-prod.fluidtopics.net/6bIXhgIXBNH0ht9IjYjgBw "Select the sample tickets that are to be ingested.")
* Mapping the ticket fields to the security incident: See [Mapping Secureworks ticket fields to security incident response fields](https://servicenow-prod.fluidtopics.net/b0OoPh6SKXIAH5l4UDoECQ "Map individual ticket or event fields to fields on a ServiceNow AI Platform SIR security incident.")
{#secureworks-ctp-create-profile-about-mapping__ul_txr_n4v_wkb}

