---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Configuring Threat Intelligence External Sharing

# Configuring Threat Intelligence External Sharing {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Threat Intelligence external sharing in TISC outlines the guidelines and functionalities for both automated and sharing from GUI of threat intelligence within and across organizations. This feature focuses on key areas such
as sharing exclusion rules, approvals, data retention, and auditing to confirm secure, compliant, and efficient intelligence sharing.

## External Sharing of Threat Intelligence with Threat Intelligence Security Center (TISC) {#tisc-intel-sharing__section_vdh_klh_mfc}

## Key features of external sharing of threat intelligence with TISC {#tisc-intel-sharing__section_y5b_4j2_mfc}

* Sharing Templates: Templates allow control over which entities and fields are included in shared intelligence, ensuring only relevant data is disseminated.
* Approval Rules for Sharing: Administrators can configure approval rules for both outbound and inbound intelligence, enabling robust management of approval workflows.
* Redaction Capabilities: Analysts have the ability to redact sensitive information from shared intelligence, with easy options to toggle redaction on or off.
* Audit Capabilities: Every intelligence sharing action is audited, capturing details including the sender, recipient, timestamp, and shared content to ensure full compliance and traceability.
* Data Retention Policies: Shared intelligence and related audit logs are retained per compliance requirements, with defined rules for archival and destruction of various record types.
* TISC to TISC Exchange: Mechanisms for efficient, bi-directional intelligence exchange between Threat Intelligence Security Center (TISC) instances.
* User and Group Management for TAXII: Defines TAXII users and groups by managing their access to collections, and maintaining secure data exchange protocols.
{#tisc-intel-sharing__ul_h51_rj2_mfc}
* **[Exploring Outbound Intel Sharing](https://servicenow-prod.fluidtopics.net/TJNG~HKErcY_7TEjauw93w)**   
  Using Outbound Sharing intelligence, you can define and share what threat intelligence entities and attributes, exclusion rules, profiles and groups, and approval rules that can be shared externally and internally.
* **[Exploring Inbound Intel Sharing](https://servicenow-prod.fluidtopics.net/8Bm2MXWKK4V13dl5YZOXiw)**   
  Inbound intelligence sharing in TISC allows you to create profiles of external systems or devices that can submit intelligence to it.
* **[Exploring TAXII Outbound Server](https://servicenow-prod.fluidtopics.net/BKYGzZOoPyaMVjaTYNQzxg)**   
  TAXII collections are logical groupings of threat intelligence data.

