---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# View response task information for a security incident

# View response task information for a security incident {#ariaid-title1}

* Release version: Australia
* 
* Updated August 11, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

You can view response task information, such as task SLAs, risk score audits and outages associated with a security incident.

## Before you begin

Role required: sn_si.basic

## Procedure

1. If it is not already open, open the security incident for which you want to view response tasks.
2. Click the Show Response Tasks related link.
3. Click any of the related lists to view or add information for the security incident.  
   {#show-response-tasks-for-si__table_hng_51r_yy__entry__2}

   | Tab | Description |
   |-|-|
   | Tasks | Displays tasks already defined for the security incident. You can manually create a response task. |
   | Response Tasks | Displays actions to be performed in response to the security incident. |
   | Task SLAs | View or add active task SLAs that were defined for the security incident. |
   | Risk Score Audits | An audit record for each instance of a risk score being changed. |
   | Outages | View or manually add new outage records associated with the security incident. |
   | Email Search | A list of records that holds search criteria to run queries on an email server, such as a Microsoft® Exchange Server (based on the implementation installed), and stores the results received. Note: if the [Security Operations Integration- Email Search and Delete capability](https://servicenow-prod.fluidtopics.net/iygPFivlSIet72Kp6CuLmQ "The Email Search and Delete capability returns the number of threat emails from an email server search and, optionally, returns details for each email found. After the email search is completed, you can delete the emails.") is not active, the Email Search related link is not displayed. |
   [ ]

   {#show-response-tasks-for-si__table_hng_51r_yy}
4. Click any of the following related links to further update the security incident:  
   * [Show Affected
     Items](https://servicenow-prod.fluidtopics.net/v5P23O5qpqXvK~jeo5tUXw "You can view affected items, such as CIs, affected users, unmatched affected users, and affected services associated with a security incident.")
   * [Show Related
     Items](https://servicenow-prod.fluidtopics.net/5dWDw6sQ~pOrALbzetUbNg "You can view related items, such as similar and child security incidents, related users, vulnerability groups, and vulnerable items associated with a security incident.")
   * [Show IoC](https://servicenow-prod.fluidtopics.net/QiPYhovl9Rh2EBQRXKLqlA "You can view IoC information, such as observables and sightings search results associated with a security incident.")
   * [Show Enrichment
     Data](https://servicenow-prod.fluidtopics.net/vfRbfkT4oIhy008Ej9qB8g "You can view enrichment data, such as running processes, running services, and network statistics associated with a security incident.")
   {#show-response-tasks-for-si__ul_rxz_h1q_vz}
5. When you have completed your entries, click Submit.
{#show-response-tasks-for-si__steps_akt_2wc_wz}

